You can subscribe to this list here.
| 2001 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
(1) |
Dec
(3) |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 2002 |
Jan
(3) |
Feb
(2) |
Mar
(8) |
Apr
(3) |
May
(6) |
Jun
(1) |
Jul
(15) |
Aug
(6) |
Sep
|
Oct
(10) |
Nov
(2) |
Dec
(4) |
| 2003 |
Jan
(1) |
Feb
(7) |
Mar
(3) |
Apr
(6) |
May
(7) |
Jun
(5) |
Jul
(5) |
Aug
(25) |
Sep
(14) |
Oct
(2) |
Nov
|
Dec
(2) |
| 2004 |
Jan
(7) |
Feb
(4) |
Mar
(12) |
Apr
(16) |
May
(43) |
Jun
(56) |
Jul
(43) |
Aug
(40) |
Sep
(66) |
Oct
(12) |
Nov
(26) |
Dec
(10) |
| 2005 |
Jan
(13) |
Feb
(33) |
Mar
(16) |
Apr
(7) |
May
(10) |
Jun
(34) |
Jul
(41) |
Aug
(8) |
Sep
(4) |
Oct
(32) |
Nov
(20) |
Dec
(25) |
| 2006 |
Jan
(30) |
Feb
(101) |
Mar
(5) |
Apr
(75) |
May
(74) |
Jun
(22) |
Jul
(6) |
Aug
(70) |
Sep
(19) |
Oct
(21) |
Nov
(31) |
Dec
(50) |
| 2007 |
Jan
(15) |
Feb
(20) |
Mar
(24) |
Apr
(33) |
May
(13) |
Jun
(18) |
Jul
(13) |
Aug
(7) |
Sep
(63) |
Oct
(68) |
Nov
(29) |
Dec
(68) |
| 2008 |
Jan
(30) |
Feb
(33) |
Mar
(30) |
Apr
(103) |
May
(78) |
Jun
(48) |
Jul
(72) |
Aug
(24) |
Sep
(62) |
Oct
(63) |
Nov
(70) |
Dec
(37) |
| 2009 |
Jan
(34) |
Feb
(35) |
Mar
(64) |
Apr
(34) |
May
(34) |
Jun
(58) |
Jul
(30) |
Aug
(30) |
Sep
(46) |
Oct
(52) |
Nov
(12) |
Dec
(23) |
| 2010 |
Jan
(121) |
Feb
(18) |
Mar
(53) |
Apr
(62) |
May
(62) |
Jun
(20) |
Jul
(33) |
Aug
(20) |
Sep
(36) |
Oct
(35) |
Nov
(44) |
Dec
(63) |
| 2011 |
Jan
(19) |
Feb
(32) |
Mar
(94) |
Apr
(41) |
May
(47) |
Jun
(25) |
Jul
(34) |
Aug
(20) |
Sep
(9) |
Oct
(41) |
Nov
(33) |
Dec
(24) |
| 2012 |
Jan
(12) |
Feb
(36) |
Mar
(48) |
Apr
(32) |
May
(20) |
Jun
(15) |
Jul
(32) |
Aug
(13) |
Sep
(33) |
Oct
(54) |
Nov
(25) |
Dec
(16) |
| 2013 |
Jan
(45) |
Feb
(39) |
Mar
(38) |
Apr
(50) |
May
(29) |
Jun
(30) |
Jul
(33) |
Aug
(12) |
Sep
(9) |
Oct
(25) |
Nov
(29) |
Dec
(20) |
| 2014 |
Jan
(25) |
Feb
(19) |
Mar
(16) |
Apr
(33) |
May
(27) |
Jun
(37) |
Jul
(29) |
Aug
(27) |
Sep
(37) |
Oct
(58) |
Nov
(109) |
Dec
(26) |
| 2015 |
Jan
(4) |
Feb
(35) |
Mar
(22) |
Apr
(35) |
May
(28) |
Jun
(20) |
Jul
(4) |
Aug
(16) |
Sep
(37) |
Oct
(13) |
Nov
(13) |
Dec
(14) |
| 2016 |
Jan
(22) |
Feb
(7) |
Mar
(23) |
Apr
(30) |
May
(10) |
Jun
(10) |
Jul
(15) |
Aug
(12) |
Sep
(22) |
Oct
(31) |
Nov
(5) |
Dec
(5) |
| 2017 |
Jan
(30) |
Feb
(25) |
Mar
(28) |
Apr
(4) |
May
(19) |
Jun
(13) |
Jul
(7) |
Aug
(1) |
Sep
(2) |
Oct
(5) |
Nov
(12) |
Dec
(2) |
| 2018 |
Jan
(7) |
Feb
|
Mar
(7) |
Apr
(2) |
May
(8) |
Jun
(18) |
Jul
(6) |
Aug
(3) |
Sep
(15) |
Oct
(33) |
Nov
(13) |
Dec
(7) |
| 2019 |
Jan
(5) |
Feb
(7) |
Mar
(30) |
Apr
(5) |
May
(4) |
Jun
(69) |
Jul
(86) |
Aug
(22) |
Sep
(6) |
Oct
(7) |
Nov
(5) |
Dec
(3) |
| 2020 |
Jan
(10) |
Feb
(12) |
Mar
(22) |
Apr
(5) |
May
(1) |
Jun
(4) |
Jul
(6) |
Aug
|
Sep
(9) |
Oct
|
Nov
|
Dec
(1) |
| 2021 |
Jan
(4) |
Feb
(11) |
Mar
(7) |
Apr
(7) |
May
|
Jun
(3) |
Jul
(10) |
Aug
(6) |
Sep
|
Oct
|
Nov
(18) |
Dec
(2) |
| 2022 |
Jan
(1) |
Feb
(1) |
Mar
|
Apr
|
May
|
Jun
(2) |
Jul
|
Aug
(4) |
Sep
|
Oct
|
Nov
|
Dec
|
| 2023 |
Jan
|
Feb
|
Mar
|
Apr
(1) |
May
(1) |
Jun
|
Jul
|
Aug
(5) |
Sep
|
Oct
|
Nov
|
Dec
|
|
From: Tomas G. <to...@pr...> - 2014-09-03 13:05:43
|
It works fine for me in OpenJDK 7. What does not work with Java 7 is JBoss 5. /Tomas On 2014-09-03 14:56, Тимур wrote: > Hello ! > > EJBCA 6.1.1 works with openjdk-1.6; > but EJBCA 6.1.1 works neither openjdk-1.7 nor Oracle Java 7. > People say about EJBCA : > >>>Java: DO NOT waste time trying to get java 1.7 to work with this app > at present. > >>>If you install java 1.7, then the "java" command will invoke 1.7 by > virtue of alternatives. Theoretically, alternatives > >>>should take care of redirecting all java-related executable paths to > the correct executables. However, what I found is > >>>that the 1.7 implementation from openjdk is incomplete, and ejbca > will end up needing to use portions of version > >>>1.6. This inevitably ends up with a non-working ejbca install. > > Can you please to explain steps for providing openjdk-1.7 (or Oracle > Java 7) support in EJBCA 6.1.1 ? > > Regards, Timur. > > > > > > ------------------------------------------------------------------------------ > Slashdot TV. > Video for Nerds. Stuff that matters. > http://tv.slashdot.org/ > > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > |
|
From: Тимур <tim...@gm...> - 2014-09-03 12:56:10
|
Hello ! EJBCA 6.1.1 works with openjdk-1.6; but EJBCA 6.1.1 works neither openjdk-1.7 nor Oracle Java 7. People say about EJBCA : >>>Java: DO NOT waste time trying to get java 1.7 to work with this app at present. >>>If you install java 1.7, then the "java" command will invoke 1.7 by virtue of alternatives. Theoretically, alternatives >>>should take care of redirecting all java-related executable paths to the correct executables. However, what I found is >>>that the 1.7 implementation from openjdk is incomplete, and ejbca will end up needing to use portions of version >>>1.6. This inevitably ends up with a non-working ejbca install. Can you please to explain steps for providing openjdk-1.7 (or Oracle Java 7) support in EJBCA 6.1.1 ? Regards, Timur. |
|
From: Randy Yu <yu...@ec...> - 2014-09-02 20:25:16
|
When using the ejbca.sh ocsp cmd for OCSP verification, I am seeing the following error with an early version 3.x EJBCA. Any comments/recommendations for what could be causing this?
2014-09-02 19:09:22,009 DEBUG [org.ejbca.util.CertTools] >getCertfromByteArray:
2014-09-02 19:09:22,009 DEBUG [org.ejbca.util.CertTools] <getCertfromByteArray:
2014-09-02 19:09:22,009 DEBUG [org.ejbca.util.CertTools] >getCertfromByteArray:
2014-09-02 19:09:22,009 DEBUG [org.ejbca.util.CertTools] <getCertfromByteArray:
