With the wildcard CERT which is signed by my own CA
cert I get no warning from netscape or IE.    My
frustration was that IE was properly reading the
subjectAltName DNS tags but netscape was not... If you
know of a way to get netscape NOT to complain when
accessing a server with SEVERAL hostnames.. and
without doing in in wildcard, please let me know.

--- Peter Sylvester <[EMAIL PROTECTED]>
wrote:
> 
> You haven't *wasted* your time. 
> 
> Anyway, IMHO You are not right in accusing netscape
> (at least not for that part).
> THEY have created the rule 'if DN=hostname ==> no
> warning'. 
> There is not rule in any PKIX text or X509
> that tell how to fill subjectaltnames or DNs.
> 
> And what does IE tell You about these certificates
> with
> wild cards?
> 
> Have fun.


__________________________________________________
Do You Yahoo!?
Send FREE video emails in Yahoo! Mail!
http://promo.yahoo.com/videomail/
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to