How did you signed the sub-CA certificate?
I have exported the CA request with the link Export CA Certificate Request . Then I went to the ca_node of Root-CA and used the link "Receive data from a lower level of the hierarchy" - Requests . I received the message :
      Importing approved REQUEST ...
        No objects are present
I tried to import it to ra_node too and received the message:
      Importing pending REQUEST ...
        No objects are present
How is the process to sign the sub-CA certificate?
Thanks!
Pat

David W. Blaine escreveu:
Hi Mike,

BTW, thanks for all your help in rebuilding my Root CA database. Now, I have a 
question about Sub-CA's. I issued a Sub-CA certificate from the Root CA and 
imported it into the Sub-CA's database ok. I am trying to issue a certificate 
from the Sub-CA but running into trouble. First, the RA complains about improper 
chain when trying to approve the request (I know I didn't rebuild the chain. Is 
that operation supposed to happen on the Root CA or Sub-CA or both). Although 
the RA complained about the chain, the request was approved. The CA won't issue 
the certificate because "Error 6713: New certificate would exceed CA-certificate 
lifetime". What gives?


Dave Blaine



-------------------------------------------------------
This SF.net email is sponsored by: SF.net Giveback Program.
Does SourceForge.net help you be more productive?  Does it
help you create better code?  SHARE THE LOVE, and help us help
YOU!  Click Here: http://sourceforge.net/donate/
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users

  

--

Atenciosamente,

Patricia Pereira


Z Tecnologia em Comunicação

Diretoria Técnica
Qualidade, Eficiência e Segurança
www.ztec.com.br



Reply via email to