Re: Client Certificate Authentication Using Custom Fields (i.e. other than CN)

2019-09-04 Thread George Hafiz
Hi David, Glad you are open to the idea! My proposal would be an additional authentication setting for certauth (alongside the current map option) which lets you specify which subject field to match on. I'll take a look at what the patch would look like, but this is incredibly tangential to what

Re: Client Certificate Authentication Using Custom Fields (i.e. other than CN)

2019-09-04 Thread David Fetter
On Wed, Sep 04, 2019 at 05:24:15PM +0100, George Hafiz wrote: > Hello, > > It is currently only possible to authenticate clients using certificates > with the CN. > > I would like to propose that the field used to identify the client is > configurable, e.g. being able to specify DN as the appropr

Client Certificate Authentication Using Custom Fields (i.e. other than CN)

2019-09-04 Thread George Hafiz
Hello, It is currently only possible to authenticate clients using certificates with the CN. I would like to propose that the field used to identify the client is configurable, e.g. being able to specify DN as the appropriate field. The reason being is that in some organisations, where you might