linux-admin.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* SSL Certificate signing problem
@ 2004-10-07 18:26 Tony Gogoi
  2004-10-09 23:42 ` Adrian C.
  0 siblings, 1 reply; 7+ messages in thread
From: Tony Gogoi @ 2004-10-07 18:26 UTC (permalink / raw)
  To: linux-admin


Hello,

There was an error in running /usr/share/ssl/misc/sign.sh
www.mydomain.com.csr

At first it complained of field 'commonName' Missing. So I added a
'commonName_default' entry in openssl.cnf. Then tried to resign the
certificate.

However this time onwards:
-----------------------------------
Sign the certificate? [y/n]: y
failed to upload database
TXT_DB error number 2
CA verifying: www.mydomain.com.crt <-> CA cert
unable to load certificate
3964:error:0906D06C:PEM routines:PEM_read_bio:no start
line:pem_lib.c:632:Expecting: TRUSTED CERTIFICATE
------------------------------------------------

I feel its due to a bad certificate already in the database. But how do I
remove the earlier information from the 'database'. Or how could I rectify
this?

I am signing the certificate myself (not trusted thrid party etc).

Any help appreciated.

Thanks,
Tony

^ permalink raw reply	[flat|nested] 7+ messages in thread

end of thread, other threads:[~2004-10-11  5:35 UTC | newest]

Thread overview: 7+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2004-10-07 18:26 SSL Certificate signing problem Tony Gogoi
2004-10-09 23:42 ` Adrian C.
2004-10-10  0:20   ` Kevin J. Cummings
2004-10-10  0:24     ` Adrian C.
2004-10-10  1:07       ` Kevin J. Cummings
2004-10-10  7:55         ` Adrian C.
2004-10-11  5:35           ` Adrian C.

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).