2014-09-02 19:09:22,037 ERROR [org.jboss.ejb.plugins.LogInterceptor] RuntimeException in method: public abstract org.ejbca.core.model.ca.caadmin.extendedcaservices.ExtendedCAServiceResponse org.ejbca.core.ejb.ca.sign.ISignSessionLocal.extendedService(org.ejbca.core.model.log.Admin,int,org.ejbca.core.model.ca.caadmin.extendedcaservices.ExtendedCAServiceRequest) throws org.ejbca.core.model.ca.caadmin.extendedcaservices.ExtendedCAServiceRequestException,org.ejbca.core.model.ca.caadmin.extendedcaservices.IllegalExtendedCAServiceRequestException,org.ejbca.core.model.ca.caadmin.extendedcaservices.ExtendedCAServiceNotActiveException,org.ejbca.core.model.ca.caadmin.CADoesntExistsException:
java.lang.IllegalArgumentException: unknown signing algorithm specified
at org.bouncycastle.ocsp.BasicOCSPRespGenerator.generate(Unknown Source)
at org.bouncycastle.ocsp.BasicOCSPRespGenerator.generate(Unknown Source)
at org.ejbca.core.model.ca.caadmin.X509CA.extendedService(X509CA.java:629)
at org.ejbca.core.ejb.ca.sign.RSASignSessionBean.extendedService(RSASignSessionBean.java:1377)
at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)
at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)
at java.lang.reflect.Method.invoke(Method.java:592)
at org.jboss.invocation.Invocation.performCall(Invocation.java:345)
at org.jboss.ejb.StatelessSessionContainer$ContainerInterceptor.invoke(StatelessSessionContainer.java:214)
at org.jboss.resource.connectionmanager.CachedConnectionInterceptor.invoke(CachedConnectionInterceptor.java:185)
at org.jboss.ejb.plugins.StatelessSessionInstanceInterceptor.invoke(StatelessSessionInstanceInterceptor.java:113)
at org.jboss.webservice.server.ServiceEndpointInterceptor.invoke(ServiceEndpointInterceptor.java:51)
at org.jboss.ejb.plugins.CallValidationInterceptor.invoke(CallValidationInterceptor.java:48)
at org.jboss.ejb.plugins.AbstractTxInterceptor.invokeNext(AbstractTxInterceptor.java:105)
at org.jboss.ejb.plugins.TxInterceptorCMT.runWithTransactions(TxInterceptorCMT.java:313)
at org.jboss.ejb.plugins.TxInterceptorCMT.invoke(TxInterceptorCMT.java:146)
at org.jboss.ejb.plugins.SecurityInterceptor.invoke(SecurityInterceptor.java:122)
at org.jboss.ejb.plugins.LogInterceptor.invoke(LogInterceptor.java:192)
at org.jboss.ejb.plugins.ProxyFactoryFinderInterceptor.invoke(ProxyFactoryFinderInterceptor.java:122)
at org.jboss.ejb.SessionContainer.internalInvoke(SessionContainer.java:624)
at org.jboss.ejb.Container.invoke(Container.java:870)
at org.jboss.ejb.plugins.local.BaseLocalProxyFactory.invoke(BaseLocalProxyFactory.java:413)
at org.jboss.ejb.plugins.local.StatelessSessionProxy.invoke(StatelessSessionProxy.java:82)
at $Proxy194.extendedService(Unknown Source)
at org.ejbca.ui.web.protocol.OCSPServlet.extendedService(OCSPServlet.java:106)
at org.ejbca.ui.web.protocol.OCSPServletBase.signOCSPResponse(OCSPServletBase.java:313)
at org.ejbca.ui.web.protocol.OCSPServletBase.service(OCSPServletBase.java:662)
at org.ejbca.ui.web.protocol.OCSPServletBase.doPost(OCSPServletBase.java:439)
at javax.servlet.http.HttpServlet.service(HttpServlet.java:717)
at javax.servlet.http.HttpServlet.service(HttpServlet.java:810)
at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:237)
at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:157)
at org.jboss.web.tomcat.filters.ReplyHeaderFilter.doFilter(ReplyHeaderFilter.java:75)
at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:186)
at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:157)
at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:214)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:104)
at org.apache.catalina.core.StandardPipeline.invoke(StandardPipeline.java:520)
at org.apache.catalina.core.StandardContextValve.invokeInternal(StandardContextValve.java:198)
at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:152)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:104)
at org.jboss.web.tomcat.security.CustomPrincipalValve.invoke(CustomPrincipalValve.java:66)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:102)
at org.jboss.web.tomcat.security.SecurityAssociationValve.invoke(SecurityAssociationValve.java:150)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:102)
at org.jboss.web.tomcat.security.JaccContextValve.invoke(JaccContextValve.java:54)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:102)
at org.apache.catalina.core.StandardPipeline.invoke(StandardPipeline.java:520)
at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:137)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:104)
at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:118)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:102)
at org.apache.catalina.core.StandardPipeline.invoke(StandardPipeline.java:520)
at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:109)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:104)
at org.apache.catalina.core.StandardPipeline.invoke(StandardPipeline.java:520)
at org.apache.catalina.core.ContainerBase.invoke(ContainerBase.java:929)
at org.apache.coyote.tomcat5.CoyoteAdapter.service(CoyoteAdapter.java:160)
at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:799)
at org.apache.coyote.http11.Http11Protocol$Http11ConnectionHandler.processConnection(Http11Protocol.java:705)
at org.apache.tomcat.util.net.TcpWorkerThread.runIt(PoolTcpEndpoint.java:577)
at org.apache.tomcat.util.threads.ThreadPool$ControlRunnable.run(ThreadPool.java:683)
at java.lang.Thread.run(Thread.java:595)
2014-09-02 19:09:22,041 ERROR [org.ejbca.ui.web.protocol.OCSPServletBase] Unable to handle OCSP request.
javax.ejb.EJBException: RuntimeException; CausedByException is:
unknown signing algorithm specified
at org.jboss.ejb.plugins.LogInterceptor.handleException(LogInterceptor.java:382)
at org.jboss.ejb.plugins.LogInterceptor.invoke(LogInterceptor.java:196)
at org.jboss.ejb.plugins.ProxyFactoryFinderInterceptor.invoke(ProxyFactoryFinderInterceptor.java:122)
at org.jboss.ejb.SessionContainer.internalInvoke(SessionContainer.java:624)
