sks-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Sks-devel] HKPS certificate


From: Kiss Gabor (Bitman)
Subject: Re: [Sks-devel] HKPS certificate
Date: Tue, 19 May 2015 09:31:14 +0200 (CEST)
User-agent: Alpine 2.02 (DEB 1266 2009-07-14)

> > [alt_names] DNS.1 = hkps.pool.sks-keyservers.net DNS.2 =
> > *.pool.sks-keyservers.net DNS.3 = pool.sks-keyservers.net DNS.4 =
> > keys.niif.hu
> 
> This part is unnecessary, the SANs are added by me the input is
> discarded when generating the certificate. So you can simplify this to

Anyway the result is this:

$ openssl x509 -in hkps.pool.sks-keyservers.net.crt -noout -text
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 94 (0x5e)
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=NO, ST=Oslo, O=sks-keyservers.net CA, CN=sks-keyservers.net CA
        Validity
            Not Before: May 16 11:26:58 2015 GMT
            Not After : May 15 11:26:58 2016 GMT
        Subject: C=HU, O=NIIF Institute, CN=keys.niif.hu
[...]
            X509v3 Subject Alternative Name: 
                DNS:hkps.pool.sks-keyservers.net, 
DNS:*.pool.sks-keyservers.net, DNS:pool.sks-keyservers.net, DNS:keys.niif.hu
[...]

Gabor



reply via email to

[Prev in Thread] Current Thread [Next in Thread]