gnutls-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Help required for CSR validation


From: Boyan Kasarov
Subject: Re: Help required for CSR validation
Date: Tue, 24 Nov 2009 23:56:23 +0200

Hello,

Soory for the short answer. Without the patch both RSA and DSA fail.
With the patch RSA works, but DSA still doesn't.

I am attaching 3 CSR.

dsa-no-patch - this is without the patch, it does not work with
VeriSign.

dsa-patch - this is the patched version, it also does not work with
VeriSign.

dsa-openssl- this one is generated with openssl, it works with VeriSign.

generate-request.c - I used this modified example from the documentation
to generate the requests.

I used VeriSign trial service from this link -
http://www.verisign.com/ssl/buy-ssl-certificates/free-ssl-certificate-trial/index.html

Greetings,
Boyan

В 22:55 +0200 на 24.11.2009 (вт), Nikos Mavrogiannopoulos написа:
> Boyan Kasarov wrote:
> > Hello,
> > 
> > This patch works for RSA, but doesn't for DSA.
> 
> Hello,
>  I do not understand. Did DSA keys got accepted before and now they
> don't or no matter the patch or not they don't get accepted? If that
> this the case, could you send me a DSA crq from gnutls that fails and a
> crq with the same information from say openssl that gets accepted by
> your CA?
> 
> regards,
> Nikos

Attachment: dsa-no-patch.pem
Description: application/x509-ca-cert

Attachment: dsa-no-patch.txt
Description: Text document

Attachment: dsa-patch.pem
Description: application/x509-ca-cert

Attachment: dsa-patch.txt
Description: Text document

Attachment: generate-request.c
Description: Text Data

Attachment: dsa-openssl.pem
Description: application/x509-ca-cert

Attachment: dsa-openssl.txt
Description: Text document


reply via email to

[Prev in Thread] Current Thread [Next in Thread]