at org.jboss.ejb.Container.invoke(Container.java:870)
at org.jboss.ejb.plugins.local.BaseLocalProxyFactory.invoke(BaseLocalProxyFactory.java:413)
at org.jboss.ejb.plugins.local.StatelessSessionProxy.invoke(StatelessSessionProxy.java:82)
at $Proxy194.extendedService(Unknown Source)
at org.ejbca.ui.web.protocol.OCSPServlet.extendedService(OCSPServlet.java:106)
at org.ejbca.ui.web.protocol.OCSPServletBase.signOCSPResponse(OCSPServletBase.java:313)
at org.ejbca.ui.web.protocol.OCSPServletBase.service(OCSPServletBase.java:662)
at org.ejbca.ui.web.protocol.OCSPServletBase.doPost(OCSPServletBase.java:439)
at javax.servlet.http.HttpServlet.service(HttpServlet.java:717)
at javax.servlet.http.HttpServlet.service(HttpServlet.java:810)
at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:237)
at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:157)
at org.jboss.web.tomcat.filters.ReplyHeaderFilter.doFilter(ReplyHeaderFilter.java:75)
at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:186)
at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:157)
at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:214)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:104)
at org.apache.catalina.core.StandardPipeline.invoke(StandardPipeline.java:520)
at org.apache.catalina.core.StandardContextValve.invokeInternal(StandardContextValve.java:198)
at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:152)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:104)
at org.jboss.web.tomcat.security.CustomPrincipalValve.invoke(CustomPrincipalValve.java:66)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:102)
at org.jboss.web.tomcat.security.SecurityAssociationValve.invoke(SecurityAssociationValve.java:150)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:102)
at org.jboss.web.tomcat.security.JaccContextValve.invoke(JaccContextValve.java:54)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:102)
at org.apache.catalina.core.StandardPipeline.invoke(StandardPipeline.java:520)
at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:137)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:104)
at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:118)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:102)
at org.apache.catalina.core.StandardPipeline.invoke(StandardPipeline.java:520)
at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:109)
at org.apache.catalina.core.StandardValveContext.invokeNext(StandardValveContext.java:104)
at org.apache.catalina.core.StandardPipeline.invoke(StandardPipeline.java:520)
at org.apache.catalina.core.ContainerBase.invoke(ContainerBase.java:929)
at org.apache.coyote.tomcat5.CoyoteAdapter.service(CoyoteAdapter.java:160)
at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:799)
at org.apache.coyote.http11.Http11Protocol$Http11ConnectionHandler.processConnection(Http11Protocol.java:705)
at org.apache.tomcat.util.net.TcpWorkerThread.runIt(PoolTcpEndpoint.java:577)
at org.apache.tomcat.util.threads.ThreadPool$ControlRunnable.run(ThreadPool.java:683)
at java.lang.Thread.run(Thread.java:595)
Randy
|
|
From: Branko M. <br...@ma...> - 2014-08-31 19:14:30
|
On Thu, 21 Aug 2014 08:54:08 +0100 Ebtehal Hassan <h.e...@ya...> wrote: > Hi, I try to deploy a hierarchical PKI architecture, that means a PKI architecture with a root CA and some external sub CA in addition to Management CA for managing all CAs & sup CAs, but I have some problems. Here is what i actuall do: > - For Management CA, I deploy an EJBCA by default in machine 1; and create another super administrator from this CA & delete the old one. > - For Root CA, I was copy the Managment CA in machine 2 and create Root CA; after that i was trying to delete Management CA but it was not deleted. But if i create new superadmin using Root CA the old one will be deleted but the Management CA will not have any permision on Root CA. :( > > > > So my question is how i can isolate Root CA from Managment CA without missing the managing & administration of Management CA on all systems & my PKI??? > > > Thanks and best regards, > Ebtehal Hassan > I am not quite sure I understand the problem (maybe if you try to explain it with a bit more details), but I'm assuming that you want to have a Management CA that is hosted outside of Root CA EJBCA instance used for authentication and authorisation purposes on the Root CA EJBCA instance. In such case you would normally create Management CA somewhere else, and then import it as external CA (just the Management CA certificate) into the Root CA EJBCA instance. This would be the first step you'd perform on the Root CA EJBCA instance (and you'd need to do it via EJBCA CLI). The next step would be adding one of the admin certificates issued by Management CA to the super-administrator group on the Root CA EJBCA instance (again via EJBCA CLI). You would also issue an appropriate keystore/truststore for your Root CA EJBCA instance, deploy it etc. After all of this, if you have disabled administrator certificate checks in web.properties on Root CA EJBCA instance (or you have imported the administrator certificate into Root CA EJBCA instance), you would be able to go in through the web GUI and create your Root CA. Hopefully this somewhat condensed answer will get you going into right direction :) Best regards -- Branko Majic Jabber: br...@ma... Please use only Free formats when sending attachments to me. Бранко Мајић Џабер: br...@ma... Молим вас да додатке шаљете искључиво у слободним форматима. |
|
From: David C. <dca...@li...> - 2014-08-28 13:09:03
|
