diff --git a/lang/xca_de.ts b/lang/xca_de.ts
index e517159e..15ab64cb 100644
--- a/lang/xca_de.ts
+++ b/lang/xca_de.ts
@@ -535,14 +535,6 @@ PEM is a base64 encoded DER file
ExportKey
-
- Public key export
- Export des öffentlichen Schlüssels
-
-
- Key export
- Schlüssel export
- Please enter the filename for the key.
@@ -1061,10 +1053,6 @@ Seriennummer: %3
Import anywayTrotzdem importieren
-
- Cancel
- Abbrechen
- I&mport
@@ -1373,19 +1361,12 @@ Bitte die DH Parameter bits angeben
Zertifikatsantrag
-
- A certificate signing request can be signed, even if the private key of the request is not available. This is the intention of a CSR:
-Getting signed by a CA certificate, whoes certificate of course must be in the database
-Of course you need the private key of the CSR if you want to create a self-signed cert from it.
- Ein CSR (Zertifikatsantrag) kann unterschrieben werden, auch wenn der private Schlüssel des Antrags nicht verfügbar ist. Dies ist die Aufgabe eines CSR.
-
-
-
+ Show requestRequest anzeigen
-
+ Country codeLänder code
@@ -1420,7 +1401,7 @@ Of course you need the private key of the CSR if you want to create a self-signe
E-Mail Adresse
-
+ Sign this Certificate signing &requestDiesen Zertifikatsant&rag unterschreiben
@@ -1455,14 +1436,7 @@ Of course you need the private key of the CSR if you want to create a self-signe
Alle Zertifikate aus der Datenbank, die gültige Unterschriften leisten können
-
- This list contains all certificates with the CA-flag set to true and whoes private key is present in the key-database.
-If this list is disabled, you only can create a self-signed certificate.
- Diese Liste enthält alle Zertifikate mit dem CA-flag gesetzt und dessen privater Schlüssel verfügbar ist.
-Wenn diese Liste ausgeschaltet ist, kann nur ein selbst unterschriebenes Zertifikat erstellt werden.
-
-
-
+ Signature algorithmSignatur algorithmus
@@ -1477,30 +1451,25 @@ Wenn diese Liste ausgeschaltet ist, kann nur ein selbst unterschriebenes Zertifi
Alle verfügbaren Vorlagen
-
- This list contains all templates from the toplevel template Tab
- Diese Liste enthält alle Vorlagen
-
-
-
+ ApplyÜbernehmen
-
+ SubjectInhaber
-
+ Use &this Certificate for signingVerwende dieses Zertifika&t zum Unterschreiben
-
+ Distinguished name
-
+ Eindeutiger Name
@@ -1518,7 +1487,7 @@ Wenn diese Liste ausgeschaltet ist, kann nur ein selbst unterschriebenes Zertifi
Interner Name
-
+ AddHinzufügen
@@ -1555,7 +1524,7 @@ Wenn diese Liste ausgeschaltet ist, kann nur ein selbst unterschriebenes Zertifi
Basic constraints
-
+ Grundsätzliche Einschränkungen
@@ -1568,14 +1537,7 @@ Wenn diese Liste ausgeschaltet ist, kann nur ein selbst unterschriebenes Zertifi
Ob dies ein CA Zertifikat wird oder nicht
-
- Set this to TRUE if you want to create a CA certificate that signs other certificates.
-This is always set to FALSE for client or server certificates. In most cases self-signed certificates are CA certificates.
-Self-signed non-CA certificates are unusual although they are possible.
-
-
-
-
+ Not definedNicht definiert
@@ -1600,20 +1562,14 @@ Self-signed non-CA certificates are unusual although they are possible.
Wieviele CAs in der Kette unter diesem sein dürfen.
-
- If this is left empty the pathlen is not included in the certificate. Otherwise it distinguishes the count of chained CA certificates below this one.
-A pathlen of 0 means, that this certificate may not issue other sub-CA certificates. Although it can do it, all chain-checking algorithms in e.g. your browser or openssl will (should) fail.
-
-
-
-
+ The basic constraints should always be criticalDie "basic constraints" sollten immer "critical" seinKey identifier
-
+ Schlüsselkennung
@@ -1626,13 +1582,7 @@ A pathlen of 0 means, that this certificate may not issue other sub-CA certifica
Kopiere den "Subject key identifier" vom Aussteller
-
- If this box is checked an attempt is made to copy the subject key identifier from the signing certificate.
-It also copies the issuer and serial number from the issuer certificate. Normally this will only be done if the keyid option fails.
-
-
-
-
+ ValidityGültigkeit
@@ -1682,139 +1632,102 @@ It also copies the issuer and serial number from the issuer certificate. Normall
Ortszeit
-
+ Authority Info Access
-
+ CRL distribution point
-
+ issuer alternative name
-
+ Alternativer Ausstellername
-
+ URI:URI:
-
- This is a multi-valued extension that supports all the literal options of subject alternative name. Of the few software packages that currentlyi nterpret this extension most only interpret the URI option.
-Currently each option will set a new DistributionPoint with the fullName field set to the given value.
-Other fields like cRLissuer and reasons cannot currently be set or displayed: at this time no examples were available that used these fields.
-If you see this extension with <UNSUPPORTED> when you attempt to print it out or it doesn't appear to display correctly then let steve know, including the certificate (mail steve at openssl dot org) .
-Examples:
-URI:http://www.myhost.com/myca.crl
-URI:http://www.my.com/my.crl, URI:http://www.oth.com/my.crl
-
-
-
-
+ can be altered by the file "aia.txt"Kann in der Datei "aia.txt" angepasst werden
-
-
-
-
+
+
+
+ EditBearbeiten
-
-
-
+
+
+ DNS: IP: URI: email: RID:DNS: IP: URI: email: RID:
-
- The authority information access extension gives details about how to access certain information relating to the CA. Its syntax is accessOID;location where 'location' has the same syntax as subject alternative name (except that email:copy is not supported). accessOID can be any valid OID but only certain values are meaningful for example OCSP and caIssuers. OCSP gives the location of an OCSP responder: this is used by Netscape PSM and other software.
-
-Example:
-
-OCSP;URI:http://ocsp.my.host/
-caIssuers;URI:http://my.ca/ca.html
-
-
-
-
- The subject alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name) , RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
-
-
-
-
+ subject alternative name
-
+ Alternativer Eigentümername
-
- The issuer alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name), RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
-
-
-
-
+ Key usage
-
+ Schlüsselverwendung
-
+ Extended key usage
-
+ Erweiterte Schlüsselverwendung
-
+ NetscapeNetscapeCA Revocation URL
-
+ CA Sperrlisten URLRevocation URL
-
+ Sperrlisten URLSSL server name
-
+ SSL ServernameCertificate renewal URL
-
+ Zertifikatsverlängerungs URLComment
-
+ KommentarCA policy URL
-
+ CA Richtlinien URLBase URL
-
+ Basis URL
@@ -1889,12 +1802,12 @@ Bitte mindestens den internen Namen setzen.
