[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Condor-users] Close to getting SOAP HTTPS working



Yes, we use X509_NAME_oneline internally it seems, which does "/" separators by default. I think the best way to get a subject in a similar format is to use "openssl x509 -nameopt compat"

Best,


matt

On Sep 25, 2006, at 7:08 PM, David E. Konerding wrote:


How about, canonical_map: SSL .* dek

and, user_map: dek dek

That should map everyone coming in to you.

Or a canonical_map of: SSL "/DC=org/DC=doegrids/OU=People/CN=David E
\. Konerding.*" dek

Let me know if this works...


Both examples work just fine.  I see why I was having problems before:
I was inputting
my certificate subject name using the openssl output format, which uses
comma-and-space separated fields
rather than slash-separated fields.

Thanks!

Dave


_______________________________________________
Condor-users mailing list
To unsubscribe, send a message to condor-users-request@xxxxxxxxxxx with a
subject: Unsubscribe
You can also unsubscribe by visiting
https://lists.cs.wisc.edu/mailman/listinfo/condor-users

The archives can be found at either
https://lists.cs.wisc.edu/archive/condor-users/
http://www.opencondor.org/spaces/viewmailarchive.action?key=CONDOR