Fix: "is not fully localized" --> "is [now] fully localized" ;-) As Tomas told, we look for EJBCA localizors, precisely: - to update the current following languages: German (Deutsch), Italian (Italiano), Spanish (Español), and Chinese (中文), - to create the new following languages: Russian (Русский), Polish (Polski), Vietnamese (Tiếng Việt), Korean (한국어), etc. Of course, people from any other countries are welcome to translate EJBCA. If you need help to begin, you can ask me. --- EJBCA download statistics Here you are the statistics about countries where EJBCA is downloaded from, between 2001-11-09 and 2014-08-26. Note: 2001-11-09 is the date when the project had been created in sourceforge. These statistics are interesting for new people who want to translate EJBCA for their own language. Number of downloads (of total = 201541), of the 20 first countries: 1. United States 16392 2. China 11181 3. France 7982 4. Germany 6864 5. Spain 2745 6. India 2728 7. Russia 2662 8. Poland 2541 9. Italy 2375 10. Viet Nam 2318 11. Netherlands 2084 12. United Kingdom 2032 13. Brazil 1845 14. Sweden 1674 15. Canada 1437 16. Korea 1378 17. Indonesia 1161 18. Switzerland 1153 19. Japan 1112 20. Argentina 1053 Best regards, David CARELLA On 27/08/2014 11:32, Tomas Gustavsson wrote: > > Thanks to David Carella EJBCA is not fully localized in French. > > The statistics gathered by David looks nice. > > $ /opt/ejbca/modules/admin-gui/resources/languages/language-tool.sh -s > Language tool for EJBCA (6.3.0), language-tool.sh, v1.1 > > Reference: languagefile.en.properties > > Message key statistics: > > Lang. Filename Key count Completed > ----------------------------------------------------------- > bs languagefile.bs.properties 1407 keys 74.6 % > de languagefile.de.properties 1331 keys 70.6 % > en languagefile.en.properties 1884 keys 100.0 % > es languagefile.es.properties 806 keys 42.7 % > fr languagefile.fr.properties 1884 keys 100.0 % > it languagefile.it.properties 792 keys 42.0 % > ja languagefile.ja.properties 1523 keys 80.8 % > pt languagefile.pt.properties 1375 keys 72.9 % > se languagefile.se.properties 1186 keys 62.9 % > ua languagefile.ua.properties 1437 keys 76.2 % > zh languagefile.zh.properties 1087 keys 57.6 % > ----------------------------------------------------------- > Count = 11 language files (Admin GUI) > Date: 2014-08-26 (EJBCA 6.3.0) > > Any localizers from Germany, Italy or Spain out there? > > Cheers, > Tomas > > ------------------------------------------------------------------------------ > Slashdot TV. > Video for Nerds. Stuff that matters. > http://tv.slashdot.org/ > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > |
|
From: Tomas G. <to...@pr...> - 2014-08-27 09:32:35
|
Thanks to David Carella EJBCA is not fully localized in French. The statistics gathered by David looks nice. $ /opt/ejbca/modules/admin-gui/resources/languages/language-tool.sh -s Language tool for EJBCA (6.3.0), language-tool.sh, v1.1 Reference: languagefile.en.properties Message key statistics: Lang. Filename Key count Completed ----------------------------------------------------------- bs languagefile.bs.properties 1407 keys 74.6 % de languagefile.de.properties 1331 keys 70.6 % en languagefile.en.properties 1884 keys 100.0 % es languagefile.es.properties 806 keys 42.7 % fr languagefile.fr.properties 1884 keys 100.0 % it languagefile.it.properties 792 keys 42.0 % ja languagefile.ja.properties 1523 keys 80.8 % pt languagefile.pt.properties 1375 keys 72.9 % se languagefile.se.properties 1186 keys 62.9 % ua languagefile.ua.properties 1437 keys 76.2 % zh languagefile.zh.properties 1087 keys 57.6 % ----------------------------------------------------------- Count = 11 language files (Admin GUI) Date: 2014-08-26 (EJBCA 6.3.0) Any localizers from Germany, Italy or Spain out there? Cheers, Tomas |
|
From: Ebtehal H. <h.e...@ya...> - 2014-08-27 04:39:29
|
Hi, I try to deploy a hierarchical PKI architecture, that means a PKI architecture with a root CA and some external sub CA in addition to Management CA for managing all CAs & sup CAs, but I have some problems. Here is what i actuall do: - For Management CA, I deploy an EJBCA by default in machine 1; and create another super administrator from this CA & delete the old one. - For Root CA, I was copy the Managment CA in machine 2 and create Root CA; after that i was trying to delete Management CA but it was not deleted. But if i create new superadmin using Root CA the old one will be deleted but the Management CA will not have any permision on Root CA. :( So my question is how i can isolate Root CA from Managment CA without missing the managing & administration of Management CA on all systems & my PKI??? Thanks and best regards, Ebtehal Hassan |
|
From: Pavel B. <byc...@ht...> - 2014-08-26 13:42:36
|
Hi Branko, Thank you for clarification Best regards, Pavel -------- Original Message -------- *Subject: *Re: [Ejbca-develop] bind an End Entity to several CAs *From: *Branko Majic <br...@ma...> *To: *ejb...@li... *Date: *22.08.2014 22:04 > On Fri, 22 Aug 2014 16:39:24 +0300 > Pavel Bychykhin <byc...@ht...> wrote: > >> Hello Everyone, >> While I'm adding End Entities I should chose a CA. So End Entity is >> being bound to CA (or not)? >> What if I have several CAs and I need to enroll in both of them with the >> same name? >> Can you please clarify, why can't End Entities duplicate despite the >> fact they are linked to different CAs? >> Thanks in advance. >> > In a way, the CA that is selected for an end entity will dictate what > CA will be issuing the next certificate for that end entity. This is at > least the case when using the EJBCA web GUI (I am not 100% sure in case > of web service calls, but I _think_ it's the same). > > If you wish to issue certificates to same end entity from multiple CAs, > you would need to update the end entity's CA before each certificate > issuance. Otherwise there shouldn't be anything in EJBCA preventing you > from doing this. > > As for why this was implemented the way it was, I will take some wide > liberties and assume it was simply a design decision, and it fitted the > most common deployment cases at that time. But this is me literally > just shooting off from the hip (movie hero style :). > > In the end, keep in mind that the end entity profile is the one that > really dictates what CAs will be available for issuing a certificate to > an end entity. The CA that is currently selected for the end entity can > be set to any of those (at any time). > > Best regards > > P.S. > As a side-note, you may notice that certificate profile selection for > an end entity has a similar design/principle too. > > > > ------------------------------------------------------------------------------ > Slashdot TV. > Video for Nerds. Stuff that matters. > http://tv.slashdot.org/ > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop |
