[an error occurred while processing this directive] [an error occurred while processing this directive][an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive] (none) [an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive][an error occurred while processing this directive] [an error occurred while processing this directive][an error occurred while processing this directive] [an error occurred while processing this directive][an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive] (none) [an error occurred while processing this directive] [an error occurred while processing this directive] [an error occurred while processing this directive][an error occurred while processing this directive]
 
[an error occurred while processing this directive] [an error occurred while processing this directive]
Skåne Sjælland Linux User Group - http://www.sslug.dk Home   Subscribe   Mail Archive   Forum   Calendar   Search
MhonArc Date: [Date Prev] [Date Index] [Date Next]   Thread: [Date Prev] [Thread Index] [Date Next]   MhonArc
 

SV: SV: [SIGNATUR] Endnu en request til at blive analyseret



Jeg har kørt din request gennem testsystemet:

Svar: 
Fornavn:  Mads  
Efternavn:  Bondo Dydensborg  
Emailadresse:  sslug@sslug  
Organisation:  Ingen organisatorisk tilknytning  
Landekode:  DK  
 
Jeg fik ikke fejl på e-mail addressen, og jeg kan se i pharseren at du
anvender IA5 string.

ANS1 pharsing:
SEQUENCE [606]
	SEQUENCE [455]
		INTEGER [1] ( 00 )
		SEQUENCE [261]
			SET [11]
				SEQUENCE [9]
					OBJECT IDENTIFIER [3]( 2.5.4.6 -
countryName )
					PrintableString [2] ( DK )
			SET [41]
				SEQUENCE [39]
					OBJECT IDENTIFIER [3]( 2.5.4.10 -
organizationName )
					PrintableString [32] ( Ingen
organisatorisk tilknytning )
			SET [47]
				SEQUENCE [45]
					OBJECT IDENTIFIER [3]( 2.5.4.3 -
commonName )
					PrintableString [38] ( Mads Bondo
Dydensborg // PID:xxxxxxxxx )
			SET [33]
				SEQUENCE [31]
					OBJECT IDENTIFIER [9](
1.2.840.113549.1.9.1 - UNKNOWN OBJECT IDENTIFIER )
					IA5String [18] ( sslug@sslug
)
			SET [13]
				SEQUENCE [11]
					OBJECT IDENTIFIER [3]( 2.5.4.42 -
givenName )
					PrintableString [4] ( Mads )
			SET [25]
				SEQUENCE [23]
					OBJECT IDENTIFIER [3]( 2.5.4.4 -
surname )
					PrintableString [16] ( Bondo
Dydensborg )
			SET [45]
				SEQUENCE [43]
					OBJECT IDENTIFIER [3]( 2.5.29.15 -
keyUsage )
					PrintableString [36] ( Digital
Signature, Data Encipherment )
			SET [30]
				SEQUENCE [28]
					OBJECT IDENTIFIER [3]( 2.5.4.5 -
UNKNOWN OBJECT IDENTIFIER )
					PrintableString [21] (
9208-2001-1-xxxxxxxxx )
		SEQUENCE [159]
			SEQUENCE [13]
				OBJECT IDENTIFIER [9]( 1.2.840.113549.1.1.1
- rsaEncryption )
				NULL [0] ( )
			BIT STRING [141] ( 00 30 81 89 02 81 81 00 E5 44 3A
1A 48 2B A2 DF 95 F0 AD ... )
		[CONTEXT SPECIFIC 0] [23]
			SEQUENCE [21]
				OBJECT IDENTIFIER [9]( 1.2.840.113549.1.9.7
- UNKNOWN OBJECT IDENTIFIER )
				SET [8]
					PrintableString [6] ( tester )
	SEQUENCE [13]
		OBJECT IDENTIFIER [9]( 1.2.840.113549.1.1.4 -
md5WithRSAEncryption )
		NULL [0] ( )
	BIT STRING [129] ( 00 5D E5 19 91 2C B3 B3 DD A1 9E 9E B7 F1 B1 E9
59 53 FD ... )
 
> 
> Jeg kan ikke komme længere hjemmefra - programmet hvor jeg leger posthus,
> kan jeg ikke få adgang til hjemmefra. 

Og, jeg kan kunne komme længere gennem dig. Det er en utilfredsstillende 
situation - eller ihvertfald en der gør at tingene går lidt 
langsommere....

Jørn: Desværre -- og test systemet kan ikke nåes uden for KMD. 


OK - det ser ud til at vi stadig har nogen detalje forskelle.

- er min + er din/jeres

-                       SEQUENCE [21]
-                               OBJECT IDENTIFIER [9]( 
1.2.840.113549.1.9.7 - UNKNOWN OBJECT IDENTIFIER )
-                               SET [8]
-                                       PrintableString [6] ( tester )
+                       BIT STRING [141] ( 00 30 81 89 02 81 81 00 A5 F8 
15 01 F1 F2 4F 74 F1 F5 84 ... )
+               [CONTEXT SPECIFIC 0] [33]
+                       SEQUENCE [31]
+                               OBJECT IDENTIFIER [9]( 
1.2.840.113549.1.9.14 - UNKNOWN OBJECT IDENTIFIER )
+                               SET [18]
+                                       SEQUENCE [16]
+                                               SEQUENCE [14]

Den første er vores "challengePassword" - har du en ide om hvad jeres 
(.14) er?

Jørn: Jeg prøver, men min kollega "eksperten" er fuldstændig underdrejet af
hasteopgaver.. umiddelbart vil jeg tro at det er den certifikat politik der
skal udstedes efter ( Medarbejder/person) - så det skulle ikke være
kritisk...

Så er der

-               OBJECT IDENTIFIER [9]( 1.2.840.113549.1.1.4 - 
md5WithRSAEncryption )
+               OBJECT IDENTIFIER [9]( 1.2.840.113549.1.1.5 - UNKNOWN 
OBJECT IDENTIFIER )

Interessant nok ser det ud til at vores er mere kendt af jeres system end 
jeres egen ;-).

Jeg går ikke ud fra at det er et problem.

Jørn: Det er en smagssag, du anvender MD5 som hash algoritme, denne er
desværre ikke længer anbefalet, da man har fundet en måde at bryde den på,
derfor anvender vi sha1 algoritmen - men den ANS1 pharser jeg bruger er ikke
opdateret på dette punkt, der burde være en i Open source, som man kunne
vedligeholde, uden at være leverandør afhængig;-(

Jørn


 
Home   Subscribe   Mail Archive   Index   Calendar   Search

 
 
Questions about the web-pages to <www_admin>. Last modified 2005-08-10, 20:33 CEST [an error occurred while processing this directive]
This page is maintained by [an error occurred while processing this directive]MHonArc [an error occurred while processing this directive] # [an error occurred while processing this directive] *