Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ykman does not support SAN in csr requests at the moment, only Subject Name #501

Open
Losyankov opened this issue Apr 26, 2022 · 0 comments

Comments

@Losyankov
Copy link

  • YubiKey Manager (ykman) version: 1.2.4
  • How was it installed?: Windows GUI
  • Operating system and version: Windows Server 2016
  • YubiKey model and version: any
  • Bug description summary:

Support request 374909 was created and Chris Halos confirmed that currently it's not possible in ykman include SAN in the csr request.

Kindly ask you to create Feature Request to fix this.

According RFC 2818 the fallback to the commonName was deprecated and SAN currently is a de-facto standard in CBA authN.

Scenarios of remote signing, when user generate CSR and then admin sign it on a CA, in fact is useless at the moment using ykman.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

No branches or pull requests

1 participant