I have only just subscribed to this list so I apologise if I don't follow protocol. I thought this would be easy but my Web searches have led to nothing and I can't find a archive for this list :-(
I have had my own CA for a little over a year now (key point). This has been done using openssl and the clues from Ralf's mod_ssl FAQ (including the sign.sh script from the mod_ssl distrib). All works fine and I have used the certificates for HTTPS and IMAPS on my intranet and for some personal services over the Internet ... No problems. However, my certificates have now started to expire and I am getting warning dialogs from my apps. Not really a big deal as all the secured services are private and are still usable, but it is annoying. I have searched for a way to renew the existing certs and read through the openssl ca man page several times but I just can't work out what I'm supposed to do. I did find one page that seemed to suggest that I revoke my expired certificates and then resign the CSRs but this doesn't seem right to me. Hopefully someone has a quick explanation, I can't imagine this is that complicated I'm just feeling really dumb at the moment. TIA for any help /dan -- Daniel Sutcliffe <[EMAIL PROTECTED]> ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]