Hi Thomas,
the intended way is to just run the command you mentioned once a day,
the CRL workflow will internally determine if a new CRL must be built
which is true when either a certificate is in "revocation_pending"
status or the expiration date of the CRL goes below the configured
threshold.
As said, the publishing step is included in the workflow so if a new CRL
is build, it will also be published.
Oli
On 20.01.23 08:49, Zimmermann Thomas via OpenXPKI-users wrote:
Hi Oli,
I've found only the manual workflow to publish a new CRL.
Is there any way to automatically renew the CRL before it expires, or
automatically recreate the CRL when a new certificate is revoked?
My solution was the only way I've found to achive this 🙂
Without this my CRL was always expiring after a certain amount of days.
Greetings,
Thomas
------------------------------------------------------------------------
*Von:* Oliver Welter <[email protected]>
*Gesendet:* Freitag, 20. Januar 2023 06:55
*An:* [email protected]
<[email protected]>
*Betreff:* Re: [OpenXPKI-users] automate the creation and publishing
of crl
Hi Guys,
the issuance workflow already contains the publish step so there is no
need for both ;)
Oli
_______________________________________________
OpenXPKI-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openxpki-users
--
Protect your environment - close windows and adopt a penguin!
_______________________________________________
OpenXPKI-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openxpki-users