> -----Original Message-----
> From: [EMAIL PROTECTED] 
> [mailto:[EMAIL PROTECTED] On Behalf Of Martin Schütte
> Sent: Wednesday, August 27, 2008 10:04 PM
> To: [email protected]
> Subject: Re: [Syslog] Need your input on final issueson 
> draft-ietf-syslog-transport-tls
> 
> Chris Lonvick schrieb:
> > have comments, please send them in.  If you read these and 
> agree with 
> > the changes, please comment to the WG list as well so we know that 
> > we're getting an adequate review.
> 
> Looks good to me. Only one question:
> 
> > === 1 ===
> >     The '*' (ASCII 42) wildcard character is allowed in 
> subjectAltName
> >     values of type dNSName (and in Common Name, if used), 
> and then only
> >     as the left-most (least significant) DNS label in that value.  
> > This
> 
> Is this a MAY or a MUST?
> 
[Joe] I think it is a MUST or RECOMMENDED.  Other applications allow wildcards 
to appear in certificates so it might be surprising for deployers if it is not 
supported in Syslog TLS. 

> 
> --
> Martin
> _______________________________________________
> Syslog mailing list
> [email protected]
> https://www.ietf.org/mailman/listinfo/syslog
> 
_______________________________________________
Syslog mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/syslog

Reply via email to