new version of mod_authz_ldap

2002-10-08 Thread Sarath Chandra M
] Subject: RE: Apache 2.0.39 + ssl + ldap with client certificate authentication On Wed, 2 Oct 2002, Sarath Chandra M wrote: Dear Jose, I had looked at the site u mentioned. But my problem is in applying the patch (http://authzldap.othello.ch/modssl-patch.html) to mod_ssl as said

Apache 2.0.39 + ssl + ldap with client certificate authentication

2002-09-29 Thread Sarath Chandra M
Title: Message Dear group,Has anybody tried doing ldap client certificate authentication for an apache2.0.39 ssl server ?Our environment is :RedHat linux 7.1 kernel 2.4.xapache 2.0.39 (inc. mod_ssl)openssl-engine-0.9.6gopenldap (on a different redhat linux server)The apache website has a

how to reissue certificate

2002-04-04 Thread Sarath Chandra M
. But the entry will be in index.txt. How can I create another certificate for this user ? If I create a CRL and revoke this user certificate, will I be able to issue a new one for the same user without any problem ? Kindly guide me for this issue. regards Sarath Chandra M

FW: create cert non interactively

2002-04-02 Thread Sarath Chandra M
] [mailto:[EMAIL PROTECTED]] On Behalf Of Aleix Conchillo Sent: Tuesday, April 02, 2002 2:05 PM To: [EMAIL PROTECTED] Subject: Re: create cert non interactively On Tue, 2002-04-02 at 11:50, Sarath Chandra M wrote: Hi, Is there way to create certificates using openssl in a noninteractive mode ? All

create cert non interactively

2002-04-02 Thread Sarath Chandra M
Title: Message Hi, Is there way to create certificates using openssl in a noninteractive mode ? All the required values (common name, email, organization, ou etc) will be captured using a unix shell script and passed to openssl commands. Is it possible. Any help will be highly appreciated.

FW: reg. CA expiry/renewal and effect on Client certs

2002-03-23 Thread Sarath Chandra M
-Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of Sarath Chandra M Sent: Thursday, March 21, 2002 6:38 PM To: [EMAIL PROTECTED] Subject: reg. CA expiry/renewal and effect on Client certs Hi, We hav a CA certificate and Client certificates

reg. CA expiry/renewal and effect on Client certs

2002-03-18 Thread Sarath Chandra M
in hardware tokens and sent to users. What has to be done to ensure smooth operations in this case. Any help will be highly appreciated. regards Sarath Chandra M __ OpenSSL Project http://www.openssl.org User

where is the private key ?

2001-12-07 Thread Sarath Chandra M
Title: Message Hi, I am generating client certificates using this method at the openssl server: openssl genrsa -des3 -out user.key 1024 openssl req -new -config openssl.cnf -key user.key -out user.csr openssl ca -config openssl.cnf -cert CA.pem -in user.csr -keyfile CA.key -out user.crt

how to generate key pair at client browser (IE)

2001-12-06 Thread Sarath Chandra M
Title: Message Hi, I have a requirement like this. Users/clients will access a web site, fill in a form, generate a keypair and send it to server. the csr is done at the server. client cert is created in the server and sent back thru email. Is this a proper approach ? If so, I would like

RE: dont want private key of the client in the ldap

2001-11-21 Thread Sarath Chandra M
Title: RE: dont want private key of the client in the ldap Steve, Could you please let me know the exact openssl commands for generating the CA cert and Client certs, both without compromising the private keys. As u told, CAs private key is sent to everyone in the following method. But I

dont want private key of the client in the ldap

2001-11-11 Thread Sarath Chandra M
Hi everybody, I trying to do client authenticationusing self signed CA and client certificates. I want to store the client certificate in the ldap entries. The CA certificate is in the web server. I followed the below mentioned steps to create the CA and client certificates : CA

how to replace expired CA certificate

2001-10-20 Thread Sarath Chandra M
generation or I missed something in the iPlanet webserver ? Any help please. regards Sarath Chandra M IT Dept. UAE Exchange Centre LLC PO Box 170, Abu Dhabi, UAE Phone 02-6322166, 6394342 Fax 02-6221447, 6340713 GSM 050

CRL how to

2001-09-25 Thread Sarath Chandra M
Hi, I have installed openssl and have started generating client certificates. I would like to know, how I can create and maintain CRLs. I would appreciateif anybody provides any help or resource pointers for this. thanx in advanceSarath Chandra M

RE: CRL how to

2001-09-25 Thread Sarath Chandra M
Maiorano] -- Original Message -- Hi, I have installed openssl and have started generating client certificates. I would like to know, how I can create and maintain CRLs. I would appreciate if anybody provides any help or resource pointers for this. thanx in advance Sarath Chandra M