|
From: Tomas G. <to...@pr...> - 2014-08-26 11:30:23
|
You can always find the latest version of EJBCA Community at http://www.ejbca.org/. As for EJBCA Enterprise, the latest version is retrieved from PrimeKey (currently 6.2.1). Regards, Tomas On 2014-08-26 11:32, Ebtehal Hassan wrote: > Hi tomas > what is the latest version stable of EJBCA??? > > with regards, > Ebtehal Hassan > > > ------------------------------------------------------------------------------ > Slashdot TV. > Video for Nerds. Stuff that matters. > http://tv.slashdot.org/ > > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > |
|
From: Ebtehal H. <h.e...@ya...> - 2014-08-26 09:32:56
|
Hi tomas what is the latest version stable of EJBCA??? with regards, Ebtehal Hassan |
|
From: Ebtehal H. <h.e...@ya...> - 2014-08-25 10:22:21
|
Hi How i can connect SignServer to EJBCA; Or in the sense explained ,, How i can let any issued certificate send request to Sign Server to put the timestamp with the signature.. With regards, Ebtehal Hassan Eissa |
|
From: Tomas G. <to...@pr...> - 2014-08-25 07:52:48
|
Sorry for off-topic subject. If you are interested in working with EJBCA there are now several job openings available at PrimeKey. http://www.primekey.se/Company/Career/ Cheers, Tomas |
|
From: Branko M. <br...@ma...> - 2014-08-22 19:05:05
|
On Fri, 22 Aug 2014 16:39:24 +0300 Pavel Bychykhin <byc...@ht...> wrote: > Hello Everyone, > While I'm adding End Entities I should chose a CA. So End Entity is > being bound to CA (or not)? > What if I have several CAs and I need to enroll in both of them with the > same name? > Can you please clarify, why can't End Entities duplicate despite the > fact they are linked to different CAs? > Thanks in advance. > In a way, the CA that is selected for an end entity will dictate what CA will be issuing the next certificate for that end entity. This is at least the case when using the EJBCA web GUI (I am not 100% sure in case of web service calls, but I _think_ it's the same). If you wish to issue certificates to same end entity from multiple CAs, you would need to update the end entity's CA before each certificate issuance. Otherwise there shouldn't be anything in EJBCA preventing you from doing this. As for why this was implemented the way it was, I will take some wide liberties and assume it was simply a design decision, and it fitted the most common deployment cases at that time. But this is me literally just shooting off from the hip (movie hero style :). In the end, keep in mind that the end entity profile is the one that really dictates what CAs will be available for issuing a certificate to an end entity. The CA that is currently selected for the end entity can be set to any of those (at any time). Best regards P.S. As a side-note, you may notice that certificate profile selection for an end entity has a similar design/principle too. -- Branko Majic Jabber: br...@ma... Please use only Free formats when sending attachments to me. Бранко Мајић Џабер: br...@ma... Молим вас да додатке шаљете искључиво у слободним форматима. |
|
From: Pavel B. <byc...@ht...> - 2014-08-22 13:39:43
|
Hello Everyone, While I'm adding End Entities I should chose a CA. So End Entity is being bound to CA (or not)? What if I have several CAs and I need to enroll in both of them with the same name? Can you please clarify, why can't End Entities duplicate despite the fact they are linked to different CAs? Thanks in advance. -- Best regards, Pavel |
|
From: Tomas G. <to...@pr...> - 2014-08-18 14:17:12
|
Sometimes JBoss is a bit buggy. Same thing happened to me, but it still is registered (if the regsiter command was success). Just restart JBoss and it should be there. On 2014-08-18 15:11, Miguel Angel Robledo wrote: > Hi, > > I'm installing ejbca on Ubuntu Server 12.04 64 bits and Ubuntu Server > 14.04 64 bits with Jboss-as-7.1.1 and Mysql Database. > > I'm following the steps on http://ejbca.org/docs/installation.html#JBoss > but I get an error on the following step: > 4 - Register the driver by running the following two commands in the > # JBoss 7 CLI administration tool: > > /subsystem=datasources/jdbc-driver=com.mysql.jdbc.Driver:add(driver-name=com.mysql.jdbc.Driver,driver-class-name=com.mysql.jdbc.Driver,driver-module-name=com.mysql,driver-xa-datasource-class-name=com.mysql.jdbc.jdbc.jdbc2.optional.MysqlXADataSource) > :reload > > Next to :reload command I've get the next error: > > [standalone@localhost:9999 /] :reload > Communication error: java.util.concurrent.ExecutionException: Operation > failed > [disconnected /] > > I repeat this process with oracle-jdk7-installer and openjdk-7-jdk and > the same error appears. > > Thanks > > -- > Miguel Angel Robledo Lyris | Consultoría IT > Santa Fe - Rep. Argentina > > > ------------------------------------------------------------------------------ > > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > |
|
From: Miguel A. R. <mar...@ly...> - 2014-08-18 13:11:45
|
