>From: owner-openssl-us...@openssl.org On Behalf Of Salz, Rich
>Sent: Wednesday, 01 May, 2013 15:11
>To: openssl-users@openssl.org; r...@openssl.org

>I have a self-signed certificate (new.crt) that I want to sign 
>with the x509 app and the keypair that is in ca.pem.
<snip>
>With the latest, it looks like the only thing output is the new signature L
<snip>
>Not only is the issuer wrong, but the cert extensions aren't removed.

See thread "change in x509 -CA in 1.0.1?" 4/09-4/11.     

>Any thoughts?  I stepped through the x590_main, and it looked reasonable, 
>until I got lost in the PEM/ASN1 macros.

me2. (Actually x509_certify in x509.c, but close enough.)

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           majord...@openssl.org

Reply via email to