Kimberly Palko wrote:
> 
> I'm resending this one because I've received no response.  Does anyone
> have any information (even where I might get information) about generating
> certificate chains in pkcs#7 format using OpenSSL?
> 

One way is to use the crl2pkcs7 utility (part of the openssl utility) on
the command line. This allows CRLs and certificates to be packaged up as
a PKCS#7 'certificates only' structure. If you don't want CRLs then you
use the -nocrl option. Typically you would do:

openssl crl2pkcs7 -nocrl -certfile cert1.pem -certfile cert2.pem ...

each file can contain more than one certificate. Check the manual page
for more info.

Steve.
-- 
Dr Stephen N. Henson.   http://www.drh-consultancy.demon.co.uk/
Personal Email: [EMAIL PROTECTED] 
Senior crypto engineer, Celo Communications: http://www.celocom.com/
Core developer of the   OpenSSL project: http://www.openssl.org/
Business Email: [EMAIL PROTECTED] PGP key: via homepage.

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to