Re: [Uta] Some draft-ietf-uta-use-san nits

2021-04-21 Thread Salz, Rich
Victor suggests replacing section 3.3 as follows: OLD: When constructing a list of reference identifiers, the client MUST NOT include any CN-ID present in the certificate. ... NEW: When constructing a list of presented DNS identifiers, the client MU

[Uta] Some draft-ietf-uta-use-san nits

2021-04-21 Thread Viktor Dukhovni
On Wed, Apr 21, 2021 at 01:06:21PM -0400, Viktor Dukhovni wrote: > On Wed, Apr 21, 2021 at 06:50:56PM +0200, Eliot Lear wrote: > > > If this is scoped to dnsNames then I’m fine with it going forward as > > is. Other names would be problematic. > > It was my expectation/understanding all along t