RE: AD with PKI authentication - issue on cert generation

2020-03-18 Thread Lionel Monchecourt
ertificate without problem Yes - it exists so removing it should be fine. Matt > > -Original Message- > From: openssl-users [mailto:openssl-users-boun...@openssl.org] On Behalf Of > Matt Caswell > Sent: 17 March 2020 14:10 > To: openssl-users@openssl.org > Subject: Re

Re: AD with PKI authentication - issue on cert generation

2020-03-18 Thread Matt Caswell
Yes - it exists so removing it should be fine. Matt > > -Original Message- > From: openssl-users [mailto:openssl-users-boun...@openssl.org] On Behalf Of > Matt Caswell > Sent: 17 March 2020 14:10 > To: openssl-users@openssl.org > Subject: Re: AD with PKI authentication -

RE: AD with PKI authentication - issue on cert generation

2020-03-18 Thread Lionel Monchecourt
] On Behalf Of Matt Caswell Sent: 17 March 2020 14:10 To: openssl-users@openssl.org Subject: Re: AD with PKI authentication - issue on cert generation On 17/03/2020 12:33, Lionel Monchecourt wrote: > I already tried to replace > > scardLogin=1.3.6.1.4.1.311.20.2.2 > > with >

Re: AD with PKI authentication - issue on cert generation

2020-03-17 Thread Matt Caswell
On 17/03/2020 12:33, Lionel Monchecourt wrote: > I already tried to replace > > scardLogin=1.3.6.1.4.1.311.20.2.2 > > with > > msSmartcardLogin=1.3.6.1.4.1.311.20.2.2 Try removing this line altogether. OpenSSL already has a built-in object of this name with this OID so it should not be nece