Hi, I'm installing ejbca on Ubuntu Server 12.04 64 bits and Ubuntu Server 14.04 64 bits with Jboss-as-7.1.1 and Mysql Database. I'm following the steps on http://ejbca.org/docs/installation.html#JBoss but I get an error on the following step: 4 - Register the driver by running the following two commands in the JBoss 7 CLI administration tool: /subsystem=datasources/jdbc-driver=com.mysql.jdbc.Driver:add(driver-name=com.mysql.jdbc.Driver,driver-class-name=com.mysql.jdbc.Driver,driver-module-name=com.mysql,driver-xa-datasource-class-name=com.mysql.jdbc.jdbc.jdbc2.optional.MysqlXADataSource) :reload Next to :reload command I've get the next error: [standalone@localhost:9999 /] :reload Communication error: java.util.concurrent.ExecutionException: Operation failed [disconnected /] I repeat this process with oracle-jdk7-installer and openjdk-7-jdk and the same error appears. Thanks -- Miguel Angel Robledo Lyris | Consultoría IT Santa Fe - Rep. Argentina |
|
From: sara i. <sar...@gm...> - 2014-08-18 10:20:02
|
Ok Thank you. On Mon, Aug 18, 2014 at 12:39 PM, Anders Rundgren < and...@gm...> wrote: > On 2014-08-18 11:31, sara ibrahim wrote: > > thank you for you answer, but what i really need is the jmx-console./war > /because the tool i used > > to cluster (start,monitor and stop) jboss uses jmx-console./war/ , it is > named corosync. > > So can i import the jmx consle? > > Since the interfaces have been changed I guess this is not possible > but the war file itself it easy to get: > http://corosync.github.io/corosync > > I would post this question in a JBoss forum and see what it brings. > > Cheers, > Anders > > > > > > > > On Mon, Aug 18, 2014 at 11:44 AM, Anders Rundgren < > and...@gm... <mailto:and...@gm...>> > wrote: > > > > On 2014-08-18 10:07, sara ibrahim wrote: > > > Hi > > > > > > I have recently upgraded my Jboss server from 5 to 7, but i am > facing this problem: > > > > > > When i was using Jboss5 i used the jmx consle to start,stop and > monitor my JBOSS server , but now , since there is no jmx consle in JBOSS 7 > I can't do this anymore, is there any way to solve this? for example can i > import the jmx consle in JBOSS7? and if yes, how ? > > > > > > Best Regards, > > > > This is a JBoss issue. You may find a suitable answer here: > > > > https://community.jboss.org/wiki/UsingJconsoleToConnectToJMXOnAS7 > > > > cheers, > > Anders > > > > > > > > SARA > > > > > > > > > > ------------------------------------------------------------------------------ > > > > > > > > > > > > _______________________________________________ > > > Ejbca-develop mailing list > > > Ejb...@li... <mailto: > Ejb...@li...> > > > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > > > > > > > > > > ------------------------------------------------------------------------------ > > _______________________________________________ > > Ejbca-develop mailing list > > Ejb...@li... <mailto: > Ejb...@li...> > > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > > > > > > > > > > > ------------------------------------------------------------------------------ > > > > > > > > _______________________________________________ > > Ejbca-develop mailing list > > Ejb...@li... > > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > > > > > > ------------------------------------------------------------------------------ > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > |
|
From: Anders R. <and...@gm...> - 2014-08-18 09:39:34
|
On 2014-08-18 11:31, sara ibrahim wrote: > thank you for you answer, but what i really need is the jmx-console./war /because the tool i used > to cluster (start,monitor and stop) jboss uses jmx-console./war/ , it is named corosync. > So can i import the jmx consle? Since the interfaces have been changed I guess this is not possible but the war file itself it easy to get: http://corosync.github.io/corosync I would post this question in a JBoss forum and see what it brings. Cheers, Anders > > > On Mon, Aug 18, 2014 at 11:44 AM, Anders Rundgren <and...@gm... <mailto:and...@gm...>> wrote: > > On 2014-08-18 10:07, sara ibrahim wrote: > > Hi > > > > I have recently upgraded my Jboss server from 5 to 7, but i am facing this problem: > > > > When i was using Jboss5 i used the jmx consle to start,stop and monitor my JBOSS server , but now , since there is no jmx consle in JBOSS 7 I can't do this anymore, is there any way to solve this? for example can i import the jmx consle in JBOSS7? and if yes, how ? > > > > Best Regards, > > This is a JBoss issue. You may find a suitable answer here: > > https://community.jboss.org/wiki/UsingJconsoleToConnectToJMXOnAS7 > > cheers, > Anders > > > > > SARA > > > > > > ------------------------------------------------------------------------------ > > > > > > > > _______________________________________________ > > Ejbca-develop mailing list > > Ejb...@li... <mailto:Ejb...@li...> > > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > > > > > ------------------------------------------------------------------------------ > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... <mailto:Ejb...@li...> > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > > > > > ------------------------------------------------------------------------------ > > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > |
|
From: sara i. <sar...@gm...> - 2014-08-18 09:31:43
|
