Hi Ives,
I tried editing servers/pub.conf:
DN_TYPE_BASIC_ELEMENTS "emailAddress" "CN" "OU" "subject_alt_name"
and
DN_TYPE_BASIC_ELEMENT_4 "alt E-Mail" DN_TYPE_BASIC_ELEMENT_4_MINIMUM_LENGTH 7 DN_TYPE_BASIC_ELEMENT_4_REQUIRED "YES"
But as you cant specify the sub_alt_name on the command line and must put it into the extension file (works fine with the batch) I get the error:
(OpenCA::REQ->new: Cannot create new request. Backend fails with errorcode 7712013. OpenCA::OpenSSL->genReq: Cannot build X500::DN-object from subject [EMAIL PROTECTED],CN=Oliver,OU=Internet,[EMAIL PROTECTED],O=Technische Universitaet Muenchen,C=Germany).
So the problem is: How to tell OpenCA to put this in the Request via the extension file ? Anyone knows if building certs with per-user extensions is possible at all ?
Oliver
dalini wrote:
Oliver Welter wrote:
Hi Folks,
I need more than one eMail Address in my certs - anyone successfully expanded the frontend to do this ??
what about: subject = primariy mail subject alt name = alternative emails...
you can extend the number of attributes for the sub alt and subject for each interface...
i think this should work, since it also possible to add more than one dns and so on thrugh the sub alt fields...
hope this works... havn't tried this so far with emails ;o)
greetings dalini
-------------------------------------------------------
This SF.Net email is sponsored by: Oracle 10g
Get certified on the hottest thing ever to hit the market... Oracle 10g. Take an Oracle 10g class now, and we'll give you the exam FREE.
http://ads.osdn.com/?ad_id=3149&alloc_id=8166&op=click
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users
-- Diese Nachricht wurde digital unterschrieben oliwel's public key: http://www.oliwel.de/oliwel.crt Basiszertifikat: http://www.ldv.ei.tum.de/page72
smime.p7s
Description: S/MIME Cryptographic Signature
