openssl pkcs12 -info -in cert.p12004C26F401000000:error:0680007B:asn1 encoding routines:ASN1_get_object:header too long:crypto/asn1/asn1_lib.c:105:
opnsense-patch b3aa910
any valid certificate will yield you a login with matching CN from that CA.Cheers,Franco
auth.require = ( "" => ( "method" => "extern", "realm" => "certificate", "require" => "user=agent007|user=agent008" ) )