The openca user-guide file said that the user must modify the file in 
OPENCA/etc/openssl.cnf and OPENCA/etc/openssl/*.cnf if you want to use dc-style 
DN. I modified the file but still have problem in issue a new certificate. 
Could someone give me a sample file of openssl.cnf using dc-style DN?

   Some error log:

Using configuration 
from /usr/local/openca.0.9.1/openca/etc/openssl/openssl/CA_Operator.conf
Check that the request matches the signature
Signature ok
The Subject's Distinguished Name is as follows
domainComponent       :PRINTABLE:'CN'
domainComponent       :PRINTABLE:'EDU'
domainComponent       :PRINTABLE:'DLUT'
organizationalUnitName:PRINTABLE:'student'
commonName            :PRINTABLE:'op1'
serialNumber          :PRINTABLE:'2'
ERROR: adding extensions in section default
15313:error:2206D06C:X509 V3 routines:X509V3_parse_list:invalid null 
name:v3_utl.c:319:
15313:error:2206B069:X509 V3 routines:X509V3_EXT_conf:invalid extension 
string:v3_conf.c:138:name=subjectAltName,section=
15313:error:2206B080:X509 V3 routines:X509V3_EXT_conf:error in 
extension:v3_conf.c:92:name=subjectAltName, value=
unable to write 'random state'


-------------------------------------------------
欢迎使用大连理工大学web邮件系统: http://mail.dlut.edu.cn


-------------------------------------------------------
This SF.net email is sponsored by: Etnus, makers of TotalView, The debugger 
for complex code. Debugging C/C++ programs can leave you feeling lost and 
disoriented. TotalView can help you find your way. Available on major UNIX 
and Linux platforms. Try it free. www.etnus.com
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to