Das Zertifikat wird abgelaufen sein, bevor es gültig wurde. Wahrscheinlich sind die Zeiten vertauscht.
-
+ Modify subject of the requestInhaberinformation "subject" des Zertifikatsantrags ändern
-
+ AdvancedErweitert
@@ -1916,7 +1829,7 @@ The rollout should be aborted.
Trotzdem fortfahren
-
+ No well-defined expirationUndefiniertes Ablaufdatum
@@ -1993,7 +1906,7 @@ though you have declared them as mandatory in the options menu.
Extensions editieren
-
+ Apply extensionsErweiterungen übernehmen
@@ -3458,14 +3371,10 @@ und wurde daher nicht importiert
Only export the public keyNur den öffentlichen Schlüssel exportieren
-
- Export private key unencrypted
- Privaten Schlüssel unverschlüsselt exportieren
- Export the private key unencrypted
- Privaten Schlüssel unverschlüsselt exportieren
+ Privaten Schlüssel unverschlüsselt exportieren
@@ -3639,10 +3548,6 @@ und wurde daher nicht importiert
Delete the %1 keys: %2?Die %1 Schlüssel: %2 löschen?
-
- only RSA keys can be stored on tokens
- Auf der Chipkarte können nur RSA Schlüssel gespeichert werden
- PIN input aborted
diff --git a/lang/xca_es.ts b/lang/xca_es.ts
index e271bbf4..a8ed408a 100644
--- a/lang/xca_es.ts
+++ b/lang/xca_es.ts
@@ -467,10 +467,6 @@ PKCS#8 es un formato estandar de intercambio de claves
Please enter the filename for the key.Introduzca nombre de fichero que contendrá la clave.
-
- Key export
- Exportar clave
- Export public %1 key
@@ -874,10 +870,6 @@ Serial: %3
Import anyway
-
- Cancel
- Cancelar
- no such option: %1
@@ -1082,12 +1074,6 @@ Please enter the DH parameter bits
Signing request
-
- A certificate signing request can be signed, even if the private key of the request is not available. This is the intention of a CSR:
-Getting signed by a CA certificate, whoes certificate of course must be in the database
-Of course you need the private key of the CSR if you want to create a self-signed cert from it.
-
- Show request
@@ -1128,11 +1114,6 @@ Of course you need the private key of the CSR if you want to create a self-signe
All certificates in your database that can create valid signatures
-
- This list contains all certificates with the CA-flag set to true and whoes private key is present in the key-database.
-If this list is disabled, you only can create a self-signed certificate.
-
- Signature algorithmFirma
@@ -1145,10 +1126,6 @@ If this list is disabled, you only can create a self-signed certificate.All available templates
-
- This list contains all templates from the toplevel template Tab
-
- Apply extensions
@@ -1245,12 +1222,6 @@ If this list is disabled, you only can create a self-signed certificate.If this will become a CA certificate or not
-
- Set this to TRUE if you want to create a CA certificate that signs other certificates.
-This is always set to FALSE for client or server certificates. In most cases self-signed certificates are CA certificates.
-Self-signed non-CA certificates are unusual although they are possible.
-
- Not defined
@@ -1271,11 +1242,6 @@ Self-signed non-CA certificates are unusual although they are possible.
How much CAs may be below this.
-
- If this is left empty the pathlen is not included in the certificate. Otherwise it distinguishes the count of chained CA certificates below this one.
-A pathlen of 0 means, that this certificate may not issue other sub-CA certificates. Although it can do it, all chain-checking algorithms in e.g. your browser or openssl will (should) fail.
-
- The basic constraints should always be critical
@@ -1292,11 +1258,6 @@ A pathlen of 0 means, that this certificate may not issue other sub-CA certifica
Copy the Subject Key Identifier from the issuer
-
- If this box is checked an attempt is made to copy the subject key identifier from the signing certificate.
-It also copies the issuer and serial number from the issuer certificate. Normally this will only be done if the keyid option fails.
-
- ValidityValidez
@@ -1357,16 +1318,6 @@ It also copies the issuer and serial number from the issuer certificate. Normall
URI:
-
- This is a multi-valued extension that supports all the literal options of subject alternative name. Of the few software packages that currentlyi nterpret this extension most only interpret the URI option.
-Currently each option will set a new DistributionPoint with the fullName field set to the given value.
-Other fields like cRLissuer and reasons cannot currently be set or displayed: at this time no examples were available that used these fields.
-If you see this extension with <UNSUPPORTED> when you attempt to print it out or it doesn't appear to display correctly then let steve know, including the certificate (mail steve at openssl dot org) .
-Examples:
-URI:http://www.myhost.com/myca.crl
-URI:http://www.my.com/my.crl, URI:http://www.oth.com/my.crl
-
- can be altered by the file "aia.txt"
@@ -1379,24 +1330,10 @@ URI:http://www.my.com/my.crl, URI:http://www.oth.com/my.crl
DNS: IP: URI: email: RID:
-
- The subject alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name) , RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
-
- subject alternative name
-
- The issuer alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name), RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
-
- Key usage
@@ -1594,15 +1531,6 @@ though you have declared them as mandatory in the options menu.
Local time
-
- The authority information access extension gives details about how to access certain information relating to the CA. Its syntax is accessOID;location where 'location' has the same syntax as subject alternative name (except that email:copy is not supported). accessOID can be any valid OID but only certain values are meaningful for example OCSP and caIssuers. OCSP gives the location of an OCSP responder: this is used by Netscape PSM and other software.
-
-Example:
-
-OCSP;URI:http://ocsp.my.host/
-caIssuers;URI:http://my.ca/ca.html
-
- The certificate contains invalid or duplicate extensions. Check the validation on the advanced tab.
diff --git a/lang/xca_fr.ts b/lang/xca_fr.ts
index 0ea7b4d5..683eedaf 100644
--- a/lang/xca_fr.ts
+++ b/lang/xca_fr.ts
@@ -473,14 +473,6 @@ PKCS#8 est un format officiel d'échange de clé
Please enter the filename for the key.SVP saisir le nom du fichier pour la clé.
-
- Public key export
- Exporter la clé publique
-
-
- Key export
- Exporter la clé
- Export public %1 key
@@ -887,10 +879,6 @@ Numéro de série: %3
Import anywayImporter quand-même
-
- Cancel
- Annuler
- no such option: %1'%1' n'est pas une option
@@ -1098,14 +1086,6 @@ Saisir le nombre de bits du paramètre de Diffie-Hellman SVP
Signing requestRequête de signature
-
- A certificate signing request can be signed, even if the private key of the request is not available. This is the intention of a CSR:
-Getting signed by a CA certificate, whoes certificate of course must be in the database
-Of course you need the private key of the CSR if you want to create a self-signed cert from it.
