Anri Lau wrote: > Hi All, > > Anyone know how many rules should be performed when build TLS > connection? > I have some test case. The certificate time is not valid, validation > failed. But the certificate passed if the validity dates of the child > certificate are not contained within the validity > dates of the parent certificate. > > As i know, both of above are the standard rules of digital certificate. I am not sure whether I understand you correctly. If the validity dates of the child certificate are not contained within the parent certificate, there should be no date at which both of them are valid at the same time!? Or do you mean that they somewhat overlap and the current date is within the overlapping region?
Best regards, Lutz ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]