Il 25/09/2012 17:35, David Howells ha scritto: > Alan Cox <alan@xxxxxxxxxxxxxxxxxxx> wrote: > >> > Generate a certificate that is valid from a few minutes before the >> > wallclock time. It's a certificate policy question not a kernel hackery >> > one. > That doesn't seem to be possible with openssl req. What would you recommend? Disgusting, but: add an LD_PRELOAD library that returns a time well in the past. Paolo -- To unsubscribe from this list: send the line "unsubscribe linux-crypto" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html