Skip to Content.
Sympa Menu

mace-opensaml-users - Re: [OpenSAML] getting and setting x509 credential

Subject: OpenSAML user discussion

List archive

Re: [OpenSAML] getting and setting x509 credential


Chronological Thread 
  • From: Jim Fox <>
  • To: "" <>
  • Subject: Re: [OpenSAML] getting and setting x509 credential
  • Date: Tue, 30 Mar 2010 12:20:30 -0700 (PDT)


I was thinking of TLS connections, where it's recommended (rfc2818). Most of my use of certificates is to identify peers by dns name, so the same thinking applies. In this case, though, that's not necessarily the use, so, strictly speaking, never mind.

Jim

> According to what?

On 3/30/10 2:35 PM, Jim Fox wrote:
Striclty speaking, if a certificate specifies a dns subjectAltName
you're supposed to use that, instead of what's in the DN.



Archive powered by MHonArc 2.6.16.

Top of Page