Re: Issuing non self-signed certificate without having the private key in gpgsm keyring

2018-02-28 Thread Jean-Yves Migeon
Le 2018-02-28 15:35, Werner Koch a écrit : On Fri, 23 Feb 2018 19:21, j...@netbsd.org said: ATM (with gpgsm (GnuPG) 2.2.4) , due to [1], gpgsm cannot sign certificate for which a public key has been imported but without an associated private key to it (disregarding the self-signing What you

Re: Issuing non self-signed certificate without having the private key in gpgsm keyring

2018-02-28 Thread Werner Koch
On Fri, 23 Feb 2018 19:21, j...@netbsd.org said: > ATM (with gpgsm (GnuPG) 2.2.4) , due to [1], gpgsm cannot sign > certificate for which a public key has been imported but without an > associated private key to it (disregarding the self-signing What you here is to create CSR (Certifciate

Issuing non self-signed certificate without having the private key in gpgsm keyring

2018-02-24 Thread Jean-Yves Migeon
Hi everyone, (please CC on reply, as I am not yet subscribed) I am currently using gpgsm as somekind of PKI CA. It allows me to keep the CA private key stored on a smartcard, and create/sign different X.509 end-entity certs through the --gen-key --batch mode. ATM (with gpgsm (GnuPG) 2.2.4)