Victor suggests replacing section 3.3 as follows:
OLD:
When constructing a list of reference identifiers, the client MUST
NOT include any CN-ID present in the certificate. ...
NEW:
When constructing a list of presented DNS identifiers, the client
MU
On Wed, Apr 21, 2021 at 01:06:21PM -0400, Viktor Dukhovni wrote:
> On Wed, Apr 21, 2021 at 06:50:56PM +0200, Eliot Lear wrote:
>
> > If this is scoped to dnsNames then I’m fine with it going forward as
> > is. Other names would be problematic.
>
> It was my expectation/understanding all along t