We have 2 root certificate with the same CN. And 2 crl list for root certificate. (Example I.CA http://www.ica.cz/) Root cerificate are 2, because have difference valid date certificate. (In both CRL are all revocation certification, from both root certificate) We use apache2 for autentization access to aplication. Access is only with valid certificate. When we try enter to aplication, apache write this error: [Fri Aug 15 11:01:26 2008] [warn] Invalid signature on CRL [Fri Aug 15 11:01:26 2008] [error] Certificate Verification: Error (8): CRL signature failure [Fri Aug 15 11:01:26 2008] [error] Re-negotiation handshake failed: Not accepted by client!? Both CRL and CRT are ok. Error is probably on side apache. (in evaluation). Thanks for answer.
*** This bug has been marked as a duplicate of bug 45708 ***