[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: subjectAltName = DNS:*





--On Monday, January 12, 2004 1:10 AM -0800 ms419@freezone.co.uk wrote:

I've created a server certificate with the x509 extension "subjectAltName
= DNS:*", but LDAP clients complain that "hostname does not match CN in
peer certificate". I thought that "*" would match all hostnames ... What
gives?

*.domain

So *.freezone.co.uk I think would be correct for your case.

--Quanah

--
Quanah Gibson-Mount
Principal Software Developer
ITSS/TSS/Computing Systems
ITSS/TSS/Infrastructure Operations
Stanford University
GnuPG Public Key: http://www.stanford.edu/~quanah/pgp.html