All the crypto material (certificates and signing keys) are generated using cryptogen. And I have pre-generated all the material. Since I don’t need to generate client cert on the fly, I do not bring up any CAs. This is good for demo/testing, though in real life maybe using a CA is more flexible.

I think I have some articles mentioning the identity in Hyperledger Fabric and describing both the cryptogen and CA. See if you can access those articles.

Can you illustrate what you are doing now? Do you mean you wish to incorporate an existing CA and let the CA issue all the crypto material for all components?

You can reach me on kctam@ledgertech.biz for further discussion.



Happy to share what I learn on blockchain. Visit http://www.ledgertech.biz/kcarticles.html for my works. or reach me on https://www.linkedin.com/in/ktam1/.

