Hello, all.  I think we are just plain out of luck here but I'll ask
anyway.  One of our vendors messed up and the result is a catastrophic
loss of our PKI database without backup.  It just so happens that we
have the certs and keys (including the CA key) backed up but not the
database itself.  We would very much like to not have to reissue all
certs and replace all instances of the CA cert (most are server certs -
only a handful of users).

We could build out new CA on the old CA key and not have to replace all
the certs but, I would imagine we would be unable to revoke the certs if
there was a compromise since they are not in the database.  Is there any
way to rebuild the database with the existing certs and keys or are we
stuck rebuilding from scratch (beating head against wall repeatedly to
ease the pain).  Thanks - John
-- 
John A. Sullivan III
Open Source Development Corporation
+1 207-985-7880
jsulli...@opensourcedevel.com

http://www.spiritualoutreach.com
Making Christianity intelligible to secular society


------------------------------------------------------------------------------
Let Crystal Reports handle the reporting - Free Crystal Reports 2008 30-Day 
trial. Simplify your report design, integration and deployment - and focus on 
what you do best, core application coding. Discover what's new with 
Crystal Reports now.  http://p.sf.net/sfu/bobj-july
_______________________________________________
Openca-Users mailing list
Openca-Users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to