Hello, There was an error in running /usr/share/ssl/misc/sign.sh www.mydomain.com.csr At first it complained of field 'commonName' Missing. So I added a 'commonName_default' entry in openssl.cnf. Then tried to resign the certificate. However this time onwards: ----------------------------------- Sign the certificate? [y/n]: y failed to upload database TXT_DB error number 2 CA verifying: www.mydomain.com.crt <-> CA cert unable to load certificate 3964:error:0906D06C:PEM routines:PEM_read_bio:no start line:pem_lib.c:632:Expecting: TRUSTED CERTIFICATE ------------------------------------------------ I feel its due to a bad certificate already in the database. But how do I remove the earlier information from the 'database'. Or how could I rectify this? I am signing the certificate myself (not trusted thrid party etc). Any help appreciated. Thanks, Tony - : send the line "unsubscribe linux-admin" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html