Hy! If I revoke a certificate using the "-revoke" option of the "ca" command and pass it a certificate which is issued by a different CA, this is not checked by openssl. Which has the consequence, that (if the serial number of the certificate to be revoked is not present yet) a new entry is added to the ca.db.index file which marks the certificate as revoked,but under the wrong CA.
Is this expected behaviour or a bug? cheers Mathias
smime.p7s
Description: S/MIME Cryptographic Signature