Weird error with OpenSSL - "first num too large"

glestwid

New Member
Joined
Sep 4, 2020
Messages
3
Reaction score
0
Credits
40
My commands for preparing a certificate:

root@porteus:/mnt/sda1/porteus/base# openssl version
OpenSSL 1.0.2o 27 Mar 2018
root@porteus:/mnt/sda1/porteus/base# openssl req -new -out wso2-study1.csr -newkey rsa:2048 -nodes -sha256 -keyout wso2-study1.key -config /tmp/req.conf
Error Loading extension section v3_req
2828282292:error:0D06407A:asn1 encoding routines:a2d_ASN1_OBJECT:first num too large:a_object.c:108:
2828282292:error:2206706E:X509 V3 routines:V2I_EXTENDED_KEY_USAGE:invalid object identifier:v3_extku.c:142:section:,name:clientAtuth,value:
2828282292:error:22098080:X509 V3 routines:X509V3_EXT_nconf:error in extension:v3_conf.c:95:name=extendedKeyUsage, value=serverAuth, clientAtuth

The corresponding /tmp/req.conf:
[req]
distinguished_name = req_distinguished_name
req_extensions = v3_req
prompt = no
[req_distinguished_name]
C = RU
ST = Moscow
L = Moscow
O = "Credit Swiss"
OU = IT
CN = wso2.endocs.ru
[v3_req]
keyUsage = keyEncipherment, dataEncipherment
extendedKeyUsage = serverAuth, clientAtuth
subjectAltName = @alt_names
[alt_names]
DNS.1 = wso2.endocs.ru

What should I do to eliminate this error?
 


Looks like a typo to me. Change clientAtuth to clientAuth where you’re setting the values for extendedKeyUsage
 

Members online


Top