#18613 [Com]: Multiple OU in x509 certificate problem

From: Date: Tue, 06 Apr 2004 16:50:59 +0000
Subject: #18613 [Com]: Multiple OU in x509 certificate problem
References: 1  Groups: php.bugs 
Request: Send a blank email to php-bugs+get-57593@lists.php.net to get a copy of this message
ID: 18613 Comment by: allins at nosc dot mil Reported By: agoralski at certum dot pl Status: No Feedback Bug Type: OpenSSL related Operating System: Linux 2.4.18-grsec PHP Version: 4.2.2 New Comment: confirmed also exists in php 4.3.4 on fedora linux Previous Comments: ------------------------------------------------------------------------ [2004-04-06 12:32:07] allins at nosc dot mil verified on RedHat 9, PHP 4.2.2 output from var_dump of array after openssl_x509_parse was performed. There should have been an ["OU"]=> "DoD" before the PKI line ["issuer"]=> array(4) { ["C"]=> string(2) "US" ["O"]=> string(15) "U.S. Government" ["OU"]=> string(3) "PKI" ["CN"]=> string(22) "DOD CLASS 3 EMAIL CA-7" ------------------------------------------------------------------------ [2002-09-26 20:03:27] sniper@php.net No feedback was provided. The bug is being suspended because we assume that you are no longer experiencing the problem. If this is not the case and you are able to provide the information that was requested earlier, please do so and change the status of the bug back to "Open". Thank you. ------------------------------------------------------------------------ [2002-09-11 10:52:56] sniper@php.net Any news about the patch..? ------------------------------------------------------------------------ [2002-07-29 11:40:54] jtate@php.net Please submit the diff -u output to php-dev@php.net. ------------------------------------------------------------------------ [2002-07-28 10:37:10] agoralski at certum dot pl When the certificate has more that one OU (organizationalUnit), the openssl_x509_parse function will return only the last one. Proposal: The openssl_x509_parse should return: [subject][OU][0]='First OU' [subject][OU][1]='Second OU' When there is only one OU field the openssl_x509_parse should return: [subject][OU]='First and only OU' It's up to the user to check if [subject][OU] is an array IMO. We can submit a patch :) ------------------------------------------------------------------------ -- Edit this bug report at http://bugs.php.net/?id=18613&edit=1

« previous php.bugs (#57593) next »