From: Philipp A. <phi...@gm...> - 2016-03-31 07:43:04
|
Hey I’m in the situation where we have kind of a big CRL to fetch via http. During my testing, I was running in the exact same error as described here: https://sourceforge.net/p/openca/mailman/message/34064441/ But after applying the patch provided by Ralf here https://sourceforge.net/p/openca/mailman/message/34080016/ everything worked perfect: [20099] INFO: [config.c:506] [DEBUG] Got CRL Url -> http://some.net/crl.crl [20099] INFO: [pki_socket.c:106] [DEBUG] Creating a simple connection [20099] INFO: [sock.c:300] [DEBUG] Connection Successful to some.net:80 <http://some.net/> [20099] INFO: [http_s.c:404] [DEBUG] HTTP Content-Length: 376684 bytes [20099] INFO: [crl.c:166] [DEBUG] CRL signature is verified! [20099] INFO: CRL matching CA cert ok [ 1 ] [20099] INFO: [crl.c:245] [DEBUG] CRL::Verify -1 [OK=1] [20099] INFO: INFO::CRL::10168 Entries [ internal ] [20099] INFO: Configuration loaded and parsed The patch definitely fixes Problem, Thanks a lot Ralf! Regards, Philipp |