Re: Certificate Validation and Subject Analysis

Hugo Koji Kobayashi <[email protected]>
Newsgroups gmane.ietf.provreg
Message-ID <[email protected]>
Scott,

Our (.br Registry) server implementation uses the Subject's Common
Name to carry an unique client identifier that is used to authenticate
clients in a multiple match authentication (EPP <clID> and <pw>, IP
address, and certificate).

Hugo

On Tue, Dec 05, 2006 at 08:13:29AM -0500, Hollenbeck, Scott wrote:
> I received a question from an IESG member about EPP implementations and
> X.509 digital certificate validation.  What are implementers doing with
> the certificate subject name information when validating the
> certification path of a client or server?  Is the name being examined
> and/or used for authentication or access control purposes?
> 
> -Scott-
>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.