perhaps this is a tinyCA problem...
I have the following line in openssl.conf
subjectAltName = email:copy, DNS:srv1.tobyhouse.com, DNS:www.tobyhouse.com, DNS:ldap.tobyhouse.com, DNS:mail.tobyhouse.com, DNS:webmail.tobyhouse.com
isn't this the proper style for this information?
Looks good to me. But why do you want to have email bit in something that obviously looks like server certificate??? I'd get rid of "email:copy" part. It serves no purpuse in server certificates.
-- Aleksandar Milivojevic <amilivojevic@xxxxxx> Pollard Banknote Limited Systems Administrator 1499 Buffalo Place Tel: (204) 474-2323 ext 276 Winnipeg, MB R3T 1L7