Quantcast
Channel: Directory Services forum
Viewing all articles
Browse latest Browse all 31638

Modifying Subject/DN format in certificates

$
0
0

Hi,

I have a need to add the serialNumber attribute (2.5.4.5) to the subject line of certificates generated via my MS CA. I have added the attribute to my users and I can see it in the attribute editor, but I can't figure out how to get it to show in the DN/Subject output of a certificate. I've dug around in both the schema and in the CA manager, and while I can disable automatically building the DN format from AD during enrollment, even when manually specifying the serialNumber attribute in the request it doesn't get added.

I'm assuming I need to somehow modify the default DN schema or something along those lines. I've seen certs in this format, so I'm reasonably sure it can be done. I'm just not knowledgeable enough to do it. I'm hoping someone here has done this and can share that knowledge.

FYI, this is an attempt to replicate a customer's issue with authentication using certificates with this DN format.

TIA


Viewing all articles
Browse latest Browse all 31638

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>