- Un requête de signature de certificat peut être signée même si la clé privée de la requête n'est pas disponible. C'est l'intention
-d'une requête de signature: être signée par un certificat d'autorité (CA) qui lui bien-sûr, doit être dans la base de donnée.
-Par contre, la clé privée d'une requête est nécessaire pour créer un certificat auto-signé à partir de celle-ci.
- Show requestAfficher la requête
@@ -1146,12 +1126,6 @@ Par contre, la clé privée d'une requête est nécessaire pour créer un c
All certificates in your database that can create valid signaturesTous les certificats dans la base de données qui peuvent produire des signatures valables
-
- This list contains all certificates with the CA-flag set to true and whoes private key is present in the key-database.
-If this list is disabled, you only can create a self-signed certificate.
- Cette liste contient tous les certificats qui ont le drapeau CA levé et dont la clé privée est présente dans la base de données.
-Si cette liste est désactivée, seule la création d'un certificat auto-signé est possible.
- Signature algorithmAlgorithme de signature
@@ -1164,10 +1138,6 @@ Si cette liste est désactivée, seule la création d'un certificat auto-si
All available templatesTous les modèles disponibles
-
- This list contains all templates from the toplevel template Tab
- Cette liste contient tous les modèles de l'onglet 'Modèles'
- Apply extensionsAppliquer les extensions
@@ -1264,14 +1234,6 @@ Si cette liste est désactivée, seule la création d'un certificat auto-si
If this will become a CA certificate or notSi un certificat d'autorité (CA) est en train d'être créé ou non
-
- Set this to TRUE if you want to create a CA certificate that signs other certificates.
-This is always set to FALSE for client or server certificates. In most cases self-signed certificates are CA certificates.
-Self-signed non-CA certificates are unusual although they are possible.
- Sélectionner "VRAI" si vous voulez créer un certificat d'autorité (CA) qui peut signer d'autres certificats.
-"FAUX" doit toujours être séléectionné pour des certificats de clients ou de serveurs. Dans la plupart des cas,
-les certificats auto-signés sont des certificats d'autorité: bien que possibles, les certificats auto-signés non-CA sont rares.
- Not definedNon défini
@@ -1292,13 +1254,6 @@ les certificats auto-signés sont des certificats d'autorité: bien que pos
How much CAs may be below this.Combien de niveau de sous-CA peuvent apparaître jusqu'à une entité finale.
-
- If this is left empty the pathlen is not included in the certificate. Otherwise it distinguishes the count of chained CA certificates below this one.
-A pathlen of 0 means, that this certificate may not issue other sub-CA certificates. Although it can do it, all chain-checking algorithms in e.g. your browser or openssl will (should) fail.
- Si ce champ est laissé vide, la distance aux peuilles n'est pas incluse dans le certificat. Sinon il limite le nombre de sous-CA en dessous de celui-ci.
-Une distance aux feuilles de 0 signifie que ce certificat ne peut pas signer de sous-CA. Bien qu'il puisse effectivement le faire, tous les algorithme de vérification de
-chaînage des certificats (p.ex: dans votre navigateur ou openssl) les refuseront.
- The basic constraints should always be criticalLes contraintes basiques doivent toujours être critiques
@@ -1315,12 +1270,6 @@ chaînage des certificats (p.ex: dans votre navigateur ou openssl) les refuseron
Copy the Subject Key Identifier from the issuerCopie l'identifiant de clé du sujet du signataire
-
- If this box is checked an attempt is made to copy the subject key identifier from the signing certificate.
-It also copies the issuer and serial number from the issuer certificate. Normally this will only be done if the keyid option fails.
- Quand cette case est cochée, l'identifiant de clé est copiée du certificat signataire.
-L'emetteur et le numéro de série du certificat signataire sont aussi copiés: normalement cette copie n'est effectuée que si la copie de l'identifiant de clé échoue.
- ValidityValidité
@@ -1381,22 +1330,6 @@ L'emetteur et le numéro de série du certificat signataire sont aussi copi
URI:URI:
-
- This is a multi-valued extension that supports all the literal options of subject alternative name. Of the few software packages that currentlyi nterpret this extension most only interpret the URI option.
-Currently each option will set a new DistributionPoint with the fullName field set to the given value.
-Other fields like cRLissuer and reasons cannot currently be set or displayed: at this time no examples were available that used these fields.
-If you see this extension with <UNSUPPORTED> when you attempt to print it out or it doesn't appear to display correctly then let steve know, including the certificate (mail steve at openssl dot org) .
-Examples:
-URI:http://www.myhost.com/myca.crl
-URI:http://www.my.com/my.crl, URI:http://www.oth.com/my.crl
- Cette extension est un agrégat de toutes les options littérales du nom alternatif du sujet. Parmi les quelques logiciels qui utilisent cette extension aujourd'hui, la plupart ne traitent uniquement l'option URI.
-Chaque option introduit un nouveau point de distribution qualifié par son nom complet.
-Pour l'instant, les autres champs comme 'CRLissuer' et 'reasons' ne peuvent pas être saisis ou affichés. Aucun exemple utilisant ces champs n'est disponible aujourd'hui.
-Si cette extension apparaît comme <UNSUPPORTED> ou si le contenu ne semble pas affiché correctement, faites-le savoir a Steve (courriel: steve arobase openssl point org).
-Exemples:
-URI:http://www.monsite.com/monca.crl
-URI:http://www.moi.com/moi.crl, URI:http://www.lui.com/moi.crl
- can be altered by the file "aia.txt"peut être altéré par le fichier "aia.txt"
@@ -1409,40 +1342,10 @@ URI:http://www.moi.com/moi.crl, URI:http://www.lui.com/moi.crl
DNS: IP: URI: email: RID:DNS: IP: URI: email: RID:
-
- The authority information access extension gives details about how to access certain information relating to the CA. Its syntax is accessOID;location where 'location' has the same syntax as subject alternative name (except that email:copy is not supported). accessOID can be any valid OID but only certain values are meaningful for example OCSP and caIssuers. OCSP gives the location of an OCSP responder: this is used by Netscape PSM and other software.
-Example:
-OCSP;URI:http://ocsp.my.host/
-caIssuers;URI:http://my.ca/ca.html
- L'extension d'accès à l'information de l'autorité indique comment accéder à certaines informations concernant le certificat d'autorité. La syntaxe est accèsOID;emplacement où 'emplacement` à la même syntaxe que le nom alternatif du sujet (à part 'email:copy" qui n'est pas supporté). N'importe quel OID valide peut être spécifié pour accèsOID, mais seules certaines valeurs ont un sens, par exemple OCSP et caIssuers. OCSP renseigne sur l'emplacement d'un répondeur OCSP; ceci est untilisé par les navigateurs Web et d'autres logiciels.
