I’m trying to import a CRL generated by a commercial CA into Apache (build 1.3.12 Open SSL 0.9.4) but have run into a problem. When I try access the site with a certificate that’s in my CRL I am allowed access. If I create my own certificates and CRL using Microsoft Certificate Server, everything works as it’s supposed to. Looking at the CRL’s the only noticeable difference I find is that the Commercial CRL uses SHA-1 signing and my own CRL is with MD-5. Is this something some one else has had problems with, or am I barking up the wrong tree? I would appreciate if anyone who might be able to help me would email to this address ([EMAIL PROTECTED]) as I don’t have continuous access to the discussion group. Cheers Kristian _____________________________________ Get your free E-mail at http://www.ireland.com ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]