Systems Administrator <[EMAIL PROTECTED]> wrote:
>       Does anyone happen to know whether Courier works with wildcard
> certificates?

As Sam already said, Courier doesn't care what the certificate looks like.

On another note, you really shouldn't use wildcard certificates since they
pose a security risk.  By design, the certificate matches *any* new hosts
within the wildcarded domain, so you'll never be able to delegate
sub-domains, among other peculiarities.  Last but not least, AFAIK the
wildcard scheme is an old proprietary Netscape invention and is not really
standardized, so some clients might not understand it.

My advice would be to use the "SubjectAlternativeName" (AKA
"SubjectAltName") SSLv3 extension instead to list multiple host names (and
IP addresses) specificly.  Google may tell you more.  Most browsers and mail
clients handle this "SubjectAltName" extension correctly, just Opera (up to
and including version 7) won't, although I already e-mailed Opera about this
once.

Julian.



-------------------------------------------------------
This SF.Net email sponsored by: Free pre-built ASP.NET sites including
Data Reports, E-commerce, Portals, and Forums are available now.
Download today and enter to win an XBOX or Visual Studio .NET.
http://aspnet.click-url.com/go/psa00100006ave/direct;at.asp_061203_01/01
_______________________________________________
courier-users mailing list
[EMAIL PROTECTED]
Unsubscribe: https://lists.sourceforge.net/lists/listinfo/courier-users

Reply via email to