Collections:
Other Resources:
OpenSSL "ca" Error "stateOrProvinceName field needed to be the same"
Why I am getting the "The stateOrProvinceName field needed to be the same in the CA certificate (...) and the request (...)" error when running OpenSSL "ca" command?
✍: FYIcenter.com
If you are running the OpenSSL "ca" command installed
with the slproweb binary package for Windows,
you may get the "The stateOrProvinceName field needed to be the same in the
CA certificate (...) and the request (...)" error as shown below:
C:\Users\fyicenter>\local\OpenSSL-Win32\bin\openssl.exe OpenSSL> ca -in test.csr -keyfile my_ca.key -cert my_ca.crt Using configuration from C:\local\OpenSSL-Win32\bin\openssl.cfg Enter pass phrase for my_ca.key: Check that the request matches the signature Signature ok The stateOrProvinceName field needed to be the same in the CA certificate (TX) and the request (NY) error in ca
This error is caused by the "stateOrProvinceName=match" option in the [policy_match] section in the configuration file. This option limits you to sign a CSR that has the same stateOrProvinceName as you CA certificate.
Fixing this error is easy. Just add "-policy policy_anything" option in the "ca" command to by-pass this requirement.
⇒ OpenSSL "ca" - Sign CSR with CA Certificate
2016-09-13, ∼7914🔥, 0💬
Popular Posts:
Which certificate file format should I use when exporting a certificate on Mac computer? What is the...
Certificate summary - Owner: COMODO SSL CA 2, COMODO CA Limited, L=Salford, ST=Greater Manchester, G...
Certificate summary - Owner: *.yola.com, PositiveSSL Wildcard, Domain Control Validated Issuer: Posi...
Certificate Summary: Subject: GeoTrust TLS RSA CA G1 Issuer: DigiCert Global Root G2 Expiration: 202...
Certificate summary - Owner: www.orange.fr, Orange France, france telecom, L=Bagnolet, ST=Seine Sain...