guillaume savin wrote:

I'am trying to install OpenCA in my company but i have some problem with the ldap directory witch already existe :
rootdn :
dc=socata,dc=eads,dc=net
actualy each people in the compagny already exist in the directory like this :
dc=socata,dc=eads,dc=net
cn=45464
cn=duchant bob
sn=duchant
givenName=bob
[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]>
o=Socata
telephoneNumber=+331551...
etc....

Usually the certificates should have a subject (DN) like in your directory (cn=45664,dc=socata,dc=eads,dc=net). This would work with OpenCA.


So is it possible when we do the "ldap certificat exportation" to search for the correct "cn" ???
for exemple a search base on the e-mail adresse....

No, today we don't support such a thing. You can only manually export every certificate to the directory via the LDAP interface. There you can set every DN which you like. The best way would be certificates which match your LDAP DNs.


>>> cn= Employees cn=dupont pierre
sn=dupont
[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]>
usercertificate=255gcbbfd"14bffnfnfnfbfgbfgbfb####"4"""etc...
etc....

cn=Employees looks like a damaged ou or some other problem.

If you really need such a feature then please open a RFE on Sourceforge.

Michael
--
-------------------------------------------------------------------
Michael Bell                   Email: [EMAIL PROTECTED]
ZE Computer- und Medienservice            Tel.: +49 (0)30-2093 2482
(Computing Centre)                        Fax:  +49 (0)30-2093 2704
Humboldt-University of Berlin
Unter den Linden 6
10099 Berlin                   Email (private): [EMAIL PROTECTED]
Germany                                       http://www.openca.org



-------------------------------------------------------
This SF.Net email sponsored by Black Hat Briefings & Training.
Attend Black Hat Briefings & Training, Las Vegas July 24-29 - digital self defense, top technical experts, no vendor pitches, unmatched networking opportunities. Visit www.blackhat.com
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to