Hello...
I upgrade openssl from 0.9.7 to 0.9.8 because i need compatibility of the oid "otherName" in the certificates.
When generate de certificates i can put into subject_alt_name the "otherName" oid, but i need input data as following:

otherName.1=13 0c 31 33 2e 30 32 36 2e 31 30 31 2d [EMAIL PROTECTED]

The data comes from de form of the pub openca site enrollment

When i change "otherName" to "DNS", the certificate is generate, but with "otherName" there is the following error:



Somebody knows  the correct sintax in the configuration...

      Error 6761

        Error General Error while issuing Certificate to Juan Carlos Lillo Molina (filename: /usr/local/OpenCA/var/tmp/3C.req).


        OpenCA::OpenSSL returns errocode 7731075 (OpenCA::OpenSSL->issueCert: OpenSSL fails (7777067). Using configuration from /usr/local/OpenCA/etc/openssl/openssl/User.conf
        Check that the request matches the signature
        Signature ok
        ERROR: adding extensions in section default
        5020:error:22075093:X509 V3 routines:v2i_GENERAL_NAME_ex:othername error:v3_alt.c:502:
        5020:error:22098080:X509 V3 routines:X509V3_EXT_nconf:error in extension:v3_conf.c:93:name=subjectAltName, [EMAIL PROTECTED]
        error in ca
        ).

I need the following data in the certificate (The data is variable, come from the pub enrollment form):

Other Name:
     1.3.6.1.4.1.8321.1=13 0c 31 33 2e 30 32 36 2e 31 30 31 2d 39
Name RFC822=[EMAIL PROTECTED]


Do you help me please...

Thanks

--
Atte.
JCLM
_______________________________________________
Openca-Users mailing list
Openca-Users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to