Jamie Johnson wrote:
> Thanks for the reply Rob.  Here is the requested information, let me
> know if I cut too much
> 
> Certificate:
>     Data:
>         Version: 3 (0x2)
>         Serial Number: 4098 (0x1002)
>         Signature Algorithm: sha256WithRSAEncryption
>         Issuer: --cut--
>         Validity
>             Not Before: May 25 20:52:11 2017 GMT
>             Not After : Jun  4 20:52:11 2018 GMT
>         Subject: --cut--
>         Subject Public Key Info:
>             Public Key Algorithm: rsaEncryption
>             RSA Public Key: (2048 bit)
>                 Modulus (2048 bit):
> --cut--
>                 Exponent: 65537 (0x10001)
>         X509v3 extensions:
>             X509v3 Basic Constraints: 
>                 CA:FALSE
>             Netscape Cert Type: 
>                 SSL Server
>             Netscape Comment: 
>                 OpenSSL Generated Server Certificate
>             X509v3 Subject Key Identifier: 
>                 --cut--
>             X509v3 Authority Key Identifier: 
>                 --cut--
> 
>             X509v3 Key Usage: critical
>                 Digital Signature, Key Encipherment
>             X509v3 Extended Key Usage: 
>                 TLS Web Server Authentication
>     Signature Algorithm: sha256WithRSAEncryption
> --cut--
> -----BEGIN CERTIFICATE-----
> --cut--
> -----END CERTIFICATE-----

Is this the cert you are trying to use to authenticate with? If so it
needs the TLS Web client authentication extension.

rob

_______________________________________________
Mod_nss-list mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/mod_nss-list

Reply via email to