Skip to Content.
Sympa Menu

cacert-devel - Re: Patch request: Bug #540

Subject: CAcert Code Development list.

List archive

Re: Patch request: Bug #540

Chronological Thread 
  • From: David McIlwraith <archaios AT>
  • To: cacert-devel AT
  • Cc: Michael Tänzer <michael.taenzer AT>
  • Subject: Re: Patch request: Bug #540
  • Date: Wed, 25 Jul 2012 13:15:46 +1000

Hi all,

Sorry, I noticed that one myself and forgot to file a bug report. I'm not entirely sure why OpenSSL doesn't recognise a keyUsage constraint after extendedKeyUsage; that in and of itself is a bug in upstream. I'll see if I can trace it...

- David McIlwraith 
<archaios AT>

On 25/07/12 08:07, Michael Tänzer wrote:
Hi folks,

We have a fix for
"No key usage attribute in cacert org certs anymore?"

The fix was reviewed by Dirk Astrath (dastrath) and me (NEOatNHNG) and
tested by Ulrich Schröter (Uli60), Daniel Wagner (Kwaxi), Marcus Mängel
(INOPIAE) and Kenneth Van Wyk.

Diff is attached (bug-540.diff). Please also run the locale makefile so
that our
translators see the new strings (if present) on and new translations get imported into
the system.

The patch also needs to be applied to the signing server and
additionally the changes found in the svn_bug-540.diff need to be
applied to the openssl config files on the signer.

Changed files:

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Archive powered by MHonArc 2.6.16.

Top of Page