RSA BSAFE Cert-C and MS CryptoAPI Cert stores

From: Steve Baker (sbaker@icg.notthisbit.net.au)
Date: 01/29/02

  • Next message: Stephen Limowski: "Re: Shawn K. Quinn - Pedophile Alert on Usenet"

    From: "Steve Baker" <sbaker@icg.notthisbit.net.au>
    Date: Tue, 29 Jan 2002 18:28:14 +0800
    
    

    Hey,

    Is anyone using the RSA BSAFE Cert-C library and storing certificates in the
    MS-CryptoAPI certificate stores? I'm not talking about the using the
    MS-CryptoAPI with the RSA_PROV_FULL provider, I'm talking about using the
    RSA development libraries and storing certificates using the CryptoAPI db
    service. Those who have used it will know what I'm talking about.

    I have a problem accessing the certificates in the ROOT and CA stores. I
    have a program which successfully shows all certs in the MY store, but when
    I point it at the ROOT and CA stores, it barfs on the first certificate
    (which is invalid, for some reason) and refuses to show me any more certs
    from those stores. Calling C_SelectFirstCert returns E_ISSUER_NAME or
    E_PUBLIC_KEY depending on the store. I don't care that any given cert is
    invalid, I just want to get a list of all the certs, then I can work out if
    each certificate is valid or not. As it is, I effectively cannot access the
    certs in the store.

    Any ideas on how to work around this?

    Regards,
    Steve

    --
    Steve Baker
    Open your mind, then check out www.nexusmagazine.com
    



    Relevant Pages

    • Re: How to copy user certificates to local system account certificate stores
      ... > You may try to export/import the certs from your user store to your service ... >>I have my required certificates in MY, CA, ROOT stores of Current User. ... >> I am implementing a service which runs as local system account. ...
      (microsoft.public.platformsdk.security)
    • Re: security header is not present in the incoming message
      ... Private.pfx” to Certificates – Current User, Personal, Certificates. ... I really don’t know any other stores. ... this goes for services run in IIS och in ASP.NET Development Server. ...
      (microsoft.public.dotnet.security)
    • How to remove invalid security folders?
      ... If you open mmc and add/remove snapin 'certificates' you'll see a nodelist ... Some of these stores, were created in the past using test-code but it seems, ...
      (microsoft.public.platformsdk.security)
    • Re: MMC Certificate Snap-In for NT4?
      ... then the Contents tab and click on the Certificates ... > Use of included script samples are subject to the terms specified at ... > stores and move certificates between various stores. ...
      (microsoft.public.platformsdk.security)
    • Re: How to fix broken security in Windows 2000?
      ... mvp) post all this stuff? ... >> involved in importing security certificates. ... > and Microsoft code signing are not proof that Microsoft is writing ... > past two days you have said that certs are missing, ...
      (microsoft.public.win2000.windows_update)