Michael, OK, it works perfectly now!!! Thank you very much!!!
 
But, I still have a problem: when I use DN_WITHOUT_EMAIL "N", I can't add these certificates to LDAP. First I got the error "missing objectClass rfc822MailUser". I created this objectClass in myfile.schema and now I get the error:
"Certificate 28 FAILED (error 64: LDAP-add failed: naming attribute 'email' is not present in entry)".
Do you know what to do?
 
Thanks a lot!
Pat
 
 
----- Original Message -----
From: "Michael Bell" <[EMAIL PROTECTED]>
To: "Patricia" <[EMAIL PROTECTED]>
Cc: <[EMAIL PROTECTED]>
Sent: Thursday, September 11, 2003 10:57 AM
Subject: Re: [Openca-Users] DN_WITHOUT_EMAIL

> Patricia wrote:
>
> > I have changed the DN_WITHOUT_EMAIL to "N" in ra.conf and ca.conf, but
> > it still don't work. The certificate is generated without email in DN.
>
> Did you set the emailaddress in the DN? The reular _expression_ to
> surpress the emailaddress is /Y|YES|ON/i. So the "N" should work.
>
> > Should I change any other configuration to have a certificate acceptable
> > for Outlook Express?
>
> No, ca and ra are correct. The important thing for the certificate
> generation is ca.conf on the offline (or testing) computer where the
> certificates are issued.
>
> Michael
> --
> -------------------------------------------------------------------
> Michael Bell                   Email:
[EMAIL PROTECTED]
> ZE Computer- und Medienservice            Tel.: +49 (0)30-2093 2482
> (Computing Centre)                        Fax:  +49 (0)30-2093 2704
> Humboldt-University of Berlin
> Unter den Linden 6
> 10099 Berlin                   Email (private):
[EMAIL PROTECTED]
> Germany                                       http://www.openca.org
>
>
>
> -------------------------------------------------------
> This sf.net email is sponsored by:ThinkGeek
> Welcome to geek heaven.
>
http://thinkgeek.com/sf
> _______________________________________________
> Openca-Users mailing list
>
[EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/openca-users
>

Reply via email to