Hi Folks,

I encounter a strange problem....

We issue certificates for Members if the university. The certs contain the university-mailadress and CAN contain up to two other (private) adresses of the user.

We store the certificates in an LDAP server - now I recongnized that for some entries the private mailadresses are written as "primary" adress in the LDAP.....

The certs itself dont contain a "primary" adress but have multiple "Subject Alternative Names" set as eMail. The university add is always the first of them. Here is an excerpt of such a certificate:

Subject: C=DE, O=Technische Universitaet Muenchen, OU=myTUM CA,OU=Student, CN=Doe John/serialNumber=127

X509v3 Subject Alternative Name:
email:[EMAIL PROTECTED],email:[EMAIL PROTECTED],email:[EMAIL PROTECTED]

The LDAP server uses the gmx adress - but should use the mytum one....

Anybody knows whats going on here ?

Oliver

--
Diese Nachricht wurde digital unterschrieben
oliwel's public key: http://www.oliwel.de/oliwel.crt
Basiszertifikat: http://www.ldv.ei.tum.de/page72

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature



Reply via email to