In message <[EMAIL PROTECTED]> on Fri, 24 Sep 2004 13:56:25 +0200, Gerd Schering <[EMAIL PROTECTED]> said:
Schering> Richard Levitte - VMS Whacker wrote: Schering> > In message <[EMAIL PROTECTED]> on Fri, 24 Sep 2004 11:29:23 +0200, Gerd Schering <[EMAIL PROTECTED]> said: Schering> > Schering> > Schering> is it possible to use domain name components - as in ldap - Schering> > Schering> for the certificate dn, i.e. something like Schering> > Schering> dc=mycompany,dc=com instead of the C=US,... staff? Schering> > Schering> > Absolutely. Schering> Schering> Is it possible to this with openssl? Yes. You just need to fiddle a bit with the configuration file, or sign certificates using 'openssl x509' with the '-subj' option. I don't really recommend the latter. Cheers, Richard ----- Please consider sponsoring my work on free software. See http://www.free.lp.se/sponsoring.html for details. -- Richard Levitte [EMAIL PROTECTED] http://richard.levitte.org/ "When I became a man I put away childish things, including the fear of childishness and the desire to be very grown up." -- C.S. Lewis ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]