[prev in list] [next in list] [prev in thread] [next in thread] 

List:       apache-modssl
Subject:    Verisign GLOBAL SERVER CERTIFICATE
From:       "Moss, Peter" <pmoss () buckconsultants ! ca>
Date:       2000-10-27 21:32:07
[Download RAW message or body]


All,

I thought I share this with the rest of modssl group.

For all of you who applied for the VeriSign GLOBAL Server Certificate:

Verisign generates the intermediate CA and the server certificate as one
CRT file.  You have to split it with scginst.exe (Microsoft Tool)
like this:
	c:\scginst -i -o server.crt name_of_file_from_verisign.crt

Copy the Intermediate CA certificate from the VeriSign website, and
install it along with the server.crt above.

If you try to use CRT file from VeriSign you will get the following error:

service# pwd
/usr/local/apache/openssl-0.9.6/apps
service# openssl x509 -noout -text -in /usr/home/pmoss/proxy2.crt
unable to load certificate
26869:error:0D0A2007:asn1 encoding routines:d2i_X509_CINF:expecting an asn1
sequ
ence:/usr/src/secure/lib/libcrypto/../../../crypto/openssl/crypto/asn1/x_cin
f.c:
106:address=134766594 offset=0
26869:error:0D09F004:asn1 encoding routines:d2i_X509:nested asn1
error:/usr/src/
secure/lib/libcrypto/../../../crypto/openssl/crypto/asn1/x_x509.c:99:address
=134
766592 offset=2
26869:error:0906700D:PEM routines:PEM_ASN1_read_bio:ASN1
lib:/usr/src/secure/lib
/libcrypto/../../../crypto/openssl/crypto/pem/pem_lib.c:239:
service#




["sgcinst.exe" (application/octet-stream)]

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic