[xmlsec] FW: Cert Chain Validation 1.2.8 mscrypto

Dmitry Belyavsky beldmit at cryptocom.ru
Fri Jan 13 06:56:42 PST 2006


Greetings!

On Fri, 13 Jan 2006, Edward Shallow wrote:

> First post bounced ?
>
> Can error messages 1 and 2 be ignored ?

It seems to be they can. I've got this messages when I used
wrong-delimited CN as KeyName.

> 1st Run Without trusted der loaded
> **********************************
>
> C:\XMLSec>xmlsec verify --crypto mscrypto inout/edsigned-enveloped.xml
>
> 1)
> func=xmlSecMSCryptoX509FindCert:file=..\src\mscrypto\x509vfy.c:line=754:obj=
> unknown:subj=xmlSecMSCryptoCertStrToName:error=1:xmlsec library function
> failed: ;last error=-2146885597 (0x80092023);last error msg=The string
> contains an invalid X500 name attribute key, oid, value or delimiter.
>
> 2)
> func=xmlSecMSCryptoX509FindCert:file=..\src\mscrypto\x509vfy.c:line=754:obj=
> unknown:subj=xmlSecMSCryptoCertStrToName:error=1:xmlsec library function
> failed: ;last error=-2146885597 (0x80092023);last error msg=The string
> contains an invalid X500 name attribute key, oid, value or delimiter.

-- 
SY, Dmitry Belyavsky (ICQ UIN 11116575)




More information about the xmlsec mailing list