Hi,

when testing, we often try to enroll a VPN client certificate multiple
times, using the same CN.  After the third certificate new requests are
denied ("more than two valid certificates matched this request") as
expected, but this is still the case when the previous certificates are
revoked?  It seems that revoked certificates are still considered
"valid"?  They also still show up in the valid certificate list on the
GUI.

Workaround is to change the hostname to have a different CN, but this is
not what we want.

Is this intended behaviour?  What is required to completetly invalidate
a certificate?


        Geert


-- 
Geert Hendrickx  -=-  g...@telenet.be  -=-  PGP: 0xC4BB9E9F
This e-mail was composed using 100% recycled spam messages!

------------------------------------------------------------------------------
What happens now with your Lotus Notes apps - do you make another costly 
upgrade, or settle for being marooned without product support? Time to move
off Lotus Notes and onto the cloud with Force.com, apps are easier to build,
use, and manage than apps on traditional platforms. Sign up for the Lotus 
Notes Migration Kit to learn more. http://p.sf.net/sfu/salesforce-d2d
_______________________________________________
Openca-Users mailing list
Openca-Users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to