RE: Inbound TLS Certificate SAN Verification

2017-06-15 Thread Osama Al-Hassani
: Re: Inbound TLS Certificate SAN Verification On Wed, Jun 14, 2017 at 08:47:31PM +, Osama Al-Hassani wrote: > When verifying client certificates we are only able to receive CN > data, and cannot get a hold of the SANs. The request data sent to the > policy server does not contai

Re: Inbound TLS Certificate SAN Verification

2017-06-14 Thread Viktor Dukhovni
On Wed, Jun 14, 2017 at 08:47:31PM +, Osama Al-Hassani wrote: > When verifying client certificates we are only able to receive CN data, > and cannot get a hold of the SANs. The request data sent to the policy > server does not contain any SAN attributes. That's correct. The subject alternat