Submit Hint Search The Forums LinksStatsPollsHeadlinesRSS
14,000 hints and counting!

Click here to return to the 'More info to use with other CA's' hint
The following comments are owned by whoever posted them. This site is not responsible for what they say.
More info to use with other CA's
Authored by: melo on Oct 30, '03 05:23:58AM

I tried this with Thawte, and it works as advertised.

But if you use another Certification Authority, here are some details:

1. you need to have the full chain in you keychain. X509 certificates are hierarquical, so you could have a CA certificate that signs your company certificate that signs your personal certificate. You need to have your CA and your company certificate in your keychain also.

2. importing some files into keychain (certificate files with extensions like .pem, or .pk12, or .pfx) only import the first certificate. Normaly you would receive in those files a full chain, but aparently a bug in keychain only imports the first one.

A part from that, it's beem seamless...

[ Reply to This | # ]