Hello,

I have a problem with using certificates and IKE. We use CP FW1 Version 4.1
and a Netscape LDAP-Server. The CA-Authority is a linux box with openssl. If
I generate the certificate for the FW1 and also generate the CRL with
openssl, I get an error message while installing the security policy:

IKE Log: Certificate XXXX cannot be validated. No valid CRL.
CN=xxx,OU=xxx,O=xxx If this log persists, contact the CA administrator

The CRL is placed in the LDAP-Server at the right place, the search result
of the Management-Modul is ok.

Is the format of the CRL not the right one, if I use openssl or what is the
problem ??


Best regards
Daniel Fitzner

----------------------------------------------------------------------------
---------

Daniel Fitzner
IT-Services
T-Systems debis Systemhaus GEI GmbH / GS Berlin
debis Haus am Potsdamer Platz
10875 Berlin

mail: [EMAIL PROTECTED]
fon: +49 30 2554-3266
fax: +49 30 2554-3187







================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to