Bug #77416 [Opn->Fbk]: openssl_csr_new add fields to subject

From: Date: Sun, 06 Jan 2019 19:27:25 +0000
Subject: Bug #77416 [Opn->Fbk]: openssl_csr_new add fields to subject
References: 1  Groups: php.bugs 
Request: Send a blank email to php-bugs+get-218813@lists.php.net to get a copy of this message
Edit report at https://bugs.php.net/bug.php?id=77416&edit=1 ID: 77416 Updated by: requinix@php.net Reported by: joose dot vettenranta at kompassi dot fi Summary: openssl_csr_new add fields to subject -Status: Open +Status: Feedback Type: Bug Package: OpenSSL related Operating System: Linux PHP Version: 7.2.13 Block user comment: N Private report: N New Comment: How does your openssl.cnf look? Previous Comments: ------------------------------------------------------------------------ [2019-01-06 19:22:45] joose dot vettenranta at kompassi dot fi Description: ------------ When creating new CSR, it will add "ST=Some-State, O=Internet Widgits Pty Ltd" to the subject if not defined in openssl_csr_new -function call. This has been a bug in PHP for a long time. Test script: --------------- <?php $config=array( "private_key_bits" => 2048, "private_key_type" => OPENSSL_KEYTYPE_RSA, ); $privkey = openssl_pkey_new($config); $csr = openssl_csr_new(array("C"=>"FI"), $privkey); openssl_csr_export($csr, $csrout); echo($csrout); /* using same system, but command line openssl command to generate csr works just fine. I have been using this code to do csr: $csr = shell_exec('openssl req -new -sha256 -key '.$tempDir.'/private.key -outform '.$format.' -subj "'.$subject.'"'); */ ?> $ php test.php > /tmp/foo3 $ openssl req -in /tmp/foo3 -noout -text Expected result: ---------------- Certificate Request: Data: Version: 0 (0x0) Subject: C=FI Actual result: -------------- Certificate Request: Data: Version: 0 (0x0) Subject: C=FI, ST=Some-State, O=Internet Widgits Pty Ltd ------------------------------------------------------------------------ -- Edit this bug report at https://bugs.php.net/bug.php?id=77416&edit=1

« previous php.bugs (#218813) next »