Pierre De Boeck wrote:
> 
> Ok, I will try this but how do you deal with
> the case where you have a CA chain of intermediate
> CAs. The standard way would be to give a PKCS7-cert-only
> file but you say that this is a DER certificate file.

I *think* you have to add the server certificate and the CAs separately
or you may be able to add all (except the root) as a DER encoded PKCS#7
structure.

> 
> And BTW, as I use SSLeay and not openssl, is there a corresponding
> function to deal with that NET format?
> 

Yes exactly the same except put 'ssleay' at the beginning.

Steve.
-- 
Dr Stephen N. Henson.   http://www.drh-consultancy.demon.co.uk/
Personal Email: [EMAIL PROTECTED] 
Senior crypto engineer, Celo Communications: http://www.celocom.com/
Core developer of the   OpenSSL project: http://www.openssl.org/
Business Email: [EMAIL PROTECTED] PGP key: via homepage.


______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to