thank you for you answer, but what i really need is the jmx-console.*war *because the tool i used to cluster (start,monitor and stop) jboss uses jmx-console. *war* , it is named corosync. So can i import the jmx consle? On Mon, Aug 18, 2014 at 11:44 AM, Anders Rundgren < and...@gm...> wrote: > On 2014-08-18 10:07, sara ibrahim wrote: > > Hi > > > > I have recently upgraded my Jboss server from 5 to 7, but i am facing > this problem: > > > > When i was using Jboss5 i used the jmx consle to start,stop and monitor > my JBOSS server , but now , since there is no jmx consle in JBOSS 7 I can't > do this anymore, is there any way to solve this? for example can i import > the jmx consle in JBOSS7? and if yes, how ? > > > > Best Regards, > > This is a JBoss issue. You may find a suitable answer here: > > https://community.jboss.org/wiki/UsingJconsoleToConnectToJMXOnAS7 > > cheers, > Anders > > > > > SARA > > > > > > > ------------------------------------------------------------------------------ > > > > > > > > _______________________________________________ > > Ejbca-develop mailing list > > Ejb...@li... > > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > > > > > > ------------------------------------------------------------------------------ > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > |
|
From: Anders R. <and...@gm...> - 2014-08-18 08:45:09
|
On 2014-08-18 10:07, sara ibrahim wrote: > Hi > > I have recently upgraded my Jboss server from 5 to 7, but i am facing this problem: > > When i was using Jboss5 i used the jmx consle to start,stop and monitor my JBOSS server , but now , since there is no jmx consle in JBOSS 7 I can't do this anymore, is there any way to solve this? for example can i import the jmx consle in JBOSS7? and if yes, how ? > > Best Regards, This is a JBoss issue. You may find a suitable answer here: https://community.jboss.org/wiki/UsingJconsoleToConnectToJMXOnAS7 cheers, Anders > > SARA > > > ------------------------------------------------------------------------------ > > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > |
|
From: sara i. <sar...@gm...> - 2014-08-18 08:07:58
|
Hi I have recently upgraded my Jboss server from 5 to 7, but i am facing this problem: When i was using Jboss5 i used the jmx consle to start,stop and monitor my JBOSS server , but now , since there is no jmx consle in JBOSS 7 I can't do this anymore, is there any way to solve this? for example can i import the jmx consle in JBOSS7? and if yes, how ? Best Regards, SARA |
|
From: Tomas G. <to...@pr...> - 2014-08-11 05:48:43
|
Looks like your JBoss has not started up correctly. You have to look in the server side. Perhaps database error? Btw, there are much newer versions of EJBCA out now. Cheers, Tomas On 2014-08-10 10:31, eilaf sorkatti wrote: > Hi, > > I faced this error during ant install, > > > > Could not run execute method for class ca > [java] java.lang.IllegalStateException: No EJB receiver available > for handling [appName:ejbca,modulename:ejbca-ejb,distinctname:] > combination for invocation context > org.jboss.ejb.client.EJBClientInvocationContext@7f28abd9 > [java] at > org.jboss.ejb.client.EJBClientContext.requireEJBReceiver(EJBClientContext.java:584) > [java] at > org.jboss.ejb.client.ReceiverInterceptor.handleInvocation(ReceiverInterceptor.java:119) > [java] at > org.jboss.ejb.client.EJBClientInvocationContext.sendRequest(EJBClientInvocationContext.java:181) > [java] at > org.jboss.ejb.client.EJBInvocationHandler.doInvoke(EJBInvocationHandler.java:136) > [java] at > org.jboss.ejb.client.EJBInvocationHandler.doInvoke(EJBInvocationHandler.java:121) > [java] at > org.jboss.ejb.client.EJBInvocationHandler.invoke(EJBInvocationHandler.java:104) > [java] at com.sun.proxy.$Proxy0.getCachedConfiguration(Unknown > Source) > [java] at > org.ejbca.ui.cli.BaseCommand.parseUsernameAndPasswordFromArgs(BaseCommand.java:126) > [java] at > org.ejbca.ui.cli.ca.CaInitCommand.execute(CaInitCommand.java:131) > [java] at > org.ejbca.ui.cli.CliCommandHelper.executeCommand(CliCommandHelper.java:147) > [java] at > org.ejbca.ui.cli.CliCommandHelper.searchAndRun(CliCommandHelper.java:105) > [java] at org.ejbca.ui.cli.EjbcaEjbCli.main(EjbcaEjbCli.java:25) > [java] Java Result: 1 > > ejbca:adminweb: > [java] Could not run execute method for class ra > [java] java.lang.IllegalStateException: No EJB receiver available > for handling [appName:ejbca,modulename:ejbca-ejb,distinctname:] > combination for invocation context > org.jboss.ejb.client.EJBClientInvocationContext@7cb01f72 > [java] at > org.jboss.ejb.client.EJBClientContext.requireEJBReceiver(EJBClientContext.java:584) > [java] at > org.jboss.ejb.client.ReceiverInterceptor.handleInvocation(ReceiverInterceptor.java:119) > [java] at > org.jboss.ejb.client.EJBClientInvocationContext.sendRequest(EJBClientInvocationContext.java:181) > [java] at > org.jboss.ejb.client.EJBInvocationHandler.doInvoke(EJBInvocationHandler.java:136) > [java] at > org.jboss.ejb.client.EJBInvocationHandler.doInvoke(EJBInvocationHandler.java:121) > [java] at > org.jboss.ejb.client.EJBInvocationHandler.invoke(EJBInvocationHandler.java:104) > [java] at com.sun.proxy.$Proxy0.getCachedConfiguration(Unknown > Source) > [java] at > org.ejbca.ui.cli.BaseCommand.parseUsernameAndPasswordFromArgs(BaseCommand.java:126) > [java] at > org.ejbca.ui.cli.ra.AddEndEntityCommand.execute(AddEndEntityCommand.java:79) > [java] at > org.ejbca.ui.cli.CliCommandHelper.executeCommand(CliCommandHelper.java:147) > [java] at > org.ejbca.ui.cli.CliCommandHelper.searchAndRun(CliCommandHelper.java:105) > [java] at org.ejbca.ui.cli.EjbcaEjbCli.main(EjbcaEjbCli.java:25) > [java] Java Result: 1 > > > -- > Eilaf Hamad Elnil Mugbil > University Of Khartoum > School Of Mathematical science > > > ------------------------------------------------------------------------------ > > > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > |
|
From: eilaf s. <eil...@gm...> - 2014-08-10 08:31:20
|
Hi,
I faced this error during ant install,
Could not run execute method for class ca
[java] java.lang.IllegalStateException: No EJB receiver available for
handling [appName:ejbca,modulename:ejbca-ejb,distinctname:] combination for
invocation context org.jboss.ejb.client.EJBClientInvocationContext@7f28abd9
[java] at
org.jboss.ejb.client.EJBClientContext.requireEJBReceiver(EJBClientContext.java:584)
