Uploaded image for project: 'JDK'
  1. JDK
  2. JDK-4328195

Need to include the alternate subject DN for certs, https should check for this

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Fixed
    • Icon: P3 P3
    • 1.4.0
    • 1.0
    • security-libs
    • None
    • beta2
    • generic
    • generic

      During JSSE brainstorming, Jeff pointed out that the alternative subject name
      field is not in certs, and that the https handler should check for this
      field. This will probably take some doing in the java 2 JDK as well.

      We need to grab the cert, see if it's a v3, and has alternative
      names, and then check for it. There's another bug, 4387961 which will
      provide a more flexible hostname verification.

            ywangsunw Yingxian Wang (Inactive)
            wetmore Bradford Wetmore
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved:
              Imported:
              Indexed: