With the wildcard CERT which is signed by my own CA cert I get no warning from netscape or IE. My frustration was that IE was properly reading the subjectAltName DNS tags but netscape was not... If you know of a way to get netscape NOT to complain when accessing a server with SEVERAL hostnames.. and without doing in in wildcard, please let me know.
--- Peter Sylvester <[EMAIL PROTECTED]> wrote: > > You haven't *wasted* your time. > > Anyway, IMHO You are not right in accusing netscape > (at least not for that part). > THEY have created the rule 'if DN=hostname ==> no > warning'. > There is not rule in any PKIX text or X509 > that tell how to fill subjectaltnames or DNs. > > And what does IE tell You about these certificates > with > wild cards? > > Have fun. __________________________________________________ Do You Yahoo!? Send FREE video emails in Yahoo! Mail! http://promo.yahoo.com/videomail/ ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]