Next Previous Contents

13. Options

The options dialog can be found in the file menu. All options are saved in the database and do not depend on the operating systems registry or configuration files.

13.1 Mandatory subject entries

A list of mandatory distinguished name entries may be specified to get a warning, whenever issuing a certificate with one of the listed entres is empty. This requirement is not checked when editing templates, because templates may have empty entries that will be filled during the rollout of the certificate.

13.2 String settings

This option applies to all strings converted to ASN1 strings. The selected string type is automatically set to the smallest possible and allowed type, covering all contained characters.

The list of allowed string types can be selected:

13.3 Default hash algorithm

Older Windows versions and OpenSSL versions can not handle SHA256 and SHA512. This option allows to set the hash algorithm to SHA1 for instance.

13.4 PKCS#11 library path

Here you can select the path to the PKCS#11 library on your system. If it is empty, the default /usr/lib/opensc-pkcs11.so will be used. On Windows the opensc-pkcs11.dll in the XCA installation directory will be tried.


Next Previous Contents