[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: Example 2 - Error Message Meaning?



Sender: daparnin@xxxxxxxxxxxxxxxxxx





OK, I can understand making sure that the serial numbers of the
certificates match between the PC and DCM but it's hard to tell what I'm
looking at on the PC sometimes.  The serial# of the client certificate in
DCM says 40AD 22C1.  If I go into Internet Explorer|Tools|Internet
Options|Content|Certificates then click on the certificate, View|Details it
has the same serial#.  If I instead go to the secure web site, double-click
on the padlock in the status bar and then select the Details tab the serial
number is 505F F619 93BA 962A 4851 26F7 EF57 C93F.  Is one the signing
certificate and the other the CA?

I should point out that IBM supplied me with the CA and Root certificates
because the bank that supplied the client certificate couldn't seem to give
me the CA certificate or tell me who issued it.  I suppose that I could
export the CA and Root certificates from my PC and import them to the DCM
but should that be necessary?

Dave Parnin
Nishikawa Standard Company
Topeka, IN  46571
daparnin@xxxxxxxxxxxxxxxxxx





                                                                                                              
                      Ian Patterson                                                                           
                      <ian@xxxxxxxxxxxx        To:       ftpapi@xxxxxxxxxxxxx@SMTP@xxx                        
                      ms.co.uk>                cc:       (bcc: David A Parnin/Topeka/NISCO/SPCO)              
                      Sent by:                 Subject:  RE: Example 2 - Error Message Meaning?               
                      owner-ftpapi@xxxx                                                                       
                      e.ods.net                                                                               
                                                                                                              
                                                                                                              
                      07/28/2004 11:25                                                                        
                      AM                                                                                      
                      Please respond to                                                                       
                      ftpapi                                                                                  
                                                                                                              
                                                                                                              



Sender: "Ian Patterson" <ian@xxxxxxxxxxxxxxxxxxxx>

Not sure about the client certs, but the CA cert in the DCM should be
exactly the same as the one used on the PC.
Compare all details, name, description , expiry date, and most important,
serial number. (I don't think you can see the thumbprint in the DCM).

Regards

Ian Patterson

ian@xxxxxxxxxxxxxxxxx <mailto:ian@xxxxxxxxxxxxxxxxx>

Grange IT Limited
tel 01947 880458
www.grangesystems.com



-----Original Message-----
From: owner-ftpapi@xxxxxxxxxxxxx [mailto:owner-ftpapi@xxxxxxxxxxxxx]On
Behalf Of daparnin@xxxxxxxxxxxxxxxxxx
Sent: 28 July 2004 16:52
To: ftpapi@xxxxxxxxxxxxx
Subject: Example 2 - Error Message Meaning?


Sender: daparnin@xxxxxxxxxxxxxxxxxx





On Monday the lightbulb went on as to how to adapt the code in the example
#2 to my application.  I was on vacation yesterday, didn't pay the electric
bill, and now am in the dark once again.

When I try to I get the following message:
DSPLY  SSL Handshake: (GSKit) Certificate is not signed by

Is this a problem with the certificate set up in the DCM?  I have been able
to install the same certificate on my PC and it works fine for accessing
the web page and doing file transfers.  I seem to remember going through
registering the APP_ID on Monday.  I've looked at the serial#'s on the PC
and tried to compare them with the CA and client signing certificate in the
DCM but don't see any correlation.  Should I be able to?

Dave Parnin
Nishikawa Standard Company
Topeka, IN  46571
daparnin@xxxxxxxxxxxxxxxxxx



-----------------------------------------------------------------------
This is the FTPAPI mailing list.  To unsubsribe from the list send mail
to majordomo@xxxxxxxxxxxxx with the body: unsubscribe ftpapi mymailaddr
-----------------------------------------------------------------------


-----------------------------------------------------------------------
This is the FTPAPI mailing list.  To unsubsribe from the list send mail
to majordomo@xxxxxxxxxxxxx with the body: unsubscribe ftpapi mymailaddr
-----------------------------------------------------------------------


-----------------------------------------------------------------------
This is the FTPAPI mailing list.  To unsubsribe from the list send mail
to majordomo@xxxxxxxxxxxxx with the body: unsubscribe ftpapi mymailaddr
-----------------------------------------------------------------------