Project

General

Profile

Bug #8252

Automatic SAN code for certificates does not work properly with additional SANs when the CN contains a space

Added by Jim Pingle 7 months ago. Updated 5 months ago.

Status:
Resolved
Priority:
Normal
Assignee:
Category:
Certificates
Target version:
Start date:
01/02/2018
Due date:
% Done:

100%

Affected Version:
2.4.x
Affected Architecture:
All

Description

When making a certificate, if there is a space in the CN the automatic code that copies the CN to a SAN fails to make a proper entry (no SAN types can contain a space). The result is a SAN array with a broken entry which generates SSL errors.

See also https://forum.pfsense.org/index.php?topic=142018.0

Associated revisions

Revision e562fca2
Added by Jim Pingle 7 months ago

Change how SANs are generated from the CN, considering that not all CNs will produce a valid SAN. Fixes #8252

Revision 5340fd2f
Added by Jim Pingle 7 months ago

Change how SANs are generated from the CN, considering that not all CNs will produce a valid SAN. Fixes #8252

(cherry picked from commit e562fca2e6b7a2ffbbdfe748f769a8cde9e116dc)

History

#1 Updated by Jim Pingle 7 months ago

  • Status changed from Confirmed to Feedback
  • % Done changed from 0 to 100

#2 Updated by Jim Pingle 5 months ago

  • Status changed from Feedback to Resolved

Works properly now. A cert with a CN containing a space does not get an invalid SAN entry.

Also available in: Atom PDF