[java] at
org.jboss.ejb.client.ReceiverInterceptor.handleInvocation(ReceiverInterceptor.java:119)
[java] at
org.jboss.ejb.client.EJBClientInvocationContext.sendRequest(EJBClientInvocationContext.java:181)
[java] at
org.jboss.ejb.client.EJBInvocationHandler.doInvoke(EJBInvocationHandler.java:136)
[java] at
org.jboss.ejb.client.EJBInvocationHandler.doInvoke(EJBInvocationHandler.java:121)
[java] at
org.jboss.ejb.client.EJBInvocationHandler.invoke(EJBInvocationHandler.java:104)
[java] at com.sun.proxy.$Proxy0.getCachedConfiguration(Unknown
Source)
[java] at
org.ejbca.ui.cli.BaseCommand.parseUsernameAndPasswordFromArgs(BaseCommand.java:126)
[java] at
org.ejbca.ui.cli.ca.CaInitCommand.execute(CaInitCommand.java:131)
[java] at
org.ejbca.ui.cli.CliCommandHelper.executeCommand(CliCommandHelper.java:147)
[java] at
org.ejbca.ui.cli.CliCommandHelper.searchAndRun(CliCommandHelper.java:105)
[java] at org.ejbca.ui.cli.EjbcaEjbCli.main(EjbcaEjbCli.java:25)
[java] Java Result: 1
ejbca:adminweb:
[java] Could not run execute method for class ra
[java] java.lang.IllegalStateException: No EJB receiver available for
handling [appName:ejbca,modulename:ejbca-ejb,distinctname:] combination for
invocation context org.jboss.ejb.client.EJBClientInvocationContext@7cb01f72
[java] at
org.jboss.ejb.client.EJBClientContext.requireEJBReceiver(EJBClientContext.java:584)
[java] at
org.jboss.ejb.client.ReceiverInterceptor.handleInvocation(ReceiverInterceptor.java:119)
[java] at
org.jboss.ejb.client.EJBClientInvocationContext.sendRequest(EJBClientInvocationContext.java:181)
[java] at
org.jboss.ejb.client.EJBInvocationHandler.doInvoke(EJBInvocationHandler.java:136)
[java] at
org.jboss.ejb.client.EJBInvocationHandler.doInvoke(EJBInvocationHandler.java:121)
[java] at
org.jboss.ejb.client.EJBInvocationHandler.invoke(EJBInvocationHandler.java:104)
[java] at com.sun.proxy.$Proxy0.getCachedConfiguration(Unknown
Source)
[java] at
org.ejbca.ui.cli.BaseCommand.parseUsernameAndPasswordFromArgs(BaseCommand.java:126)
[java] at
org.ejbca.ui.cli.ra.AddEndEntityCommand.execute(AddEndEntityCommand.java:79)
[java] at
org.ejbca.ui.cli.CliCommandHelper.executeCommand(CliCommandHelper.java:147)
[java] at
org.ejbca.ui.cli.CliCommandHelper.searchAndRun(CliCommandHelper.java:105)
[java] at org.ejbca.ui.cli.EjbcaEjbCli.main(EjbcaEjbCli.java:25)
[java] Java Result: 1
--
Eilaf Hamad Elnil Mugbil
University Of Khartoum
School Of Mathematical science
|
|
From: eilaf s. <eil...@gm...> - 2014-08-10 04:55:33
|
Thanks, This clarify my issue. On Sat, Aug 9, 2014 at 11:42 PM, Branko Majic <br...@ma...> wrote: > On Tue, 5 Aug 2014 12:24:32 +0300 > eilaf sorkatti <eil...@gm...> wrote: > > > Hello, > > > > I would like to ask you what is the difference between management > > certification authority, signing Certification authority and > > authentication certification authority? > > If management certification authority do authentication and signing what > is > > the need for seperated authentication and signing certification > authority? > > How to setup/Install each of them? > > > > > > > > Regards, > > Hello Eilaf, > > This is purely a policy decision. You could define that certificates > with specific profile (key usage, extended key usage etc etc) will be > issued by a designated sub-CA (or even CA chain). I.e. it's mainly a > design decision, and can vary based on the project/customer > requirements. > > As for the ManagementCA, it is usually a good idea to keep it separate > since the policies very often need to be different for it (since it > commonly forms part of PKI infrastructure). One good reason to keep it > separate is in order to grant different privileges to differents groups > (let's say you want to let your PKI team be able to freely issue > server/client certificates for the PKI environment using ManagementCA). > > Best regards > > -- > Branko Majic > Jabber: br...@ma... > Please use only Free formats when sending attachments to me. > > Бранко Мајић > Џабер: br...@ma... > Молим вас да додатке шаљете искључиво у слободним форматима. > > > ------------------------------------------------------------------------------ > > _______________________________________________ > Ejbca-develop mailing list > Ejb...@li... > https://lists.sourceforge.net/lists/listinfo/ejbca-develop > > -- Eilaf Hamad Elnil Mugbil University Of Khartoum School Of Mathematical science |
|
From: Branko M. <br...@ma...> - 2014-08-09 20:58:48
|
On Tue, 5 Aug 2014 12:24:32 +0300 eilaf sorkatti <eil...@gm...> wrote: > Hello, > > I would like to ask you what is the difference between management > certification authority, signing Certification authority and > authentication certification authority? > If management certification authority do authentication and signing what is > the need for seperated authentication and signing certification authority? > How to setup/Install each of them? > > > > Regards, Hello Eilaf, This is purely a policy decision. You could define that certificates with specific profile (key usage, extended key usage etc etc) will be issued by a designated sub-CA (or even CA chain). I.e. it's mainly a design decision, and can vary based on the project/customer requirements. As for the ManagementCA, it is usually a good idea to keep it separate since the policies very often need to be different for it (since it commonly forms part of PKI infrastructure). One good reason to keep it separate is in order to grant different privileges to differents groups (let's say you want to let your PKI team be able to freely issue server/client certificates for the PKI environment using ManagementCA). Best regards -- Branko Majic Jabber: br...@ma... Please use only Free formats when sending attachments to me. Бранко Мајић Џабер: br...@ma... Молим вас да додатке шаљете искључиво у слободним форматима. |