-Exemple:
-OCSP;URI:http://ocsp.mon.site/
-caIssuers;URI:http://moi.ca/ca.html
-
-
- The subject alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name) , RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
- Cette extension contient le nom alternatif du sujet et permet de regrouper plusieurs valeurs littérales. Celles-ci comprennent "email" (un adresse de courriel), "URI" (un indicateur uniforme de ressource), "DNS" (un nom de domaine), "RID" (un identifiant d'objet enregistré) et "IP" (une adresse IP).
-Exemples:
-email:mon@autre.adresse, IP: 1.1.1.1 , URI:http://mon.url.ici/
-email:mon@autre.adresse, RID:1.2.3.4, DNS: serveur.de.nom.tld
- subject alternative namenom alternatif du sujet
-
- The issuer alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name), RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
- Cette extension contient le nom alternatif du signataire et permet de regrouper plusieurs valeurs littérales. Celles-ci comprennent "email" (un adresse de courriel), "URI" (un indicateur uniforme de ressource), "DNS" (un nom de domaine), "RID" (un identifiant d'objet enregistré) et "IP" (une adresse IP).
-Exemples:
-email:mon@autre.adresse, IP: 1.1.1.1 , URI:http://mon.url.ici/
-email:mon@autre.adresse, RID:1.2.3.4, DNS: serveur.de.nom.tld
- Key usageUtilisation de la clé
@@ -1627,10 +1530,6 @@ bien que vous les avez déclarées comme obligatoires dans le menu des options.<
The certificate will be out of date before it becomes valid. You most probably mixed up both dates.Le certificat serait échu avant de devenir actif. Vous avez probablement interverti les deux dates.
-
- The certificate contains duplicated extensions. Check the validation on the advanced tab.
- Le certificat contient des extensions dupliquées. Valider et vérifier sur l'onglet "Avancé".
- Edit extensionsModifier les extensions
@@ -1649,15 +1548,6 @@ bien que vous les avez déclarées comme obligatoires dans le menu des options.<
Local time
-
- The authority information access extension gives details about how to access certain information relating to the CA. Its syntax is accessOID;location where 'location' has the same syntax as subject alternative name (except that email:copy is not supported). accessOID can be any valid OID but only certain values are meaningful for example OCSP and caIssuers. OCSP gives the location of an OCSP responder: this is used by Netscape PSM and other software.
-
-Example:
-
-OCSP;URI:http://ocsp.my.host/
-caIssuers;URI:http://my.ca/ca.html
-
- The certificate contains invalid or duplicate extensions. Check the validation on the advanced tab.
@@ -1736,14 +1626,6 @@ caIssuers;URI:http://my.ca/ca.html
PwDialog
-
- Password
- Mot de passe
-
-
- The password is parsed as 2-digit hex code. It must have an equal number of digits (0-9 and a-f)
- Le mot de passe doit être exprimé sous forme d'une suite de chiffres hexadécimaux. Il doit contenir un nombre pair de chiffres (0-9 et a-f)
- Take as HEX stringExprimé en hexadécimal
@@ -2918,10 +2800,6 @@ En conséquence, elle n'a pas été chargée
Delete the private key '%1' from the token '%2 (#%3)' ?Détruire la clé privée '%1' sur le jeton '%2 (#%3)' ?
-
- only RSA keys can be stored on tokens
- Seules des clés RSA peuvent être enregistrées sur les jetons
- This Key is already on the tokenCette clé est déjà sur le jeton
@@ -3177,12 +3055,6 @@ En conséquence, elle n'a pas été chargée
La validation a échoué:
'%1'
%2
-
-
- Validation successfull:
-'%1'
- La validation a été effectuée avec succès:
-'%1'Validation successful:
diff --git a/lang/xca_hr.ts b/lang/xca_hr.ts
index a5978277..49a8f0c9 100644
--- a/lang/xca_hr.ts
+++ b/lang/xca_hr.ts
@@ -509,12 +509,12 @@ PEM je base64 kodirana DER datoteka
Name
- Ime
+ ImeThe internal name of the CRL in the database
- Interno ime popisa povučenih potvrda (u bazi podataka)
+ Interno ime popisa povučenih potvrda (u bazi podataka)
@@ -601,20 +601,12 @@ PKCS#8 je službeni format za razmjenu ključeva
Export public %1 key
-
+ Izvezi javni %1 ključExport %1 key
-
-
-
- Public key export
- Izvoz javnog ključa
-
-
- Key export
- Izvoz ključa
+ Izvezi %1 ključ
@@ -955,7 +947,7 @@ Serijski broj: %3
Recent DataBases
-
+ Nedavna baza podataka
@@ -1137,10 +1129,6 @@ Serijski broj: %3
Import anywayIpak uvezi
-
- Cancel
- Odustani
- no such option: %1
@@ -1369,7 +1357,7 @@ Unesite bitove za DH parametre
Remember as default
-
+ Zapamti kao osnovnu vrijednost
@@ -1397,520 +1385,417 @@ Unesite bitove za DH parametre
Zahtjev za izdavanje
-
- A certificate signing request can be signed, even if the private key of the request is not available. This is the intention of a CSR:
-Getting signed by a CA certificate, whoes certificate of course must be in the database
-Of course you need the private key of the CSR if you want to create a self-signed cert from it.
- Zahtjev za izdavanje potvrde može biti potpisan i u situacijama kad privatni ključ koji odgovara zahtjevu nije dostupan. To je i namjena zahtjeva (CSR):
-Biti potpisan od strane CA potvrde, koja naravno mora biti u bazi podataka
-Jasno da trebate imati privatni ključ od zahtjeva (CSR) ako želite od zahtjeva napraviti samopotpisanu potvrdu.
-
-
-
+ Show requestPrikažiPokaži zahtjev
-
+ Sign this Certificate signing &requestovaj - da li treba?Potpiši ovaj &zahtjev za izdavanje potvrde
-
+ Copy extensions from the requestKopiraj proširenja iz zahtjeva
-
+ Modify subject of the requestPromijeni Subjekt iz zahtjeva
-
+ SigningPotpisivanje
-
+ Create a &self signed certificate with the serialStvori ili napravi ili izradi?Izradi &samopotpisanu potvrdu s ovim serijskim brojem
-
+ If you leave this blank the serial 00 will be usedAko ovo ne ispunite koristiti će se serijski broj 00
-
+ 11
-
+ Use &this Certificate for signingKoristi &ovu Potvrdu za potpisivanje
-
+ All certificates in your database that can create valid signaturesSve potvrde u vašoj bazi podataka koje mogu izraditi valjani potpis
-
- This list contains all certificates with the CA-flag set to true and whoes private key is present in the key-database.
-If this list is disabled, you only can create a self-signed certificate.
- Ovaj popis sadrži sve potvrde koje imaju postavljenu CA zastavicu i čiji privatni ključ se nalazi u bazi ključeva.
