Re: Certificate Validation and Subject Analysis
Hugo Koji Kobayashi <[email protected]>
| Newsgroups | gmane.ietf.provreg |
|---|---|
| Message-ID | <[email protected]> |
Scott, Our (.br Registry) server implementation uses the Subject's Common Name to carry an unique client identifier that is used to authenticate clients in a multiple match authentication (EPP <clID> and <pw>, IP address, and certificate). Hugo On Tue, Dec 05, 2006 at 08:13:29AM -0500, Hollenbeck, Scott wrote: > I received a question from an IESG member about EPP implementations and > X.509 digital certificate validation. What are implementers doing with > the certificate subject name information when validating the > certification path of a client or server? Is the name being examined > and/or used for authentication or access control purposes? > > -Scott- >