Yes, you are right about -CAfile, I forget it, sorry. Actually, everything works just
fine for me now (and all the openssl stuff was not needed :) ):


[EMAIL PROTECTED] xmlsec verify --trusted c.pem 3dsec_xmldsig_verify_3006.xml
= Status:
== Signatures ok: 1
== Signatures fail: 0
== SignedInfo Ref ok: 1
== SignedInfo Ref fail: 0
== Manifest Ref ok: 0 == Manifest Ref fail: 0
OK


c.pem is self signed so it must be loaded as trusted.

Aleksey



_______________________________________________
xmlsec mailing list
[EMAIL PROTECTED]
http://www.aleksey.com/mailman/listinfo/xmlsec

Reply via email to