-Ako je ovaj popis onemogućen, možete izraditi samo samopotpisanu potvrdu.
-
-
-
+ Signature algorithmAlgoritam potpisivanja
-
+ Template for the new certificatePredložak za novu potvrdu
-
+ All available templatesSvi raspoloživi predlošci
-
- This list contains all templates from the toplevel template Tab
- Zaguljen prijevod, provjeriti!!!
- Ovaj popis sadrži sve predloške iz Kartice obrasci s najviše razine menija
-
-
-
+ Apply extensionsPrimijeni proširenja
-
+ Apply subjectPrimijeni subjekt
-
+ Apply allPrimijeni sve
-
+ SubjectSubjekt
-
+ Distinguished nameJedinstveno ime (DN)
-
+ OrganisationOrganizacija
-
+ This name is only used internally and does not appear in the resulting certificateOvo ime se samo interno koristi i neće se pojaviti u izrađenoj potvrdi
-
+ Must be exactly 2 letter of size (DE, UK)Mora biti točno 2 velika slova (HR, UK)
-
+ Country codeKod države
-
+ State or ProvinceU smislu savezna državaDržava ili Pokrajina
-
+ LocalityMjesto
-
+ Organisational unitOrganizacijska jedinica
-
+ E-Mail addressE-mail adresa
-
+ Internal nameInterno ime
-
+ Common name
- Uobičajeno ime (CN)
+ Uobičajeno ime
-
+ AddDodaj
-
+ DeleteBrisanje
-
+ Private keyPrivatni ključ
-
+ This list only contains unused keysOvaj popis sadrži samo neiskorištene ključeve
-
+ Used keys tooKorišteni ključevi također
-
+ &Generate a new key&Generiraj novi ključ
-
+ ExtensionsProširenja
-
+ Basic constraintsOsnovna ograničenja
-
+ TypeVrsta
-
+ If this will become a CA certificate or notDa li će ovo postati CA potvrda ili ne
-
- Set this to TRUE if you want to create a CA certificate that signs other certificates.
-This is always set to FALSE for client or server certificates. In most cases self-signed certificates are CA certificates.
-Self-signed non-CA certificates are unusual although they are possible.
- Da li se TRUE može promijeniti u DA ili TOČNO? !!!
- Postavite ovo na TRUE ako želite izraditi CA potvrdu koja može potpisati druge potvrde.
-Ovo je uvijek postavljeno na FALSE za klijentske i poslužiteljske potvrde. U večini slučajeva samopotpisane potvrde su CA potvrde.
-Samopotpisane potvrde koje nisu CA potvrde nisu uobičajene premda ih je moguće izraditi.
-
-
-
+ Not definedNije definirano
-
+ Certification AuthorityTijelo ovjeravanja (CA)
-
+ End EntityKrajnji subjekt
-
+ Path lengthDužina puta
-
+ How much CAs may be below this.Koliko CA može biti ispod ove CA.
-
- If this is left empty the pathlen is not included in the certificate. Otherwise it distinguishes the count of chained CA certificates below this one.
-A pathlen of 0 means, that this certificate may not issue other sub-CA certificates. Although it can do it, all chain-checking algorithms in e.g. your browser or openssl will (should) fail.
- Ako ovo nije popunjeno dužina puta (pathlen) nije uključena u potvrdu. U suprotnom, određuje broj ulančanih CA potvrda ispod ove CA.
-Dužina puta 0 znači da ova potvrda ne može izdavati podređene CA potvrde. Premda je to moguće, svi algoritmi za provjeru lanca potvrda (npr. u vašem pregledniku ili openssl programu) će (trebali bi) prijaviti grešku.
-
-
-
+ The basic constraints should always be criticalOsnovna ograničenja bi uvijek trebala biti kritična osobina potvrde
-
+ Key identifierOznaka ključa
-
+ Creates a hash of the key following the PKIX guidelinesIzradi sažetak ključa sljedeći PKIX preporuke
-
+ Copy the Subject Key Identifier from the issuerKopiraj Oznaku ključa Subjekta iz izdavača
-
- If this box is checked an attempt is made to copy the subject key identifier from the signing certificate.
-It also copies the issuer and serial number from the issuer certificate. Normally this will only be done if the keyid option fails.
- !!! keyid da li prevoditi i što staviti
- Ako je ova kućica označena pokušat će se kopirati oznaka ključa izdavača iz potvrde potpisnika.
-Također će se kopirati izdavač i serijski broj iz potvrde izdavača. Normalno to će biti napravljeno samo keyid opcija ne uspije.
-
-
-
+ ValidityNepobitnost, pravomoćnost, valjanostIspravnost
-
+ Not beforeOd
-
+ Not afterDo
-
+ Time rangeVremensko razdoblje
-
+ DaysDana
-
+ MonthsMjeseci
-
+ YearsGodina
-
+ ApplyPrimjeni
-
+ Set the time to 00:00:00 and 23:59:59 respectivelyPostavi vrijeme na 00:00:00 odnosno 23:59:59
-
+ MidnightPonoć
-
+ Local timeLokalno vrijeme
-
+ No well-defined expirationNejasno definiran istek roka
-
+ subject alternative nameAlternativno ime subjekta
-
-
-
+
+
+ DNS: IP: URI: email: RID:DNS: IP: URI: email: RID:
-
- The subject alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name) , RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
- !!! literal values prevesti nekako drugačije???
- Proširenje "Alternativno ime subjekta" dozvoljava upotrebu različitih doslovnih vrijednosti. To uključuje "email" (email adresu) , "URI" jedinstvenu oznaku resursa, "DNS" (DNS ime domene) , RID (registrirani ID: OBJECT IDENTIFIER) i IP (IP adresa).
-Primjeri:
-email:moja@druga.adresa, IP: 1.1.1.1 , URI:http://moj.url.ovdje/
-email:moja@druga.adresa, RID:1.2.3.4, DNS: ns.posluzitelj.hr
-
-
-
-
+
+
+
- EditUredi
-
+ issuer alternative namealternativno ime izdavača
-
- The issuer alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name), RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
- Proširenje "Alternativno ime izdavača" dozvoljava upotrebu različitih doslovnih vrijednosti. To uključuje "email" (email adresu) , "URI" jedinstvenu oznaku resursa, "DNS" (DNS ime domene) , RID (registrirani ID: OBJECT IDENTIFIER) i IP (IP adresa).
-Primjeri:
-email:moja@druga.adresa, IP: 1.1.1.1 , URI:http://moj.url.ovdje/
-email:moja@druga.adresa, RID:1.2.3.4, DNS: ns.posluzitelj.hr
-
-
-
+ CRL distribution pointTočka objave popisa opozvanih potvrda
-
+ URI:URI:
-
- This is a multi-valued extension that supports all the literal options of subject alternative name. Of the few software packages that currentlyi nterpret this extension most only interpret the URI option.
