Re: Need server certificates that include multiple commonName/subjectAltName fields for testing
Heikki Toivonen <[email protected]>
| Newsgroups | gmane.comp.python.cryptography |
|---|---|
| Message-ID | <[email protected]> |
Michael Ströder wrote: > Heikki Toivonen wrote: >> Need server certificates that include multiple commonName/subjectAltName >> fields for testing. > > Do you really need multiple CN attrs in the subject DN of a server cert? > Never saw this out in the wild. Which does not mean that it's > impossible... ;-) Exactly. If someone knows of such real world usage I want to see it and test against it. > Why don't you create some yourself with OpenSSL? I could, but there are no guarantees they would be exactly like real certs in the wild. I'd rather confirm with real certs that are in use, or part of known-to-be-good test certificates. > I vaguely remember that someone (Peter Gutmann?) provided a collection > of really weird certs which I used when implementing mspki (certificate > parsing in web2ldap). Thanks for the tip, I'll try searching for those. -- Heikki Toivonen
signature.asc
(application/pgp-signature, 251 B)
-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2.1 (Cygwin) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iD4DBQFEIvh8b8x8KoP+JuwRAiSiAJUSFVlB4m8vyd2crQ8N9YhbgVvEAKCLTxGJ Cen+qHtu8NbadArGZpd+Ow== =OPNW -----END PGP SIGNATURE-----