Hello,

It depends which profile that you are using to sign the requests. In EST
the default is tls_server.
You need to navigate to the path below:
/etc/openxpki/config.d/realm/democa/profile/ ...
then edit the profile that you are using

Best Regards

On Thu, Jul 18, 2024 at 10:26 AM Stefan Goeman <stefan.goe...@hotmail.com>
wrote:

> Hello
>
> I am using the default configuration from the demoCA.
> I want to enroll certificates via EST.
>
> The certificates contain in the subject name "DC=Test Deployment,
> DC=OpenXPKI, DC=org"
>
> I would prefer to have in the subject name of the certificate the same
> fields that were provided in the CSR; in the CSR the subject name includes
> the fields C, O, OU, ... (the things you can fill in when you create a csr
> with openssl).
>
> It is clear that I have to make a configuration change.
> What do I have to change exactly, and in which files?
>
> Much thanks in advance!
>
> Greetings,
> Stefan.
> _______________________________________________
> OpenXPKI-users mailing list
> OpenXPKI-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/openxpki-users
>
_______________________________________________
OpenXPKI-users mailing list
OpenXPKI-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openxpki-users

Reply via email to