>> Most CAs will have some requirements on the lengths of the public keys they
>> will sign. Currently the CA has to manually check the key length once a
>> certificate request arrives since "openssl ca" gives no indication about
>> the key length. I think it would be a good idea if the CA could use the
>> openssl.cnf to specify the minimum length
>Sorry for me nagging but could someone from the developer team comment on
>my inquiry, please?
Sounds like a good idea. I'm not really familiar with the CA code --
would somebody else implement it?
______________________________________________________________________
OpenSSL Project http://www.openssl.org
User Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]