opensubscriber
   Find in this group all groups
 
Unknown more information…

o : openca-users@lists.sourceforge.net 13 November 2009 • 10:41PM -0500

[Openca-Users] Trouble with LDAP and CRL's
by blainedw

REPLY TO AUTHOR
 
REPLY TO GROUP






Hi all,

Unlike most folks, I was able to publish my certificates and CRL's in LDAP
using Openca 1.0.2. My problem exists with check for it in LDAP. Using
PKIVIEW in Windows it mentions that it is "Unable to download" the CRL
from the LDAP CDP. It reports "OK" for the http one.

I used an ldap search command to check the existance of the CRL in LDAP
and that it was not expired. Here is the command I used:

./ldapsearch -x -h host -b "cn=Root CA,ou=Trustcenter,dc=domain,dc=com"
certificateRevocationList

I am also able to use IE to at least contact the LDAP server via this
method (unsure how to download CRL using this method):

ldap://host/cn=Root CA,ou=Trustcenter,dc=domain,dc=com

Any help appreciated!!!!

Dave

Bookmark with:

Delicious   Digg   reddit   Facebook   StumbleUpon

Related Messages

opensubscriber is not affiliated with the authors of this message nor responsible for its content.