On Thu, Mar 16, 2006, Michal Hooreman wrote:

> Good afternoon,
> 
> Just a question: what is the challenge password asked when we do a
> certificate request?
> 
> Everywhere, I see it lefted blank, but I don't understand his usage.
> 

It is largely a legacy attribute. The original intention was I believe to
provide a password which the certificate holder could later use (in some
unspecified manner) to revoke the certificate.

Other than the attribute being set and being visible by the 'req' utility it
is ignored by OpenSSL.

Steve.
--
Dr Stephen N. Henson. Email, S/MIME and PGP keys: see homepage
OpenSSL project core developer and freelance consultant.
Funding needed! Details on homepage.
Homepage: http://www.drh-consultancy.demon.co.uk
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [email protected]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to