|
: 30 : 30 : 0 |
Currently when creating an ID vault you don't have the option to use the CA process to generate the certifier trust, instead you need to use the certifier id file.
This is all nice and dandy until you've decided to perform a certifier key roll over of a certifier in the CA, which will make the original certifier id file pretty much worthless.
One reason to perform the key roll over once a certifier is imported into the CA process is for security reasons, because over the years chances are that old certifier id's gotten around quite a bit.
Unfortunately for now the ID vault is not an option if you have moved your certifiers to the CA process and performed the key roll over, unless there is a way to export the certifier's new key to a certifier id file.
|