> venki schrieb:
> 
> how  can we generate dual key pairs for an entity in openca pki
> software. Does it require separate program to generate dual keys or we
> can manage with current openca pki solution itself.
> 
> I tried to generate  two certificates for an entity with same input
> values.  while on CA signing the certificate, it gives
> 
> "Error 690
>   Configuration error A  valid certificate with same DN exists"
> 
> How can we manage dual key pairs for an entity in openca? any light on
> this will be more useful.

OpenCA 0.9 adds the serial by default to the DN. This feature is
deactivatable.

If the serial is in the DN then you have no problems with identical DNs.
To be more exactly - OpenSSL has no longer a problem with your DNs
because they are unique.

> And also eager to know mail clients which
> support dual key pairs. That is , the mail client should pick up the
> right signing key and decrypting key.

I don't know which mailclients support this feature.

Best Regards,

Michael
-- 
-------------------------------------------------------------------
Michael Bell                   Email (private): [EMAIL PROTECTED]
Rechenzentrum - Datacenter     Email:  [EMAIL PROTECTED]
Humboldt-University of Berlin  Tel.: +49 (0)30-2093 2482
Unter den Linden 6             Fax:  +49 (0)30-2093 2959
10099 Berlin
Germany                                       http://www.openca.org


-------------------------------------------------------
In remembrance
www.osdn.com/911/
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to