Results 1 to 2 of 2

Thread: Automating CRL signing

  1. #1
    Join Date
    Apr 2010
    Posts
    1

    Automating CRL signing

    I would like to resign an existing CRL with a longer validity period. This CRL will only be used in DR situations. I would like to make it valid for a period long enough to ensure that the CA environment is restored before CRL's become invalid.

    I am familiar with the certutil -sign tool, but that opens a window that requires that the signing certificate be selected. I haven't found a way to pass the certificate and avoid the window.

    I am also aware that I could manipulate the registery and publish, but we have an HSM installed and the CA would need to be restarted for the settings to be effective. Our HSM requires that PED cards to be inserted to access the private key. So, once again, I cannot automate it.

    Has anyone run into this problem and worked out a solution? I am not a strong developer, so I suspect that there are other ways to crack this egg, that I am not familiar with.

  2. #2
    Join Date
    Nov 2009
    Posts
    857

    Re: Automating CRL signing

    For your purpose it is better to go for some automated tools. I am right now using CRL Monitor. A easy to use tool which can automate crl signing. But other than this it also offers you a trusted infrastructure. I am using this tool for quiet some time and found this very useful in most of the cases.

Similar Threads

  1. automating installation using batch file
    By tush9876 in forum Software Development
    Replies: 1
    Last Post: 01-05-2012, 01:28 AM
  2. Replies: 3
    Last Post: 27-01-2012, 08:23 PM
  3. Automating Button Press with Hardware
    By Blesseds in forum Hardware Peripherals
    Replies: 3
    Last Post: 31-12-2010, 01:13 PM
  4. Automating apt-get install in Ubuntu
    By Peasants in forum Operating Systems
    Replies: 5
    Last Post: 23-01-2010, 04:37 PM
  5. Automating network printer and mapped drives
    By webwired in forum Small Business Server
    Replies: 6
    Last Post: 22-02-2009, 07:09 PM

Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Page generated in 1,713,481,588.76723 seconds with 17 queries