Ok, figured this one out on my own...

Here's what I changed
(/etc/openxpki/config.d/realm/ca-gigl/profile/I18N_OPENXPKI_PROFILE_USER.yaml):

            info:
+                - requestor_gname
+                - requestor_name
+                - requestor_email
                - comment

This may seem redundant because this info is already available in the
'subject' for this type of cert... but it permits someone to generate
user certs for someone else.

On 2018-12-05 3:58 p.m., Luc Lalonde wrote:
> Hello,
>
> My OpenXPKI system can send notifications to the operator... but not to the 
> requestor.
>
> How can I leverage my LDAP authentication for the notifications?   My LDAP 
> does have the 'email' field for all the users.
>
> Other than that, where would I obtain 'cert_info.requestor_email' that's in 
> the default 'smtp.yaml'?
>
> Originally, I thought that this came from the CSR's 'Subject Alternate 
> Name'... but that does not seem to be the case.
>
> I have these errors in my logs:
>
> 2018/12/05 15:52:46 openxpki.system.WARN Not a mail address:  
> [pid=14519|sid=tHG9|wftype=certificate_signing_request_v2|wfid=8703]
> 2018/12/05 15:52:46 openxpki.system.WARN Failed sending notification - no 
> receipient 
> [pid=14519|sid=tHG9|wftype=certificate_signing_request_v2|wfid=8703]
>
> Thank You!
>
-- 
Luc Lalonde, analyste
-----------------------------
Département de génie informatique:
École polytechnique de MTL
(514) 340-4711 x5049
[email protected]
-----------------------------


Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
OpenXPKI-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openxpki-users

Reply via email to