8 messages in net.sourceforge.lists.courier-usersRe: [courier-users] courier certificates
FromSent OnAttachments
Philip B. HowellsAug 21, 2005 10:08 am 
Jay LeeAug 21, 2005 10:38 am 
Philip B. HowellsAug 21, 2005 10:50 pm 
Gordon MessmerAug 22, 2005 1:19 am 
Philip B. HowellsAug 22, 2005 10:40 am 
Jeff JansenAug 22, 2005 11:48 am 
Gordon MessmerAug 22, 2005 2:15 pm 
Philip B. HowellsAug 22, 2005 11:48 pm 
Actions with this message:
Paste this link in email or IM:
Paste this link in email or IM:
Atom feed for this thread
Paste this URL into your reader:
Subject:Re: [courier-users] courier certificatesActions...
From:Jeff Jansen (ivb_@sil.org)
Date:Aug 22, 2005 11:48:41 am
List:net.sourceforge.lists.courier-users

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1

Philip B. Howells wrote:

So, is it possible to have different certificates for each virtual domain?

AFAIK that's only possible if each domain has a separate ip address. However, one cert can have multiple valid names. Check out the "subjectAltName" in the openssl docs. It allows one cert to have multiple distinguished names. Very handy. You'd have to test your client software as well, however, to make sure that it correctly accepts the subjectAltName field and doesn't just read the common name and ignore the rest.

iD8DBQFDCPItZxtYeNk78A8RAkepAJwLYxNAlSaEjKr81mkvNvZrMYH91gCg07k5 W/RdL2tI29VO4YdDE/PIL7g= =/3U7 -----END PGP SIGNATURE-----