Drop `CN-ID` (`Common Name`) validation per `RFC 9525` Service Identity in TLS · Issue #254 · kvspb/nginx-auth-ldap · GitHub
More Web Proxy on the site http://driver.im/
You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The server identity can only be expressed in the subjectAltNames extension; it is no longer valid to use the commonName RDN, known as CN-ID in [VERIFY].
Honoring this RFC will fix the poor error message in:
"does not match address (neither server's domain nor IP in certificate's CN or SAN)");
The text was updated successfully, but these errors were encountered:
jsoref
changed the title
Drop CN-ID (Common Name) validation per RFC 9525 **Service Identity in TLS**
Drop CN-ID (Common Name) validation per RFC 9525 Service Identity in TLS
Dec 28, 2023
Appendix A. Changes from RFC 6125
Honoring this RFC will fix the poor error message in:
nginx-auth-ldap/ngx_http_auth_ldap_module.c
Line 1356 in 83c059b
The text was updated successfully, but these errors were encountered: