> venki schrieb: > > how can we generate dual key pairs for an entity in openca pki > software. Does it require separate program to generate dual keys or we > can manage with current openca pki solution itself. > > I tried to generate two certificates for an entity with same input > values. while on CA signing the certificate, it gives > > "Error 690 > Configuration error A valid certificate with same DN exists" > > How can we manage dual key pairs for an entity in openca? any light on > this will be more useful.
OpenCA 0.9 adds the serial by default to the DN. This feature is deactivatable. If the serial is in the DN then you have no problems with identical DNs. To be more exactly - OpenSSL has no longer a problem with your DNs because they are unique. > And also eager to know mail clients which > support dual key pairs. That is , the mail client should pick up the > right signing key and decrypting key. I don't know which mailclients support this feature. Best Regards, Michael -- ------------------------------------------------------------------- Michael Bell Email (private): [EMAIL PROTECTED] Rechenzentrum - Datacenter Email: [EMAIL PROTECTED] Humboldt-University of Berlin Tel.: +49 (0)30-2093 2482 Unter den Linden 6 Fax: +49 (0)30-2093 2959 10099 Berlin Germany http://www.openca.org ------------------------------------------------------- In remembrance www.osdn.com/911/ _______________________________________________ Openca-Users mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/openca-users
