Michael Bell wrote:

> The problem is the following:
> 
> OpenLDAP2's syntax for userCertificate is 1.3.6.1.4.1466.115.121.1.8 but
> nescape's is 1.3.6.1.4.1466.115.121.1.5. The standards say it must be
> the 8 but we are searching now for the meaning of that number so if
> somebody has a tip where we can find some information about this then
> please send a mail.

You can find the link from the OpenCA web site (OIDs Tree):

  http://www.alvestrand.no/objectid/1.3.6.1.4.1.1466.115.121.1.5.html

the reported sintax is:

OID value: 1.3.6.1.4.1.1466.115.121.1.5
OID description:
Values in this syntax are encoded as described in section 4.3.1.
( 1.3.6.1.4.1.1466.115.121.1.5 DESC 'Binary' )
URL for further info: http://src.doc.ic.ac.uk/computing/internet/rfc/rfc2252.txt

So as you can see it is related to the fact that OpenLDAP is v3 compliant
(I guess) and references the certificate object while netscape references
the binary as it is v2 compliant... I am not sure this is the right explanation,
if you have one that fits best let me know...


-- 

C'you,

        Massimiliano Pala

--o-------------------------------------------------------------------------
Massimiliano Pala [OpenCA Project Manager]                  [EMAIL PROTECTED]
                                                          [EMAIL PROTECTED]
                                                     [EMAIL PROTECTED]
http://www.openca.org                            Tel.:   +39 (0)59  270  094
http://openca.sourceforge.net                    Mobile: +39 (0)347 7222 365

S/MIME Cryptographic Signature

Reply via email to