Howdy,
(Yes I am a newbie to openca)
Anyway, I am trying to request my first certificate. I have a
vpn router which generates a pkcs10 request. I feed the reqeust into
pub:User:Reqest_a_Certificate:Server_Reqeuset by giving the path to my
pkcs10 file.
I get a general error "Your request has to include C=".
But I have already modified this line in
OpenCA/etc/servers/pub.conf.template
(was)
pub.conf.template:DN_TYPE_PKCS10_REQUIRED_ELEMENTS "CN" "OU" "O" "C"
(is now)
pub.conf.template:#DN_TYPE_PKCS10_REQUIRED_ELEMENTS "CN" "OU" "O" "C"
pub.conf.template:DN_TYPE_PKCS10_REQUIRED_ELEMENTS "CN"
After modifying the file, I ran configure_etc.sh and `openca_rc
restart`. Yet I still get the same error.
OK, so then I had my vpn router generate a creqeust which
included "C=us" and tried that out... But still, I get the same
error!?!?!
Any Ideas???
Here is the text version of my pkcs10 file:
Certificate Request:
Data:
Version: 0 (0x0)
Subject: C=us, O=tasNet, OU=eng, CN=orion
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (1024 bit)
Modulus (1024 bit):
00:ce:c9:56:2a:6e:3b:a7:6b:32:3e:40:02:d5:f5:
fb:20:90:26:e5:a4:dc:60:01:9c:66:bb:a3:63:c6:
47:ba:b4:5a:9e:3e:45:3d:ba:75:94:6c:70:c3:83:
c2:e6:54:70:8d:cd:0b:98:2b:04:bc:5c:d8:ed:68:
ff:1f:ed:83:b3:e4:32:ec:7f:78:19:86:08:d4:00:
ce:ef:28:90:db:2e:65:c5:68:72:37:c5:ef:00:13:
30:cc:04:2e:e8:99:7a:b4:92:a6:77:cb:60:0e:87:
b7:23:ae:b8:10:8a:2d:11:36:e2:b8:d1:98:28:72:
0c:bf:52:f4:2e:58:db:d7:b1
Exponent: 65537 (0x10001)
Attributes:
Requested Extensions:
X509v3 Subject Alternative Name:
IP Address:2.1.1.1, DNS:DUT.tas.com
Signature Algorithm: sha1WithRSAEncryption
23:fe:7b:81:af:a2:95:11:5c:33:f3:f9:db:b4:0a:ee:53:64:
00:e4:7a:15:19:7e:ba:52:52:dd:7f:bb:17:24:d6:d3:77:3d:
67:10:db:95:69:c9:d7:12:a5:a2:25:39:f3:ad:93:22:fc:d9:
49:0e:cf:72:c1:77:49:75:75:fc:05:59:64:79:d6:43:4f:ba:
98:5f:da:b9:10:12:99:90:0b:5a:85:aa:d4:11:ea:12:2c:af:
cb:bb:3b:39:4d:da:be:c7:92:98:98:25:e5:55:b0:e9:fc:77:
c1:68:35:ba:d4:16:82:56:70:81:90:34:2d:56:3e:99:49:65:
f2:84
-----BEGIN CERTIFICATE REQUEST-----
MIIBqzCCARQCAQAwPDELMAkGA1UEBhMCdXMxDzANBgNVBAoTBnRhc05ldDEMMAoG
A1UECxMDZW5nMQ4wDAYDVQQDEwVvcmlvbjCBnzANBgkqhkiG9w0BAQEFAAOBjQAw
gYkCgYEAzslWKm47p2syPkAC1fX7IJAm5aTcYAGcZrujY8ZHurRanj5FPbp1lGxw
w4PC5lRwjc0LmCsEvFzY7Wj/H+2Ds+Qy7H94GYYI1ADO7yiQ2y5lxWhyN8XvABMw
zAQu6Jl6tJKmd8tgDoe3I664EIotETbiuNGYKHIMv1L0Lljb17ECAwEAAaAvMC0G
CSqGSIb3DQEJDjEgMB4wHAYDVR0RBBUwE4cEAgEBAYILRFVULnRhcy5jb20wDQYJ
KoZIhvcNAQEFBQADgYEAI/57ga+ilRFcM/P527QK7lNkAOR6FRl+ulJS3X+7FyTW
03c9ZxDblWnJ1xKloiU5862TIvzZSQ7PcsF3SXV1/AVZZHnWQ0+6mF/auRASmZAL
WoWq1BHqEiyvy7s7OU3avseSmJgl5VWw6fx3wWg1utQWglZwgZA0LVY+mUll8oQ=
-----END CERTIFICATE REQUEST-----
---
Ricky Charlet
W: 408.754.1733
[EMAIL PROTECTED]
--- _
( ) ASCII ribbon campaign
X - against HTML email
/ \
-------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc. Do you grep through log files
for problems? Stop! Download the new AJAX search engine that makes
searching your log files as easy as surfing the web. DOWNLOAD SPLUNK!
http://sel.as-us.falkag.net/sel?cmd=lnk&kid3432&bid#0486&dat1642
_______________________________________________
Openca-Users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openca-users