-Currently each option will set a new DistributionPoint with the fullName field set to the given value.
-Other fields like cRLissuer and reasons cannot currently be set or displayed: at this time no examples were available that used these fields.
-If you see this extension with <UNSUPPORTED> when you attempt to print it out or it doesn't appear to display correctly then let steve know, including the certificate (mail steve at openssl dot org) .
-Examples:
-URI:http://www.myhost.com/myca.crl
-URI:http://www.my.com/my.crl, URI:http://www.oth.com/my.crl
- Ovo proširenje može sadržavati više vrijednosti i podržava sve doslovne opcije za alternativno ime subjekta. Od par programa koji trenutno tumače ovo proširenje većina samo tumači URI opciju.
-Trenutačno svaka opcija će postaviti novu DistributionPoint s poljem fullName postavljenim na danu vrijednost..
-Druga polja poput cRLissuer i razlozi trenutno ne mogu mogu biti postavljenia ili prikazana: trenutno ne postoje primjeri gdje se koriste navedena polja.
-Ako vidite ovo proširenje s <UNSUPPORTED> kada ga pokušate ispisati ili izgleda da se ne ispisuje ispravno tada to prijavite stivu i pošaljite mu i potvrdu (mail steve at openssl dot org).
-Primjeri:
-URI:http://www.mojastrana.hr/myca.crl
-URI:http://www.mojastrana.hr/my.crl, URI:http://www.mojastrana.hr/my.crl
-
-
-
+ Authority Info AccessDohvat informacija Autoriteta (AIA)
-
+ can be altered by the file "aia.txt"može biti promijenjeno pomoću datoteke "aia.txt"
-
- The authority information access extension gives details about how to access certain information relating to the CA. Its syntax is accessOID;location where 'location' has the same syntax as subject alternative name (except that email:copy is not supported). accessOID can be any valid OID but only certain values are meaningful for example OCSP and caIssuers. OCSP gives the location of an OCSP responder: this is used by Netscape PSM and other software.
-
-Example:
-
-OCSP;URI:http://ocsp.my.host/
-caIssuers;URI:http://my.ca/ca.html
- !!! što s accessOID calssuer ???
- Proširenje Dohvat informacija Autoriteta sadrži detalje o tome kako dohvatiti određene informacije vezane uz CA. Sintaksa tog proširenja je accessOID;lokacija gdje 'lokacija' ima istu sintaksu kao i alternativno ime subjekta (osim što nije podržano email:copy ). accessOID može biti bilo koji važeći OID no samo neke vrijednosti imaju smisla kao na primjer OCSP i caIssuer. OCSP daje lokaciju OSCP poslužitelja: to se koristi od strane Netscape PSM i drugih programa.
-
-Primjer:
-
-OCSP;URI:http://ocsp.mojposluzitelj/
-caIssuers;URI:http://moj.ca/ca.html
-
-
-
-
+
+ Key usageNamjena ključa
-
+ Extended key usageProširena upotreba ključa
-
+ NetscapeNetscape
-
+ CA Revocation URLURL opoziva CA
-
+ Revocation URLURL opoziva
-
+ SSL server nameSSL ime poslužitelja
-
+ Certificate renewal URLURL za obnovu potvrde
-
+ CommentNapomena
-
+ CA policy URLURL politike CA
-
+ Base URLOsnovni URL
-
+ If you know a more pretty one tell me!!! Ovo vrijedi i za hrvatski prijevodAko znate bolje, javite mi
-
+ AdvancedNapredno
-
+ ValidatePotvrditi
@@ -2581,7 +2466,7 @@ U knjižnici %3
yyyy-MM-dd hh:mm
- gggg-MM-dd ss:mm
+ yyyy-MM-dd hh:mm
@@ -2719,7 +2604,7 @@ i zbog toga nije uvezen
EC Group
-
+ EC Grupa
@@ -2799,12 +2684,12 @@ To će obrisati ključ '%1' i zabraniti njegov izvoz
Clipboard
- Clipboard
+ ClipboardFile
- Datoteka
+ Datoteka
@@ -3468,7 +3353,7 @@ i zbog toga nije spreman
Ignoring unsupported private key
-
+ Ignoriram nepodržani privatni ključ
@@ -3512,17 +3397,17 @@ i zbog toga nije spreman
Do you really want to export the private key unencrypted to the clipboard ?
-
+ Da li stvarno želite izvesti u clipboard nekriptirani privatni ključ?Only export the public key
-
+ Izvezi samo javni ključExport the private key unencrypted
-
+ Izvezi nekriptirani privatni ključ
@@ -3661,10 +3546,6 @@ i zbog toga nije spreman
Delete the private key '%1' from the token '%2 (#%3)' ?Obrisati privatni ključ '%1' s tokena '%2 (#%3)' ?
-
- only RSA keys can be stored on tokens
- samo RSA ključevi mogu biti spremljeni na tokenu
- This Key is already on the token
@@ -3673,7 +3554,7 @@ i zbog toga nije spreman
Only RSA and EC keys can be stored on tokens
-
+ Samo RSA i EC ključevi mogu biti spremljeni na tokenu
@@ -3698,7 +3579,7 @@ i zbog toga nije spreman
Illegal Key generation method
-
+ Nedozvoljeni način generiranja Ključa
@@ -3708,7 +3589,7 @@ i zbog toga nije spreman
Ignoring unsupported token key
-
+ Ignoriram nepodržani ključ za token
@@ -3734,7 +3615,7 @@ i zbog toga nije spreman
Failed to initialize the key on the token
-
+ Nije moguće inicijalizirati ključ na tokenu
diff --git a/lang/xca_ru.ts b/lang/xca_ru.ts
index d8a40343..cbac65d3 100644
--- a/lang/xca_ru.ts
+++ b/lang/xca_ru.ts
@@ -537,10 +537,6 @@ PEM is a base64 encoded DER file
ExportKey
-
- Key export
- Экспорт ключа
- Please enter the filename for the key.
@@ -1056,10 +1052,6 @@ Serial: %3
Import anywayИмпортировать в любом случае
-
- Cancel
- Отмена
- I&mport
@@ -1365,14 +1357,7 @@ Please enter the DH parameter bits
Подписанный запрос
-
- A certificate signing request can be signed, even if the private key of the request is not available. This is the intention of a CSR:
-Getting signed by a CA certificate, whoes certificate of course must be in the database
-Of course you need the private key of the CSR if you want to create a self-signed cert from it.
-
-
-
-
+ Show requestПоказать запрос
@@ -1412,13 +1397,7 @@ Of course you need the private key of the CSR if you want to create a self-signe
Все сертификаты в базе данных, которыми можно создать действительные подписи
-
- This list contains all certificates with the CA-flag set to true and whoes private key is present in the key-database.
-If this list is disabled, you only can create a self-signed certificate.
