Issue generating certificate for a Samba AD - index.txt

classic Classic list List threaded Threaded
3 messages Options
Reply | Threaded
Open this post in threaded view
|

Issue generating certificate for a Samba AD - index.txt

smalldragoon

Hi , trying to generate a certify using

 

openssl copenssl ca -config /etc/ssl/user-openssl.cnf -in dc-req.pem -out dc-cert.pem

 

I get the following :

 

Using configuration from /etc/ssl/user-openssl.cnf

Enter pass phrase for ./private/cakey.pem:

139946396877888:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('./index.txt','r')

139946396877888:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:

 

I found a post saying that you just need to create the index.txt file,but it leads to “no result “

Another post was saying to insert  in the file “unique_subject = no”

Nothing at all ( putting yes or no ), as attempts…

Any insights ?

Thx

 


Virus-free. www.avast.com
Reply | Threaded
Open this post in threaded view
|

Re: Issue generating certificate for a Samba AD - index.txt

Sergio NNX
We have been creating certificates (Root CA, intermediate, end user, smartcard login, etc) for ages.
We have set up our own PKI infrastructure using openssl command line tool.
If you email us the details/extensions you need your certificates to have, we can generate some test certs for you.

How familiar are you with OpenSSL?

Regards.


From: openssl-users <[hidden email]> on behalf of Lionel Monchecourt <[hidden email]>
Sent: Thursday, 19 March 2020 8:27 AM
To: [hidden email] <[hidden email]>
Subject: Issue generating certificate for a Samba AD - index.txt
 

Hi , trying to generate a certify using

 

openssl copenssl ca -config /etc/ssl/user-openssl.cnf -in dc-req.pem -out dc-cert.pem

 

I get the following :

 

Using configuration from /etc/ssl/user-openssl.cnf

Enter pass phrase for ./private/cakey.pem:

139946396877888:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('./index.txt','r')

139946396877888:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:

 

I found a post saying that you just need to create the index.txt file,but it leads to “no result “

Another post was saying to insert  in the file “unique_subject = no”

Nothing at all ( putting yes or no ), as attempts…

Any insights ?

Thx

 


Virus-free. www.avast.com
Reply | Threaded
Open this post in threaded view
|

RE: Issue generating certificate for a Samba AD - index.txt

smalldragoon

Hi Sergio

Thanks a lot

My goal is to achieve a SAMBA auth using PKi ( as per ref here : https://wiki.samba.org/index.php/Samba_AD_Smart_Card_Login )

More specifically, related then to openSSL, this chapter

https://wiki.samba.org/index.php/Samba_AD_Smart_Card_Login#Prerequisites

 

sounds achievable for you ?

Thanks a lot

Lionel

 

 

 

From: Sergio NNX [mailto:[hidden email]]
Sent: 18 March 2020 23:13
To: Lionel Monchecourt; [hidden email]
Subject: Re: Issue generating certificate for a Samba AD - index.txt

 

We have been creating certificates (Root CA, intermediate, end user, smartcard login, etc) for ages.

We have set up our own PKI infrastructure using openssl command line tool.

If you email us the details/extensions you need your certificates to have, we can generate some test certs for you.

 

How familiar are you with OpenSSL?

 

Regards.

 


From: openssl-users <[hidden email]> on behalf of Lionel Monchecourt <[hidden email]>
Sent: Thursday, 19 March 2020 8:27 AM
To: [hidden email] <[hidden email]>
Subject: Issue generating certificate for a Samba AD - index.txt

 

Hi , trying to generate a certify using

 

openssl copenssl ca -config /etc/ssl/user-openssl.cnf -in dc-req.pem -out dc-cert.pem

 

I get the following :

 

Using configuration from /etc/ssl/user-openssl.cnf

Enter pass phrase for ./private/cakey.pem:

139946396877888:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('./index.txt','r')

139946396877888:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:

 

I found a post saying that you just need to create the index.txt file,but it leads to “no result “

Another post was saying to insert  in the file “unique_subject = no”

Nothing at all ( putting yes or no ), as attempts…

Any insights ?

Thx

 

 

Virus-free. www.avast.com