Hello Mads,

Thanks for your answer.
I took a look to the web page of mod_authz_ldap but couldn't figure out how
it could help me, can you explain me a bit more your thoughs?

Regards,

Alec
________________________________________________________________________________________

>From Mads Toftum <[EMAIL PROTECTED]> on 11 December 2001 23:45:53
To : [EMAIL PROTECTED]
Subject : Re: Multiple CRLs with same CA


On Tue, Dec 11, 2001 at 05:32:42PM -0500, [EMAIL PROTECTED] wrote:
> Hello there,
>
> Is mod_ssl supporting having multiple CRLs for 1 CA?
> It seems it's not, and that's very anoying in my situation.
> I'm using Entrust PKI software which splits the CRL list when it reaches
> a defined size (for scalability). mod_ssl seems to check only the first
> CRL and don't care about the others, which means that users with
> revocated certificates can use them...
>
Hmmm - perhaps you could use mod_authz_ldap - AFAICT it should be a useable
solution in an Entrust setup.

vh

Mads Toftum
--
With a rubber duck, one's never alone.
              -- "The Hitchhiker's Guide to the Galaxy"
______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl)                   www.modssl.org
User Support Mailing List                      [EMAIL PROTECTED]
Automated List Manager                            [EMAIL PROTECTED]

--------------------------------------------------------------------------------------------

Alec Barea
PKI engineering team
Equant
Tel:  +1 514 847-3436
CVS: 225 3436

______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl)                   www.modssl.org
User Support Mailing List                      [EMAIL PROTECTED]
Automated List Manager                            [EMAIL PROTECTED]

Reply via email to