Hi.
I'm testing OpenCA and have a few problems understanding a small thing.
Or well, I guess and hope it is small, but I'm quite tired and I can't
see the solution and -thus- it seems big to me ;-)

Well, simply put the question is this:
when I generate a request suing /pub it is created with a DN with only
name and OU, but no O or C;
when I generate the certificate it is not added;
if I modify User.conf policy to have "match" or "supplied" instead of
"optional" it simply doesn't get accepted;
the _default fields in USer.conf seem to be completely ignored (are they
used only for "openssl ca" interactive use from command line?)

What is the best/correct/intended way to automatically add O and C data
to every certificate without editing every one of the requests before
generating the certificate? (and, even editing them, all the fields must
be "moved up" in order to make space for O and C to be the last two,
which is a bit messy)

    Lapo

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to