Skip to Content.
Sympa Menu

cacert-policy - Re: [CAcert-Policy] No Identity info in SSL server cert?

Subject: Policy-Discussion

List archive

Re: [CAcert-Policy] No Identity info in SSL server cert?


Chronological Thread 
  • From: Jac Kersing <j.kersing AT the-box.com>
  • To: Policy-Discussion <cacert-policy AT lists.cacert.org>
  • Subject: Re: [CAcert-Policy] No Identity info in SSL server cert?
  • Date: Mon, 14 May 2007 23:55:57 +0200 (CEST)
  • List-archive: <http://lists.cacert.org/cgi-bin/mailman/private/cacert-policy>
  • List-id: Policy-Discussion <cacert-policy.lists.cacert.org>

On Mon, 14 May 2007, Philipp [iso-8859-1] Gühring wrote:

Binding a server certificate to an individual isn´t a good idea, since the
mapping isn´t very useful in practice.

Philipp,

I'm confused. According to your statement (above) binding server certificates to an individual is not a good idea. Yet all organizational certificates issues by CAcert seem to do this:
...
Subject: C=NL, L=Groningen, O=The-Box Development, CN=<someserver>.the-box.com/emailAddress=j.kersing AT the-box.com
...

As you might be able to imagine I would much rather use a generic e-mail address in the certificates, not my personal address. However, I have not found a way to change this. My mistake or is it not possible?

Best regards,

Jac

---
 Jac Kersing            Technical Consultant   The-Box Development
 
j.kersing AT the-box.com
     CISSP   RHCE        http://www.the-box.com


Archive powered by MHonArc 2.6.16.

Top of Page