-
-
-
-
+ Signature algorithmАлгоритм подписи
@@ -1433,28 +1412,23 @@ If this list is disabled, you only can create a self-signed certificate.Все имеющиеся шаблоны
-
- This list contains all templates from the toplevel template Tab
-
-
-
-
+ ApplyПрименить
-
+ SubjectВладелец
-
+ Use &this Certificate for signing
-
+ Distinguished name
@@ -1474,7 +1448,7 @@ If this list is disabled, you only can create a self-signed certificate.Внутреннее имя
-
+ AddДобавить
@@ -1524,14 +1498,7 @@ If this list is disabled, you only can create a self-signed certificate.Субъектом сертификата может быть конечный пользователь, система или ЦС
-
- Set this to TRUE if you want to create a CA certificate that signs other certificates.
-This is always set to FALSE for client or server certificates. In most cases self-signed certificates are CA certificates.
-Self-signed non-CA certificates are unusual although they are possible.
-
-
-
-
+ Not definedНе определен
@@ -1556,13 +1523,7 @@ Self-signed non-CA certificates are unusual although they are possible.
Колличество ЦС может быть ниже этого.
-
- If this is left empty the pathlen is not included in the certificate. Otherwise it distinguishes the count of chained CA certificates below this one.
-A pathlen of 0 means, that this certificate may not issue other sub-CA certificates. Although it can do it, all chain-checking algorithms in e.g. your browser or openssl will (should) fail.
-
-
-
-
+ The basic constraints should always be criticalОсновные ограничения всегда должны быть введены
@@ -1583,13 +1544,7 @@ A pathlen of 0 means, that this certificate may not issue other sub-CA certifica
Копировать идентификатор ключа владельца из издателя
-
- If this box is checked an attempt is made to copy the subject key identifier from the signing certificate.
-It also copies the issuer and serial number from the issuer certificate. Normally this will only be done if the keyid option fails.
-
-
-
-
+ ValidityПериод действия
@@ -1639,102 +1594,65 @@ It also copies the issuer and serial number from the issuer certificate. Normall
-
+ Authority Info Accessспособ доступа к информации ЦС
-
+ CRL distribution pointпункт распостраненния САС
-
+ issuer alternative nameалтернативное имя издателя
-
+ URI:URI:
-
- This is a multi-valued extension that supports all the literal options of subject alternative name. Of the few software packages that currentlyi nterpret this extension most only interpret the URI option.
-Currently each option will set a new DistributionPoint with the fullName field set to the given value.
-Other fields like cRLissuer and reasons cannot currently be set or displayed: at this time no examples were available that used these fields.
-If you see this extension with <UNSUPPORTED> when you attempt to print it out or it doesn't appear to display correctly then let steve know, including the certificate (mail steve at openssl dot org) .
-Examples:
-URI:http://www.myhost.com/myca.crl
-URI:http://www.my.com/my.crl, URI:http://www.oth.com/my.crl
-
-
-
-
+ can be altered by the file "aia.txt"может быть изменен в файле "aia.txt"
-
-
-
-
+
+
+
+ EditРедактировать
-
-
-
+
+
+ DNS: IP: URI: email: RID:DNS: IP: URI: email: RID:
-
- The authority information access extension gives details about how to access certain information relating to the CA. Its syntax is accessOID;location where 'location' has the same syntax as subject alternative name (except that email:copy is not supported). accessOID can be any valid OID but only certain values are meaningful for example OCSP and caIssuers. OCSP gives the location of an OCSP responder: this is used by Netscape PSM and other software.
-
-Example:
-
-OCSP;URI:http://ocsp.my.host/
-caIssuers;URI:http://my.ca/ca.html
-
-
-
-
- The subject alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name) , RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
-
-
-
-
+ subject alternative nameальтернативное имя владельца
-
- The issuer alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name), RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
-
-
-
-
+ Key usageОбласть применения ключа
-
+ Extended key usageРасширенная область применения ключа
-
+ NetscapeNetscape
@@ -1845,12 +1763,12 @@ Please set at least the internal name.
-
+ Modify subject of the requestИзменить владельца в запросе
-
+ AdvancedДополнительно
@@ -1872,7 +1790,7 @@ The rollout should be aborted.
Продолжать в любом случае
-
+ No well-defined expirationНет четко определенного срока
@@ -1948,7 +1866,7 @@ though you have declared them as mandatory in the options menu.
Изменить расширения
-
+ OrganisationОрганизация (O)
diff --git a/lang/xca_tr.ts b/lang/xca_tr.ts
index b3d156aa..fc392570 100644
--- a/lang/xca_tr.ts
+++ b/lang/xca_tr.ts
@@ -870,10 +870,6 @@ Serial: %3
Import anyway
-
- Cancel
- İptal
- no such option: %1
@@ -1082,12 +1078,6 @@ Please enter the DH parameter bits
Signing request
-
- A certificate signing request can be signed, even if the private key of the request is not available. This is the intention of a CSR:
-Getting signed by a CA certificate, whoes certificate of course must be in the database
-Of course you need the private key of the CSR if you want to create a self-signed cert from it.
-
- Show request
@@ -1128,11 +1118,6 @@ Of course you need the private key of the CSR if you want to create a self-signe
All certificates in your database that can create valid signatures
-
- This list contains all certificates with the CA-flag set to true and whoes private key is present in the key-database.
-If this list is disabled, you only can create a self-signed certificate.
-
- Signature algorithmİmza algoritması
@@ -1145,10 +1130,6 @@ If this list is disabled, you only can create a self-signed certificate.All available templates
-
- This list contains all templates from the toplevel template Tab
-
- Apply extensions
@@ -1245,12 +1226,6 @@ If this list is disabled, you only can create a self-signed certificate.If this will become a CA certificate or not
-
- Set this to TRUE if you want to create a CA certificate that signs other certificates.
-This is always set to FALSE for client or server certificates. In most cases self-signed certificates are CA certificates.
-Self-signed non-CA certificates are unusual although they are possible.
-
- Not defined
@@ -1271,11 +1246,6 @@ Self-signed non-CA certificates are unusual although they are possible.
How much CAs may be below this.
-
- If this is left empty the pathlen is not included in the certificate. Otherwise it distinguishes the count of chained CA certificates below this one.
-A pathlen of 0 means, that this certificate may not issue other sub-CA certificates. Although it can do it, all chain-checking algorithms in e.g. your browser or openssl will (should) fail.
-
- The basic constraints should always be critical
@@ -1292,11 +1262,6 @@ A pathlen of 0 means, that this certificate may not issue other sub-CA certifica
Copy the Subject Key Identifier from the issuer
-
- If this box is checked an attempt is made to copy the subject key identifier from the signing certificate.
-It also copies the issuer and serial number from the issuer certificate. Normally this will only be done if the keyid option fails.
