Hi,
As am trying to enable the CA rollover on the openxpki.
1)a)Mainly openxpki has the SCEP feature and am trying to generate the
certificates like
Ca-one –scep-1.crt ,ca-one-vault-1.crt ,ca-root-1.crt ,ca-one-signer-1.crt
Generally in these ca-root-1.crt is the root CA certificate and
Ca-one-signer-1.crt is the intermediate certificate
While am attempting to invoke getca command I will get three certificates like
Ca-one –scep-1.crt 0 cert
ca-root-1.crt , 1 cert
ca-one-signer-1.crt 2 cert
b)After that I have been generating the certificates like
Ca-one –scep-2.crt ,ca-one-vault-2.crt ,ca-root-2.crt ,ca-one-signer-2.crt
Generally in these ca-root-2.crt is the root CA certificate and
Ca-one-signer-2.crt is the intermediate certificate
And am updating the certs not before and not after the valid time like
Openxpkiadm alias –update –realm ca-one –alias ca-one-scep-2 –notbefore “
2018-01-01:00:00:00”
While we are attempting to invoke GETNEXTCA command we will get only Root CA
certificate (means am getting only one certificate,am not getting full trusted
chain certificates).
Note:
Any idea what I could have done wrong? And what further steps I need to follow
up?
Thanks & Regards,
Pratik
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
OpenXPKI-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openxpki-users