Getting "invalid name" issuing errors when using "enddate" only #14
-
Hi there, for evaluation I'm playing around with the Sample_Online_User_NotAfter.xml sample file and would like to end the runtime of a certificate defined with it. Content of my XML When I issue a certificate based on the certificate template defined by the name of the XML file, I get an error message:
Without XML file the certificate is issued as usual and w/o error. Any ideas? |
Beta Was this translation helpful? Give feedback.
Replies: 3 comments 3 replies
-
Hi @Doomnometron , that error shoud occur if you have a DirectoryServicesMapping-AllowedSecurityGroups or DirectoryServicesMapping-DisallowedSecurityGroups rule in your xml rule file (see the Sample_Offline_User.xml example). Regards, Hajo. |
Beta Was this translation helpful? Give feedback.
-
Hi @Doomnometron, I've tested your above XML in my lab (Windows Server 2019, TameMyCerts_1.5.760.827) and it works as intended. You might get additional information in the application event log under event source "TameMyCerts". Regards, Hajo. |
Beta Was this translation helpful? Give feedback.
-
Hi @Doomnometron, yes, without Is it okay to mark the discussion as answered? Regards, Hajo. |
Beta Was this translation helpful? Give feedback.
Hi @Doomnometron,
yes, without
<Subject>
and/or<SubjectAlternativeName>
rules that permit certain fields with associated patters (even if the pattern is ^.*$ and maybe with Mandatory=false) the default is that any request with non-empty Subject DN and/or SAN will be rejected.Is it okay to mark the discussion as answered?
Regards, Hajo.