StandIn
StandIn copied to clipboard
Client Authentication added to wrong flag
--clientauth
should add the "Client Authentication" Application Policy to mspki-certificate-application-policy
not to the pKIExtendedKeyUsage
property. Only adding it to pKIExtendedKeyUsage
still does not allow for Domain user impersonation.
#14