In message <[EMAIL PROTECTED]> on Fri, 24 Sep 2004 13:56:25 +0200, Gerd Schering 
<[EMAIL PROTECTED]> said:

Schering> Richard Levitte - VMS Whacker wrote:
Schering> > In message <[EMAIL PROTECTED]> on Fri, 24 Sep 2004 11:29:23 +0200, Gerd 
Schering <[EMAIL PROTECTED]> said:
Schering> > 
Schering> > Schering> is it possible to use domain name components - as in ldap -
Schering> > Schering> for the certificate dn, i.e. something like
Schering> > Schering> dc=mycompany,dc=com instead of the C=US,... staff?
Schering> > 
Schering> > Absolutely.  
Schering> 
Schering> Is it possible to this with openssl?

Yes.  You just need to fiddle a bit with the configuration file, or
sign certificates using 'openssl x509' with the '-subj' option.  I
don't really recommend the latter.

Cheers,
Richard

-----
Please consider sponsoring my work on free software.
See http://www.free.lp.se/sponsoring.html for details.

-- 
Richard Levitte                         [EMAIL PROTECTED]
                                        http://richard.levitte.org/

"When I became a man I put away childish things, including
 the fear of childishness and the desire to be very grown up."
                                                -- C.S. Lewis
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to