Howard Chu wrote:
I should also warn you, x500UniqueIdentifier has a bitstring syntax, and this syntax is extremely clumsy in LDAP. Judging from the certificate you sent me, you're trying to use this attribute as a regular octetstring. The two are quite different.
I suspected something like this. There has quite some confusion about x500UniqueIdentifier also in other software:
https://issues.apache.org/bugzilla/show_bug.cgi?id=45107
Ciao, Michael.