-
Notifications
You must be signed in to change notification settings - Fork 1.2k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Any magic about the 64 bytes common-name length limit #1095
Comments
I've tried to change the
then change the
|
Also, try changing
|
have you tried? I can't make it work |
The max appears to be 64. |
your CloudConnexa of OpenVPN allows a common name to longer than 64 bytes |
The EasyRSA |
Taking ASCII characters
More than enough. |
If you use OpenVPN web auth, you will find out that every device has a device ID in the form of UUID, which is 36 bytes long to distinguish every device with different devices with different common name, usually an enterprise email address is prefixed as a part of a common name, Just like what CloudConnexa of OpenVPN does.
tata, exceed 64bytes~ |
CloudConnexa obviously have their own solution. |
Since I have read about the
RFC3280: https://www.ietf.org/rfc/rfc3280.html#:~:text=ub-common-name-length%20integer%20%3A%3A%3D
RFC5280: https://www.ietf.org/rfc/rfc5280.html#:~:text=ub-common-name-length%20integer%20%3A%3A%3D
and related notaryproject/notary#914
And if I issue a certificate with a common name longer than 64 bytes, easy-rsa will fail with an error
but your
CloudConnexa
of OpenVPN allows a common name to exceed 64 bytesIs there any magic in easy-rsa ?
The text was updated successfully, but these errors were encountered: