Hi Martin, We are facing the issue while validating the certificate using ocsp. We did a bit of R&D from our side and we found the following issue when we tried to use the following command. screenshot attached.
Thanking you, Sanju Kundu On Thu, Sep 23, 2021 at 7:15 PM Martin Bartosch <[email protected]> wrote: > > We have already configured the above mentioned file.But We need to > enable CRL for Issuer (Issuer: CN=OpenXPKI Demo Issuing CA 20210917,) this > certificate. So that we can verify the intermediate certificate. Please > guide us which configuration file need to change. > > Also we are trying to enable CRL using the below command. > > > > # openxpkicmd --realm democa crl_issuance > > Workflow created (ID: 63743), State: CANCELED > > But we got a State: CANCELED message. > > This error message means that there are no usable Issuing CAs within the > specified PKI Realm which are due for a regular CRL issuance (and CRL > issuance was not forced). > > Without knowing your environment I can only guess that you either have no > active Issuing CAs configured at all or that the configured CRL renewal > period for each active Issuing CAs has not yet expired. > > Cheers > > Martin > >
_______________________________________________ OpenXPKI-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/openxpki-users
