Well folks, I have found something curious. I have already sign my server
cert, but something extrange happened.... the ca utility always used the
"user_cert" profile for adding extensions when singing.
Although I insisted in using the "server_cert" profile, somehow it did not
work. But if I modified the "user_cert" profile just to make it a fake
"server_cert" profile (i.e, nsCertType =server), it worked.
Anybody have a hint about this behaviour?
Thanx
--------------------------------------------
Roberto López Navarro
[mailto:[EMAIL PROTECTED]]
SGI Soluciones Globales Internet
[http://www.esegi.es]
Tel. +34 91 806 46 40
Fax. +34 91 806 46 41
--------------------------------------------
______________________________________________________________________
OpenSSL Project http://www.openssl.org
User Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]