Oliver Welter wrote:
I want to store Certifictaes in LDAP, but for organisational reasons my DN must look like:
cn=<cryptic-uid>,ou=......
The Certificates should look like cn=<My Real Name>,ou=.....
1) How can I setup OpenCA to do this 2) Will Mailclients (Mozilla, Outlook) find the certificate by name ?
hmm, i think u will need a wrapper around the ldap... so that any request get 'translated' before it gets into the database and if an request gets there
but the data inside the certificate will always be cn=my real name thats simple because of: this data has been signed by the ca and can't be changed...
but the cn in ldap isn't signed - so its free to modify the ldap antry - the certificate itself is usaly just a binary block
i hope this helps ;o)
greetings dalini
-------------------------------------------------------
This SF.Net email sponsored by Black Hat Briefings & Training.
Attend Black Hat Briefings & Training, Las Vegas July 24-29 - digital self defense, top technical experts, no vendor pitches, unmatched networking opportunities. Visit www.blackhat.com
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users