Quantcast
Channel: Security forum
Viewing all articles
Browse latest Browse all 12072

A question about CommonName (Subject)

$
0
0

Hello

Can someone please help me with the following question

I understand the 'original' idea behind DN (e.g. CN=,OU,O=,C=) was the idea of have a central world word directory centrally controlled for all countries to use (a bit like a global AD). However due to security and political concerns it never took off. I therefore believe the full DN is an obsolete concept?

If the above is correct (correct if wrong please), then is it true to say the only part of the name that matters in the DN is the CN e.g. CN=www.MyWebSite.com,ou=IT,o=MyCorp,c=UK

So what I am saying is the 'Subject' is the important entity as that it is the Subject and who is bound the Public key is the CA is satisfied and creates the cert.

Therefore is the Subject the whole DN or just the CN part?

For example if I first issue a cert to a WEB server like so CN=www.MySite.com,OU=IT,O=BigCorp,C=UK than one year latter related the cert with one whose DN was CN=www.MySite.com,OU=IT,O=SmallCorp,C=UK whereby the A record forwww.MySite.Com pointed to the Same WEB Server I bel#Regardsieve this would work the same in both instances as its just matching the CN and not the DN is that correct?   Thanks AAnotherUser__


AAnotherUser__


Viewing all articles
Browse latest Browse all 12072

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>