Thanks John for the feedback.
I undid my changes to server-req.template.
Currently we don't have an application that will use them ;) We are going
through the process of re-badging everyone and now we are using smartcards
with the eventual hope of using these cards not only for physical but also
system access. These fields are thought to be needed in the future.
I fixed the element order (I always forget that - its bitten me more than
once).
I generated a request and processed it through the RA. But when I generate
a cert I get this error on one of my custom fields:
OpenCA::OpenSSL returns errocode 7731075 (OpenCA::OpenSSL->issueCert:
OpenSSL fails (7777067). Using configuration from
/appl/openca-1.0.2/openca/etc/openca/openssl/openssl/Smartcard.conf
Check that the request matches the signature
Signature ok
ERROR: adding extensions in section default
32007:error:22075075:X509 V3 routines:v2i_GENERAL_NAME_ex:unsupported
option:v3_alt.c:509:name=company.2
32007:error:22098080:X509 V3 routines:X509V3_EXT_nconf:error in
extension:v3_conf.c:93:name=subjectAltName, val...@subject_alt_name
error in ca
).
This is an e-mail from General Dynamics Land Systems. It is for the intended
recipient only and may contain confidential and privileged information. No one
else may read, print, store, copy, forward or act in reliance on it or its
attachments. If you are not the intended recipient, please return this message
to the sender and delete the message and any attachments from your computer.
Your cooperation is appreciated.
------------------------------------------------------------------------------
Are you an open source citizen? Join us for the Open Source Bridge conference!
Portland, OR, June 17-19. Two days of sessions, one day of unconference: $250.
Need another reason to go? 24-hour hacker lounge. Register today!
http://ad.doubleclick.net/clk;215844324;13503038;v?http://opensourcebridge.org
_______________________________________________
Openca-Users mailing list
Openca-Users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openca-users