Along these lines, does anyone have any experience or recommendation on the 
type of certificate to publish in an LDAP directory for support of S/MIME, 
etc. Are there any strong feelings about X.509 vs. PKCS12 (or others) or 
encoding types?

Please let me know if you have any experience or opinions.

Thanks,

Tom Jordan
University of Wisconsin Madison
Division of Information Technology


At 10:12 AM 9/9/99 -0400, you wrote:
> >Can anyone point me to some starting place where I can find some
> >documents on publication of user certificates into LDAP directory.
>
>You could start by looking at www.ietf.org, in the
>internet-drafts area for documents with pkix and ldap
>in their title.
>
>We have some C++ code:
>//  This code is provided for informational purposes only; it will not
>compile
>//  outside of CertCo.  It is provided to help CA developers optimally
>publish
>//  certificates to CertValidator[tm].
>//
>//  We use functions from OpenSSL (http://www.openssl.org) to handle the
>X.509v3
>//  certificate datatypes, Distinguished Names, etc.  It uses CertCo classes
>to
>//  walk through DN's, interface with LDAP, etc.  These are (hopefully!)
>explained
>//  where they are used.
>
>If anyone would like to get a copy, and promises to review the comments,
>please
>send me email.
>         /r$
>______________________________________________________________________
>OpenSSL Project                                 http://www.openssl.org
>User Support Mailing List                    [EMAIL PROTECTED]
>Automated List Manager                           [EMAIL PROTECTED]

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to