I am using OpenSSL
For example, I have a CRL/CA Issuers URL that is like this:
http://pki.example.com/Example Intermediate Certificate Authority.crl
#CA Issuers
caIssuers;URI.0 = http://pki.example.com/Example Intermediate Certificate Authority.crt
So, I add them to the config file like:
crlDistributionPoints = @crl_section
authorityInfoAccess = @ocsp_section
[crl_section]
URI.0 = http://pki.example.com/Example Intermediate Certificate Authority.crl
[ocsp_section]
OCSP;URI.0 = http://pki.example.com/ocsp/
caIssuers;URI.0 = http://pki.example.com/Example Intermediate Certificate Authority.crt
Is the above config going to result in an invalid cert?