Make sure the browser has the necessary root and intermediate certificates to verify the OCSP response. The local OCSP test has access to your cert database, but Mozilla doesn't unless you explicitly provided them (by sticking them into a PKCS7 when you imported the root cert, or imported them explicitly).

Cheers
-- perry

--On Friday, October 18, 2002 9:45 AM +0200 Michiels Olivier <[EMAIL PROTECTED]> wrote:

Hi,
I've just implemented an OCSP responder and I want to test it with
netscape or mozilla. Both browsers returns that the certificate cannot be
verified for an unknown reason but when I use the ocsp client of openssl
it works.

Any idea ?

Michiels Olivier

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

---------------------------------------------------------------------------
Perry The Cynic                                             [EMAIL PROTECTED]
To a blind optimist, an optimistic realist must seem like an Accursed Cynic.
---------------------------------------------------------------------------

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to