Re: bit-size necessary in the command: openssl req -newkey rsa:bits?

2007-06-04 Thread domi
I’m sorry to disturb you again, but isn’t there anybody who knows the answer to my question? I'm thankful for everything that could help me. Best regards domi domi wrote: > > Hello, > > I have got a question concerning the command openssl req -newkey rsa:bits > …. whic

Re: AW: Database file structure

2007-05-26 Thread domi
Thank you Bernhard/ Ted (?), that is exactly what I was looking for. For everyone who wants to know the time format: start reading Bernhards link from behind. Best regards Dominic Bernhard Froehlich wrote: > > > Have a look at > http://www.mail-archive.com/openssl-users@openssl.org/msg459

Re: AW: Database file structure

2007-05-25 Thread domi
Hello Bruno and Thomas, Number 1 and 4-6 are definitively right as long as I know. I think that number 2 and 3 are correct too. But I‘m not quiet sure. Thomas would you be so kind and tell me in what format the time is written? Or just give me link where I can find the information; my search wasn

bit-size necessary in the command: openssl req -newkey rsa:bits?

2007-05-21 Thread domi
://www.openssl.org/news/news.html but I wasn’t able to find an answer for my question. So I hope that somebody in this forum can help me. Best regards domi -- View this message in context: http://www.nabble.com/bit-size-necessary-in-the-command%3A-openssl-req--newkey-rsa%3Abits--tf3790387.html#a10719161 Sent

Re: Question about Partitioned CRLs; how to split a CRL?

2007-03-19 Thread domi
= US organizationName = some organization [ root_ca_extensions ] basicConstraints = CA:true Thank you for reading my post. I hope that somebody might help me to include the crlScope stuff or help me with some other solution. best regards domi -- View this message in context: http

Question about Partitioned CRLs; how to split a CRL?

2007-03-17 Thread domi
me know if you need further information like my config-files or something else. best regards domi -- View this message in context: http://www.nabble.com/Question-about-Partitioned-CRLs--how-to-split-a-CRL--tf3419056.html#a9529138 Sent from the OpenSSL - User mailing list archive at Nabble.com

Re: crlDistributionPoints in a certificate request

2007-02-07 Thread domi
cnf: [ ca ] default_ca = myca [myca] copy_extensions = copy best regards domi -- View this message in context: http://www.nabble.com/crlDistributionPoints-in-a-certificate-request-tf3148251.html#a8844382 Sent from the OpenSSL - User mailing list archive at

Re: A problem with the use of CRLs. I'm still able to access a site although the certificate is revoked.

2007-02-05 Thread domi
. But it is good to know that there is a place where I can ask my OpenSSL questions ;) best regards domi -- View this message in context: http://www.nabble.com/A-problem-with-the-use-of-CRLs.-I%27m-still-able-to-access-a-site-although-the-certificate-is-revoked.-tf3169634.html#a8808160 Sent from

A problem with the use of CRLs. I'm still able to access a site although the certificate is revoked.

2007-02-04 Thread domi
or something else feel free to ask. best regards domi -- View this message in context: http://www.nabble.com/A-problem-with-the-use-of-CRLs.-I%27m-still-able-to-access-a-site-although-the-certificate-is-revoked.-tf3169634.html#a8792524 Sent from the OpenSSL - User mailing list archive

Re: crlDistributionPoints in a certificate request

2007-02-03 Thread domi
After one day pending-status I'll post this message again. domi wrote: > > I won’t quote our complete conversation because it has grown to a rather > huge amount of text. I just will say: Yes, Goetz you are right ;) > So I come to the conclusion that I can’t to those things

Re: crlDistributionPoints in a certificate request

2007-02-01 Thread domi
tion to my problem. Greetings domi -- View this message in context: http://www.nabble.com/crlDistributionPoints-in-a-certificate-request-tf3148251.html#a8749031 Sent from the OpenSSL - User mailing list archive at Nabble.com.

Re: crlDistributionPoints in a certificate request

2007-01-31 Thread domi
in the right direction but having a variable for each client of the CA is not yet ideal. I know that this scenario is probably not realisable today but that should not care us in the meantime. I’m anxious to read comments about “my” scenario or probably a solution for my problem. best regards domi

crlDistributionPoints in a certificate request

2007-01-31 Thread domi
Unfortunately I wasn't able to manage this. I tried a lot of things like crlDistributionPoints=supplied for example but nothing worked. Summary: The certificate shall include the crlDistributionPoints without being written static into the openssl.cnf of the CA. greetings domi -- View this messa