Cross Certification Question...
Hello,I have a requirement to implement cross certification with a partner organization to enable trust. I understand the concept of cross certification and how it works. I will use my issuing CA to issue a cross certification authority certificate to the RootCA of the other organization with which I want to establish trust, in doing socomplete CA hierarchy of other organization will get sort of "glued" under my issuing CA, thus essentially making it appear subordinate of my issuing CA after which the other organization's certificate will be trusted.However before I implement it, I want to know how will the path verification work? How does this process makes a distinct CA hierarchy appear subordinate of my CA? As far as I know when a certificate is presented to an application it uses "chaining process" to trace it back to the RootCA, and then decides whether to trust the certificate or not by checking if the RootCA's certificate is present in "Trusted Root Certification Authorities" store. So in case of cross certification how will this "chaining process" work?Awaiting for helpful replies...Thanks,Regards.
May 27th, 2009 3:23am
Ok, I have found the answer.
Free Windows Admin Tool Kit Click here and download it now
May 29th, 2009 12:40am