-
- ValidityGeçerlilik
@@ -1357,16 +1322,6 @@ It also copies the issuer and serial number from the issuer certificate. Normall
URI:
-
- This is a multi-valued extension that supports all the literal options of subject alternative name. Of the few software packages that currentlyi nterpret this extension most only interpret the URI option.
-Currently each option will set a new DistributionPoint with the fullName field set to the given value.
-Other fields like cRLissuer and reasons cannot currently be set or displayed: at this time no examples were available that used these fields.
-If you see this extension with <UNSUPPORTED> when you attempt to print it out or it doesn't appear to display correctly then let steve know, including the certificate (mail steve at openssl dot org) .
-Examples:
-URI:http://www.myhost.com/myca.crl
-URI:http://www.my.com/my.crl, URI:http://www.oth.com/my.crl
-
- can be altered by the file "aia.txt"
@@ -1379,24 +1334,10 @@ URI:http://www.my.com/my.crl, URI:http://www.oth.com/my.crl
DNS: IP: URI: email: RID:
-
- The subject alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name) , RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
-
- subject alternative name
-
- The issuer alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name), RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
-
- Key usage
@@ -1594,15 +1535,6 @@ though you have declared them as mandatory in the options menu.
Local time
-
- The authority information access extension gives details about how to access certain information relating to the CA. Its syntax is accessOID;location where 'location' has the same syntax as subject alternative name (except that email:copy is not supported). accessOID can be any valid OID but only certain values are meaningful for example OCSP and caIssuers. OCSP gives the location of an OCSP responder: this is used by Netscape PSM and other software.
-
-Example:
-
-OCSP;URI:http://ocsp.my.host/
-caIssuers;URI:http://my.ca/ca.html
-
- The certificate contains invalid or duplicate extensions. Check the validation on the advanced tab.
@@ -1681,10 +1613,6 @@ caIssuers;URI:http://my.ca/ca.html
PwDialog
-
- Password
- Parola
- Take as HEX string
diff --git a/ui/NewX509.ui b/ui/NewX509.ui
index 361124c1..1b95f826 100644
--- a/ui/NewX509.ui
+++ b/ui/NewX509.ui
@@ -117,11 +117,6 @@
-
- A certificate signing request can be signed, even if the private key of the request is not available. This is the intention of a CSR:
-Getting signed by a CA certificate, whoes certificate of course must be in the database
-Of course you need the private key of the CSR if you want to create a self-signed cert from it.
-
@@ -251,10 +246,6 @@ Of course you need the private key of the CSR if you want to create a self-signe
All certificates in your database that can create valid signatures
-
- This list contains all certificates with the CA-flag set to true and whoes private key is present in the key-database.
-If this list is disabled, you only can create a self-signed certificate.
-
@@ -328,9 +319,6 @@ If this list is disabled, you only can create a self-signed certificate.
All available templates
-
- This list contains all templates from the toplevel template Tab
-
@@ -565,6 +553,12 @@ If this list is disabled, you only can create a self-signed certificate.
true
+
+ true
+
+
+ 200
+
@@ -685,11 +679,6 @@ If this list is disabled, you only can create a self-signed certificate.
If this will become a CA certificate or not
-
- Set this to TRUE if you want to create a CA certificate that signs other certificates.
-This is always set to FALSE for client or server certificates. In most cases self-signed certificates are CA certificates.
-Self-signed non-CA certificates are unusual although they are possible.
- Not defined
@@ -719,10 +708,6 @@ Self-signed non-CA certificates are unusual although they are possible.
How much CAs may be below this.
-
- If this is left empty the pathlen is not included in the certificate. Otherwise it distinguishes the count of chained CA certificates below this one.
-A pathlen of 0 means, that this certificate may not issue other sub-CA certificates. Although it can do it, all chain-checking algorithms in e.g. your browser or openssl will (should) fail.
-
@@ -768,10 +753,6 @@ A pathlen of 0 means, that this certificate may not issue other sub-CA certifica
Copy the Subject Key Identifier from the issuer
-
- If this box is checked an attempt is made to copy the subject key identifier from the signing certificate.
-It also copies the issuer and serial number from the issuer certificate. Normally this will only be done if the keyid option fails.
- &Authority Key Identifier
@@ -964,12 +945,6 @@ It also copies the issuer and serial number from the issuer certificate. Normall
DNS: IP: URI: email: RID:
-
- The subject alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name) , RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
-
@@ -994,12 +969,6 @@ email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
DNS: IP: URI: email: RID:
-
- The issuer alternative name extension allows various literal values to be used. These include "email" (an email address) , "URI" a uniform resource indicator, "DNS" (a DNS domain name), RID (a registered ID: OBJECT IDENTIFIER) and IP (an IP address).
-Examples:
-email:my@other.address, IP: 1.1.1.1 , URI:http://my.url.here/
-email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
-
@@ -1009,16 +978,6 @@ email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
-
-
-
- CRL distribution point
-
-
- CRL distribution point
-
-
-
@@ -1043,15 +1002,6 @@ email:my@other.address, RID:1.2.3.4, DNS: ns.server.tld
URI:
-
- This is a multi-valued extension that supports all the literal options of subject alternative name. Of the few software packages that currentlyi nterpret this extension most only interpret the URI option.
-Currently each option will set a new DistributionPoint with the fullName field set to the given value.
-Other fields like cRLissuer and reasons cannot currently be set or displayed: at this time no examples were available that used these fields.
-If you see this extension with <UNSUPPORTED> when you attempt to print it out or it doesn't appear to display correctly then let steve know, including the certificate (mail steve at openssl dot org) .
-Examples:
-URI:http://www.myhost.com/myca.crl
-URI:http://www.my.com/my.crl, URI:http://www.oth.com/my.crl
-
@@ -1102,14 +1052,6 @@ URI:http://www.my.com/my.crl, URI:http://www.oth.com/my.crl
DNS: IP: URI: email: RID:
-
- The authority information access extension gives details about how to access certain information relating to the CA. Its syntax is accessOID;location where 'location' has the same syntax as subject alternative name (except that email:copy is not supported). accessOID can be any valid OID but only certain values are meaningful for example OCSP and caIssuers. OCSP gives the location of an OCSP responder: this is used by Netscape PSM and other software.
-
-Example:
-
-OCSP;URI:http://ocsp.my.host/
-caIssuers;URI:http://my.ca/ca.html
-
@@ -1138,6 +1080,16 @@ caIssuers;URI:http://my.ca/ca.html
+
+
+
+ CRL distribution point
+
+
+ CRL distribution point
+
+
+
@@ -1163,9 +1115,12 @@ caIssuers;URI:http://my.ca/ca.html
-
+ Key usage
+
+ Key usage
+ 6
@@ -1240,9 +1195,12 @@ caIssuers;URI:http://my.ca/ca.html
-
+ Extended key usage
+
+ Extended key usage
+ 6