On Tue, Jan 07, 2003 at 06:28:52AM +0000, Joel Ebrahimi wrote:

> > o Run "hostname" and report its output.
> 
> lsanca1-ar16-4-46-102-142.lsanca1.dsl-verizon.net
...
> It seems like I have a long 
> host name, could this have affected it?

Yes, this is the problem!  The script adds the hostname to the string
"Certification Authority for " and uses that for the
organizationalUnitName when generating the certificate request.

One quick work-around then would be to edit your script and globally
remove the strings " for $hostname"; there are two places it's actively
used - once with the certificate authority and another with the server
certificate. 

You may also be able to fix the problem by setting
organizationalUnitName_min and organizationalUnitName_max in the
nessus-mkcert script as I described before. 

George
-- 
[EMAIL PROTECTED]

Attachment: msg03222/pgp00000.pgp
Description: PGP signature

Reply via email to