Alexander,

This sounds great!

We would greatly appreciate it If you could do one of the following (whichever is easier):
Thanks,
-- Matt

On 03/08/13 00:19, Alexander Jung wrote:
Hi,

I did not realize I had been accepted to that group.

We (mostly me, but some collegues too) have developed some fixes for
problems we encountered with the dogtag CA.

The Problems we fixed are:
- problems when having more than 2 million certs in the ldap
- flatfileauth does not honor the ValueNames configured
- scep does not work against Cisco with CA key in hsm
We developed quite a few extensions, some of them are not specific to
our company:
- Validity: make certificates expire on tue, wed, thr at 15:00 only
and not during change of year and month.
- SubjectAlternativeNames: fill the dns reverse lookup into the SAN
field, to make a server cert work wwith all the dns names the machine
is configured for.

I could open bugs and attach patches or commit directly, when you allow me to.

yours,

Alexander Jung


2013/3/7  <accounts@fedoraproject.org>:
mharmsen <mharmsen@redhat.com> has removed you from the 'svnpki'
group of the Fedora Accounts System This change is effective
immediately for new operations, and should propagate into the e-mail
aliases within an hour.