"Dr. Stephen Henson" <[EMAIL PROTECTED]> writes:
> Try this:
>
> openssl x509 -in cli_cert_vega.pem -issuer -noout
> openssl crl -in ca_cert/vega_cacert2.pem -issuer -noout
>
> they should produce the same string. If not then the CRL isn't for that
> certificate. If they do match then please send me the certs and CRL and I'll
> investigate further.
I had the exact same problem and tried the above.
The strings where _not_ identical.
The first one produced:
issuer= /C=DK/O=TDC/CN=TDC OCES CA
whereas the second produced:
issuer=/C=DK/O=TDC/CN=TDC OCES CA
So. The question is this: who's to blame?
Is the extra/missing space a bug in the certificate/crl or is it a bug
that openssl is not able to handle the missing/extra space?
Kind regards,
--
stud. scient. Arne J�rgensen
Kollegium 5, 2., v. 222, Universitetsparken, 8000 �rhus C
tlf: 89 42 72 22, mobil: 21 65 01 13
e-post: [EMAIL PROTECTED], <http://www.daimi.au.dk/~arne/>
______________________________________________________________________
OpenSSL Project http://www.openssl.org
User Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]