Hi Martin,
We are facing the issue while validating the certificate using ocsp. We did
a bit of R&D from our side and we found the following issue when we tried
to use the following command.
screenshot attached.

Thanking you,
Sanju Kundu

On Thu, Sep 23, 2021 at 7:15 PM Martin Bartosch <[email protected]> wrote:

> > We have already configured the above mentioned file.But We need to
> enable CRL for Issuer (Issuer: CN=OpenXPKI Demo Issuing CA 20210917,) this
> certificate. So that we can verify the  intermediate certificate. Please
> guide us which configuration file need to change.
> >  Also we are trying to enable CRL using the below command.
> >
> >  # openxpkicmd  --realm democa crl_issuance
> > Workflow created (ID: 63743), State: CANCELED
> > But we got a State: CANCELED message.
>
> This error message means that there are no usable Issuing CAs within the
> specified PKI Realm which are due for a regular CRL issuance (and CRL
> issuance was not forced).
>
> Without knowing your environment I can only guess that you either have no
> active Issuing CAs configured at all or that the configured CRL renewal
> period for each active Issuing CAs has not yet expired.
>
> Cheers
>
> Martin
>
>
_______________________________________________
OpenXPKI-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openxpki-users

Reply via email to