[Swan] INVALID_ID_INFORMATION

Tuomo Soini tis at foobar.fi
Mon Feb 4 09:07:59 UTC 2019


On Mon, 4 Feb 2019 09:00:00 +0000
LAURIA Giuseppe <giuseppe.lauria at axa-winterthur.ch> wrote:

> Hi Paul.
> Thank you very much.
> 
> >> As long as the IKE ID you are using is either the RDN or one of
> >> the subjectAltNames, you should be fine.  
> 
> As I understand an RDN is one of the components of a DN ( RDN=
> relative distinguished names  ). And could be different things, so
> which one are you referring ? Did you maybe mean CN ( CommonName )?
> ( eg "CN=<server-fqdn>" ) ?

No. IKE uses ID_DER_ASN1_DN which is subject of the certificate. It is
complete DN.

-- 
Tuomo Soini <tis at foobar.fi>
Foobar Linux services
+358 40 5240030
Foobar Oy <https://foobar.fi/>


More information about the Swan mailing list