Hi, when testing, we often try to enroll a VPN client certificate multiple times, using the same CN. After the third certificate new requests are denied ("more than two valid certificates matched this request") as expected, but this is still the case when the previous certificates are revoked? It seems that revoked certificates are still considered "valid"? They also still show up in the valid certificate list on the GUI.
Workaround is to change the hostname to have a different CN, but this is not what we want. Is this intended behaviour? What is required to completetly invalidate a certificate? Geert -- Geert Hendrickx -=- g...@telenet.be -=- PGP: 0xC4BB9E9F This e-mail was composed using 100% recycled spam messages! ------------------------------------------------------------------------------ What happens now with your Lotus Notes apps - do you make another costly upgrade, or settle for being marooned without product support? Time to move off Lotus Notes and onto the cloud with Force.com, apps are easier to build, use, and manage than apps on traditional platforms. Sign up for the Lotus Notes Migration Kit to learn more. http://p.sf.net/sfu/salesforce-d2d _______________________________________________ Openca-Users mailing list Openca-Users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/openca-users