Hi ralf

Thanks for the response. I've been reading about ldap's alias feature and will 
probably use that to overcome my shortcomings. 

Dave
>From David Blaine's blackberry


----- Original Message -----
From: Ralf Hornik Mailings [r...@best.homeunix.org]
Sent: 11/15/2009 07:08 PM CET
To: openca-users@lists.sourceforge.net
Subject: Re: [Openca-Users] Trouble with LDAP and CRL's



blain...@gdls.com wrote:

> My problem now is my root certificate LDAP CDP does not include the email
> address and I cannot reissue a new one. Any magic within LDAP I can do?

It depends on the SSL app. Some apps use subsearch and some not for  
retrieving CRLs. Subsearch is also not recommended because of  
performance issues.

The easiest way would be to move the crl to the CDP-DN of your  
certificates by hand and "patch" your OpenCA installation to enroll  
any new CRL there in future.
Regards

Ralf



------------------------------------------------------------------------------
Let Crystal Reports handle the reporting - Free Crystal Reports 2008 30-Day 
trial. Simplify your report design, integration and deployment - and focus on 
what you do best, core application coding. Discover what's new with
Crystal Reports now.  http://p.sf.net/sfu/bobj-july
_______________________________________________
Openca-Users mailing list
Openca-Users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openca-users

------------------------------------------------------------------------------
Let Crystal Reports handle the reporting - Free Crystal Reports 2008 30-Day 
trial. Simplify your report design, integration and deployment - and focus on 
what you do best, core application coding. Discover what's new with
Crystal Reports now.  http://p.sf.net/sfu/bobj-july
_______________________________________________
Openca-Users mailing list
Openca-Users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to