#17: Add advice on CNs

Changes (by [email protected]):

 * status:  closed => reopened
 * resolution:  fixed =>


Comment:

 It's problematic to require the Subject CN, if present, to match the first
 SAN dNSName.  See this thread for discussion:
 https://mailarchive.ietf.org/arch/msg/trans/q3mT1tSeKJkh2TDftElF8WBlLp8

 Let's adopt Peter Bowen's suggestion to "...append one more element to
 the sequence for CN redaction level.  I think it should go at the end,
 rather than the beginning, as it should be more likely to not have a
 common name than not having a SAN."

-- 
-----------------------------+---------------------------------------
 Reporter:  [email protected]  |       Owner:  [email protected]
     Type:  defect           |      Status:  reopened
 Priority:  major            |   Milestone:
Component:  rfc6962-bis      |     Version:
 Severity:  -                |  Resolution:
 Keywords:                   |
-----------------------------+---------------------------------------

Ticket URL: <https://trac.tools.ietf.org/wg/trans/trac/ticket/17#comment:9>
trans <https://tools.ietf.org/trans/>

_______________________________________________
Trans mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/trans

Reply via email to