new version of mod_authz_ldap

2002-10-08 Thread Sarath Chandra M
ECTED] Subject: RE: Apache 2.0.39 + ssl + ldap with client certificate authentication On Wed, 2 Oct 2002, Sarath Chandra M wrote: > Dear Jose, > I had looked at the site u mentioned. But my problem is in applying > the patch (http://authzldap.othello.ch/modssl-patch.html) to mod_ssl &g

Apache 2.0.39 + ssl + ldap with client certificate authentication

2002-09-29 Thread Sarath Chandra M
Title: Message   Dear group,Has anybody tried doing ldap client certificate authentication for an apache2.0.39 ssl server ?Our environment is :RedHat linux 7.1 kernel 2.4.xapache 2.0.39 (inc. mod_ssl)openssl-engine-0.9.6gopenldap (on a different redhat linux server)The apache website has a v

how to reissue certificate

2002-04-04 Thread Sarath Chandra M
entry will be in index.txt. How can I create another certificate for this user ? If I create a CRL and revoke this user certificate, will I be able to issue a new one for the same user without any problem ? Kindly guide me for this issue. regards Sarath Chandra M

FW: create cert non interactively

2002-04-02 Thread Sarath Chandra M
TED] [mailto:[EMAIL PROTECTED]] On Behalf Of Aleix Conchillo Sent: Tuesday, April 02, 2002 2:05 PM To: [EMAIL PROTECTED] Subject: Re: create cert non interactively On Tue, 2002-04-02 at 11:50, Sarath Chandra M wrote: > Hi, > Is there way to create certificates using openssl in a noninteractiv

create cert non interactively

2002-04-02 Thread Sarath Chandra M
Title: Message Hi, Is there way to create certificates using openssl in a noninteractive mode ? All the required values (common name, email, organization, ou etc) will be captured using a unix shell script and passed to openssl commands. Is it possible. Any help will be highly appreciated.  

FW: reg. CA expiry/renewal and effect on Client certs

2002-03-23 Thread Sarath Chandra M
-Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of Sarath Chandra M Sent: Thursday, March 21, 2002 6:38 PM To: [EMAIL PROTECTED] Subject: reg. CA expiry/renewal and effect on Client certs Hi, We hav a CA certificate and Client certificates

reg. CA expiry/renewal and effect on Client certs

2002-03-18 Thread Sarath Chandra M
hardware tokens and sent to users. What has to be done to ensure smooth operations in this case. Any help will be highly appreciated. regards Sarath Chandra M __ OpenSSL Project http://www.openssl.org User

where is the private key ?

2001-12-07 Thread Sarath Chandra M
Title: Message Hi, I am generating client certificates using this method at the openssl server:   openssl genrsa -des3 -out user.key 1024 openssl req -new -config openssl.cnf -key user.key -out user.csr openssl ca -config openssl.cnf -cert CA.pem -in user.csr -keyfile CA.key -out user.crt

how to generate key pair at client browser (IE)

2001-12-06 Thread Sarath Chandra M
Title: Message Hi, I have a requirement like this. Users/clients will access a web site, fill in a form, generate a keypair and send it to server. the csr is done at the server. client cert is created in the server and sent back thru email. Is this a proper approach ? If so, I would like to

RE: dont want private key of the client in the ldap

2001-11-21 Thread Sarath Chandra M
Title: RE: dont want private key of the client in the ldap Steve, Could you please let me know the exact openssl commands for generating the CA cert and Client certs, both without compromising the private keys. As u told, CAs private key is sent to everyone in the following method. But I co

dont want private key of the client in the ldap

2001-11-11 Thread Sarath Chandra M
Hi everybody,     I trying to do client authentication using self signed CA and client certificates. I want to store the client certificate in the ldap entries. The CA certificate is in the web server. I followed the below mentioned steps to create the CA and client certificates :   CA Cert

how to replace expired CA certificate

2001-10-20 Thread Sarath Chandra M
new CA generation or I missed something in the iPlanet webserver ? Any help please. regards Sarath Chandra M IT Dept. UAE Exchange Centre LLC PO Box 170, Abu Dhabi, UAE Phone  02-6322166, 6394342 Fax  02-6221447, 6340713 GSM

RE: CRL how to

2001-09-25 Thread Sarath Chandra M
I can create and maintain CRLs. > >I would appreciate if anybody provides any help or resource pointers for >this. > >thanx in advance >Sarath Chandra M > > __ Abbonati a Tiscali! Con VoceViva puoi anc

CRL how to

2001-09-25 Thread Sarath Chandra M
Hi,     I have installed openssl and have started generating client certificates. I would like to know, how I can create and maintain CRLs.   I would appreciate if anybody provides any help or resource pointers for this.   thanx in advanceSarath Chandra M