Hi,
As am trying to enable the CA rollover on the openxpki.
1)a)Mainly openxpki has the SCEP feature and am trying to generate the 
certificates like
Ca-one –scep-1.crt ,ca-one-vault-1.crt ,ca-root-1.crt ,ca-one-signer-1.crt
Generally in these ca-root-1.crt is the root CA certificate and
Ca-one-signer-1.crt is the intermediate certificate
While am attempting to invoke getca command I will get three certificates like
Ca-one –scep-1.crt 0 cert
ca-root-1.crt , 1 cert
ca-one-signer-1.crt 2 cert
b)After that I have been generating the certificates like
Ca-one –scep-2.crt ,ca-one-vault-2.crt ,ca-root-2.crt ,ca-one-signer-2.crt
Generally in these ca-root-2.crt is the root CA certificate and
Ca-one-signer-2.crt is the intermediate certificate
And am updating the certs not before and not after the valid time like
Openxpkiadm alias –update –realm ca-one –alias ca-one-scep-2 –notbefore “ 
2018-01-01:00:00:00”
While we are attempting to invoke GETNEXTCA command we will get only Root CA 
certificate (means am getting only one certificate,am not getting full trusted 
chain certificates).
Note:
Any idea what I could have done wrong? And what further steps I need to follow 
up?
Thanks & Regards,
Pratik

------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
OpenXPKI-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openxpki-users
  • [OpenXPKI-users] Reg: CA ... Pratheesh Lawrence (UST, MYS) via OpenXPKI-users

Reply via email to