Song Yi wrote:
>
> Hi,
>
> But the old cert has expired, I should can sign a new cert with the same DN.
> If you revoke it, somebody said, it will make the CRL too big!
If the certificate is expired you should have no problem issuing
it: you have to mark it with the 'E' in place of the 'V' in the index.txt.
Also you could use the openssl ca -updatedb I added in the new
SNAPs of openssl.
C'you,
Massimiliano Pala ([EMAIL PROTECTED])
- [openca-users:220] How to renew a cert? Song Yi
- [openca-users:222] Re: How to renew a cert? Massimiliano Pala
- [openca-users:240] Re: How to renew a cert? Song Yi
- [openca-users:241] Re: How to renew a cer... Massimiliano Pala
- [openca-users:243] Re: How to renew ... Song Yi
- [openca-users:242] Re: How to re... Massimiliano Pala
- [openca-users:242] Re: How to renew a cer... Naram El Adib
S/MIME Cryptographic Signature