Ah!  That's it, thanks Rob, appreciate it!

On Fri, May 26, 2017 at 11:28 AM Rob Crittenden <[email protected]> wrote:

> Jamie Johnson wrote:
> > Thanks for the reply Rob.  Here is the requested information, let me
> > know if I cut too much
> >
> > Certificate:
> >     Data:
> >         Version: 3 (0x2)
> >         Serial Number: 4098 (0x1002)
> >         Signature Algorithm: sha256WithRSAEncryption
> >         Issuer: --cut--
> >         Validity
> >             Not Before: May 25 20:52:11 2017 GMT
> >             Not After : Jun  4 20:52:11 2018 GMT
> >         Subject: --cut--
> >         Subject Public Key Info:
> >             Public Key Algorithm: rsaEncryption
> >             RSA Public Key: (2048 bit)
> >                 Modulus (2048 bit):
> > --cut--
> >                 Exponent: 65537 (0x10001)
> >         X509v3 extensions:
> >             X509v3 Basic Constraints:
> >                 CA:FALSE
> >             Netscape Cert Type:
> >                 SSL Server
> >             Netscape Comment:
> >                 OpenSSL Generated Server Certificate
> >             X509v3 Subject Key Identifier:
> >                 --cut--
> >             X509v3 Authority Key Identifier:
> >                 --cut--
> >
> >             X509v3 Key Usage: critical
> >                 Digital Signature, Key Encipherment
> >             X509v3 Extended Key Usage:
> >                 TLS Web Server Authentication
> >     Signature Algorithm: sha256WithRSAEncryption
> > --cut--
> > -----BEGIN CERTIFICATE-----
> > --cut--
> > -----END CERTIFICATE-----
>
> Is this the cert you are trying to use to authenticate with? If so it
> needs the TLS Web client authentication extension.
>
> rob
>
>
_______________________________________________
Mod_nss-list mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/mod_nss-list

Reply via email to