On Wed, Nov 30, 2005 at 06:40:38PM +0100, Peter Sylvester wrote: > The code below gives the FIRST Common Name RDN, not the last one in the > hierarchy to be tested as a servername in tls.
Yes, that is its purpose, verifying DNS names in server certificates. There is more code (not shown) that first looks at SubjectAltName:DNS... -- Viktor. ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]