Hy!

If I revoke a certificate using the "-revoke" option of the "ca" command
and pass it a certificate which is issued by a different CA, this is not
checked by openssl.
Which has the consequence, that (if the serial number of the certificate
to be revoked is not present yet) a new entry is added to the
ca.db.index file which marks the certificate as revoked,but under the
wrong CA.

Is this expected behaviour or a bug?

cheers
Mathias

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to