X-Git-Url: https://code.wpia.club/?a=blobdiff_plain;f=src%2Forg%2Fcacert%2Fgigi%2Fpages%2Faccount%2Fcerts%2FCertificateRequest.java;h=e1bf47cc9bde9de5d1b56252f07bbca96f6b675f;hb=08e0b5673b6994fc692a578f1ff99ebb67ae2410;hp=41c7e84e3b8c90546ab16edaf61e4885672e10ae;hpb=dea55fb19948e7fa05e4b9369873e96360a5064a;p=gigi.git diff --git a/src/org/cacert/gigi/pages/account/certs/CertificateRequest.java b/src/org/cacert/gigi/pages/account/certs/CertificateRequest.java index 41c7e84e..e1bf47cc 100644 --- a/src/org/cacert/gigi/pages/account/certs/CertificateRequest.java +++ b/src/org/cacert/gigi/pages/account/certs/CertificateRequest.java @@ -336,18 +336,19 @@ public class CertificateRequest { try { DomainAssessment.checkCertifiableDomain(san.getName(), user.isInGroup(Group.CODESIGNING), false); valid = true; + if ( !valid || !CAA.verifyDomainAccess(owner, p, san.getName()) || (pDNS != null && !domainTemp.isMultiple())) { + // remove + } else { + if (pDNS == null) { + pDNS = san.getName(); + } + filteredSANs.add(san); + continue; + } } catch (GigiApiException e) { + error.mergeInto(e); valid = false; } - if ( !valid || !CAA.verifyDomainAccess(owner, p, san.getName()) || (pDNS != null && !domainTemp.isMultiple())) { - // remove - } else { - if (pDNS == null) { - pDNS = san.getName(); - } - filteredSANs.add(san); - continue; - } } } else if (san.getType() == SANType.EMAIL) { if (emailTemp != null && owner.isValidEmail(san.getName())) { @@ -423,7 +424,7 @@ public class CertificateRequest { if (ctx.getTarget() instanceof Organisation) { Organisation org = (Organisation) ctx.getTarget(); subject.put("O", org.getName()); - subject.put("C", org.getState().getCountryCode()); + subject.put("C", org.getState().getCode()); subject.put("ST", org.getProvince()); subject.put("L", org.getCity()); if (ou != null) {