I should think generation of the renewed root certificate would be the easy part, compared with migrating the new certificate out to all your "relying parties"?
Stephan Tesch wrote:
Hi everyone,
$subject says it all :-)
I currently have a Root CA certificate, issued with openssl, that expires in a
couple of days. Since it's nearly impossible to resign all issued certificates
with a new root CA certificate, I'm looking for ways to "just" renew my CA.
I've already tried to create a new CA certificate based upon the old private key, but so far I haven't had any luck. Googling around brought nothing up, too. I'm quite desperate here, so any hint is more than welcome.
Thanks a lot, Stephan ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]
-- "An Internet-connected Windows machine is tantamount to a toddler carrying a baggie of $100 bills down a city street..."
Charles B. (Ben) Cranston mailto:[EMAIL PROTECTED] http://www.wam.umd.edu/~zben
______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]