Ives Steglich wrote:
Martin Bartosch wrote:

Hi,

I just noticed the following problem. Don't know if this is a bug for
the SF tracker.

when I set UNIQUE_DN to "NO" in ca.conf, I get the following error when
issuing a certificate.
Does this option assume a certain OpenSSL version? I am using 0.9.7c and e.


Web output:

OpenCA::OpenSSL returns errocode 7731075 (OpenCA::OpenSSL->issueCert:
OpenSSL fails (7777067). unknown option -nouniqueDN
usage: ca args

-verbose - Talk alot while doing things
...

you have to patch openssl 0.9.7, since openssl supports this only from 0.9.8 on - i think, there is a patch for this issue for the 0.9.7c i will look for it - and post it here again, michael wrote it a long time ago... i think its not included into the e version...

yes: -nouniqueDN is included into ca.c with a patch

you may also ask: [EMAIL PROTECTED]
he had this problem in november last year and adopted michaels patch for 0.9.7c for the e version i think...


maybe he could provide it for the general audience, so we can put the 0.9.7c and e patch for openssl into the distribution of openca as contrib work... to get this nonunique stuff running with openssl 0.9.7 more simple, if needed

just have a look into the list-archives ;)
and openssl:

michas message:
http://www.mail-archive.com/[email protected]/msg13262.html

answer from openssl:
http://www.mail-archive.com/[email protected]/msg15972.html

the patch for 0.9.7c or b (imho) can be found there:
ftp://ftp.openca.org/pub/openca/developers/bell/openssl-patches/


greetings dalini


------------------------------------------------------- SF email is sponsored by - The IT Product Guide Read honest & candid reviews on hundreds of IT Products from real users. Discover which products truly live up to the hype. Start reading now. http://ads.osdn.com/?ad_id=6595&alloc_id=14396&op=click _______________________________________________ Openca-Users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to