RE: Re - multi-level CAs

2001-10-03 Thread Neulinger, Nathan
he cert-signer needs to correct? -- Nathan > -Original Message- > From: Neulinger, Nathan > Sent: Wednesday, October 03, 2001 2:23 PM > To: '[EMAIL PROTECTED]' > Subject: RE: Re - multi-level CAs > > > Basically, is there something different here that

Re: Re - multi-level CAs

2001-10-03 Thread Louis LeBlanc
On 10/03/01 02:17 PM, Neulinger, Nathan sat at the `puter and typed: > I went had generated a csr from ca.key, sent it to UM System, had them sign > it, brough it back, put it in certificate-chain-file on a httpd server, and > also used ca.key and the new cert to sign a csr for that web server. (I

Re: Re - multi-level CAs

2001-10-03 Thread Nathan Neulinger
> It has probably not be signed as a CA certificate, just as a user > certificate. OpenSSL rejects such certificates for security reasons. Yep, figured out how to solve that. > The x509 utility shouldn't crash though, see if this happens in OpenSSL > 0.9.6b. If it still does can you send me the

Re: Re - multi-level CAs

2001-10-03 Thread Dr S N Henson
"Neulinger, Nathan" wrote: > > I went had generated a csr from ca.key, sent it to UM System, had them sign > it, brough it back, put it in certificate-chain-file on a httpd server, and > also used ca.key and the new cert to sign a csr for that web server. (I > figured generating new certificates