sks-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Sks-devel] sks-keyservers.net New HKPS subpool added


From: Kristian Fiskerstrand
Subject: Re: [Sks-devel] sks-keyservers.net New HKPS subpool added
Date: Mon, 08 Oct 2012 23:09:42 +0200
User-agent: Mozilla/5.0 (X11; Linux x86_64; rv:15.0) Gecko/20120912 Thunderbird/15.0.1

On 10/08/2012 11:07 PM, Kristian Fiskerstrand wrote:
> On 10/08/2012 11:05 PM, Stephan Seitz wrote:
>>
> 
> ..
> 
>> Hi guys,
> 
> Hi Stephan,
> 
> 

...

> 
>> I already use namebased vhosts (thank's for your explanation of TLS,
>> phil), so I could configure two proxies which are identical despite the
>> hostname and the certificates. That way, I would use two different
>> keys / crts without the need for subjectAltName.
>>
> 
> Again, yup
> 

Agreed too quickly there, you'll still need to generate a new CSR from
your private key that I can sign, where I'll add a subjectAltName, but
in that setup only the subjectAltName will ever be used, as the primary
host will be handled by your setup and different cert.

-- 
----------------------------
Kristian Fiskerstrand
http://www.sumptuouscapital.com
Twitter: @krifisk
----------------------------
"Great things are not accomplished by those who yield to trends and fads
and popular opinion."
(Jack Kerouac)
----------------------------
This email was digitally signed using the OpenPGP
standard. If you want to read more about this
The book: Sending Emails - The Safe Way: An
introduction to OpenPGP security is
available in both Amazon Kindle and Paperback
format at
http://www.amazon.com/dp/B006RSG1S4/
----------------------------
Public PGP key 0xE3EDFAE3 at http://www.sumptuouscapital.com/pgp/

Attachment: signature.asc
Description: OpenPGP digital signature


reply via email to

[Prev in Thread] Current Thread [Next in Thread]