Hello

I am trying to setup automated enrollment with EST.

I get the error (error code in the workflow) "Requestor is not in authorized 
signer list"
In the overview of the workflow I also have the following:
Request mode: onbehalf
Signer is Trusted: No

I understand that it is not working because the signer is not trusted. My EST 
client indeed uses a certificate, not issued by my PKI, as client 
authentication in TLS towards my PKI-server.

What I also did is including the ca-chain that issued my EST client certificate 
as globally trusted certificates via update-ca-certificates.
But, that did not help.

So, I guess I need make an additional configuration change?
But, I don't know where.

Much thanks in advance for your feedback!


Greetings,
Stefan.

_______________________________________________
OpenXPKI-users mailing list
OpenXPKI-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openxpki-users

Reply via email to