Problem with signing with certificate without emailProtection EKU
we're having trouble to sign document in Adobe Acrobat Reader (v. 2023 .006.20320) using a publicly trusted certificate with a key combination:
keyUsage=digitalSignature,keyEncipherment
extendKeyUsage = clientAuth
We see this certificate in Windows Digital IDs in Adobe Digital ID and Trusted Cerificate settings, but when we try to digitally sign the document, this certificate is not there in the "Sign with Digital ID" window to select the digital ID to use on signature.
If we use the same publicly trusted issuer and key combination:
keyUsage=digitalSignature, keyEncipherment
extendKeyUsage = clientAuth, emailProtection
everything works fine.
What is the reason for this behavior for Acrobat Reader which is not an email client application?
