Hi developers,
during my tests with OpenCA I noticed the functions to create keys and certs 
for the initial CA-admin and the RA. In my test environment, I'm runing CA 
and RA on the same server. The corresponding CSR are tied to the request 
numbers 256 and 512. This caused errors when I executed these function after 
creating a request using the public server. Certificates couldn't been 
issued. But I found the requests in the RA and could contiunue by approving 
and certifying them.
After having noticed that, I used this functionality to create keys and certs 
for other web servers.

Creating keys and certs directly on the CA server is sometimes necessary or 
advantageous. Therefore I suggest to remove these functions from the 
"Initialization" submenu and implement a more general  function which does 
not depend on static request numbers.

Bernd


-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
OpenCA-Devel mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-devel

Reply via email to