> However, I do have a question. Is there any way around this requirement? The > requirement of apending the root certificate and CRL files on the client > machine in /etc/ssl/crls?
It totally depends on the client program that you are using. So, which client? The validation code won't, on its own, look at something like the CRL-DP and fetch things for you. /r$ -- Principal Security Engineer Akamai Technologies, Cambridge MA IM: rs...@jabber.me Twitter: RichSalz ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager majord...@openssl.org