Yes Peter, you are right. The attribute certificate provided by me starts with Context 1 and not with a sequence. This is one mistake :)
Also, there were some mistakes in my declarations of attribute certificate ASN.1 structures (the .c file). After changing my .c file code according to Dr. Stephen's code and having a correct attribute certificate (that starts with sequence), everything is working fine.
Thank you all for your help!
Regards,
Hashim Saleem
On 9/9/05, Peter Sylvester <[EMAIL PROTECTED]> wrote:
Take an openssl asn1parse -inform der -in AttribCert.ber
and you see that it starts with a Context 1 and not with a sequence,
it seems to be an encoding of
[1] IMPLICIT AttributeCertificate.
Hashim Saleem wrote:
> Hi all,
>
> I have made a try to parse attribute certificate by writing attribute
> certificate ASN.1 structures myself after knowing that OpenSSL yet has
> no support for attribute certificate. I am getting error right at the
> beginning that is on d2i_X509AC(). It complains with the error message
> "Wrong Tag". It appears to me that I have some mistake in my attribute
> certificate ASN.1 structures declarations. I am attaching the source
> files alongwith the attribute certificate. OpenSSL gurus please help
> on this.
>
> Regards,
> Hashim Saleem
--
To verify the signature, see http://edelpki.edelweb.fr/
Cela vous permet de charger le certificat de l'autorité;
die Liste mit zurückgerufenen Zertifikaten finden Sie da auch.
