Hi Thomas,

the intended way is to just run the command you mentioned once a day, the CRL workflow will internally determine if a new CRL must be built which is true when either a certificate is in "revocation_pending" status or the expiration date of the CRL goes below the configured threshold.

As said, the publishing step is included in the workflow so if a new CRL is build, it will also be published.


Oli


On 20.01.23 08:49, Zimmermann Thomas via OpenXPKI-users wrote:
Hi Oli,
I've found only the manual workflow to publish a new CRL.
Is there any way to automatically renew the CRL before it expires, or automatically recreate the CRL when a new certificate is revoked?

My solution was the only way I've found to achive this 🙂
Without this my CRL was always expiring after a certain amount of days.

Greetings,
Thomas

------------------------------------------------------------------------
*Von:* Oliver Welter <[email protected]>
*Gesendet:* Freitag, 20. Januar 2023 06:55
*An:* [email protected] <[email protected]> *Betreff:* Re: [OpenXPKI-users] automate the creation and publishing of crl

Hi Guys,


the issuance workflow already contains the publish step so there is no need for both ;)


Oli



_______________________________________________
OpenXPKI-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openxpki-users

--
Protect your environment -  close windows and adopt a penguin!
_______________________________________________
OpenXPKI-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openxpki-users

Reply via email to