Skip to content

根证书和签发的子证书验证问题 #3

@cyberwave

Description

@cyberwave

使用fabric-ca生成了根证书,并使用该根证书签发一个子证书,使用 openssl verify -CAfile root.pem child.pem 显示是 ok的。可是使用国密时,openssl 和gmssl 都无法检验通过,报错:
crypto/sm2/sm2_sign.c 504: sm2_do_verify
C = US, ST = North Carolina, O = Hyperledger, OU = client, CN = admin
error 7 at 0 depth lookup: certificate signature failure
error signcerts/cert.pem: verification failed
4497929664:error:0D0C5006:asn1 encoding routines:ASN1_item_verify:EVP lib:crypto/asn1/a_verify.c:188:

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions