Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Self signed cert does not contain subject alternative name #293

Open
zen opened this issue Apr 20, 2021 · 1 comment · May be fixed by #300
Open

Self signed cert does not contain subject alternative name #293

zen opened this issue Apr 20, 2021 · 1 comment · May be fixed by #300
Labels

Comments

@zen
Copy link

zen commented Apr 20, 2021

Hi,

For quite a some time Chrome browser does not accept to connect to sites with cert without subject alternative name extension.:
https://eengstrom.github.io/musings/self-signed-tls-certs-v.-chrome-on-macos-catalina

@winem
Copy link
Contributor

winem commented Jul 11, 2021

Hi, can you please provide more info about your setup? I just tried this and it looks like OpenSSL 1.1.1 which is the current latest on Ubuntu 18 and 20 creates the SAN automatically. It's set to the CN unless specified otherwise.

I'll also test it on CentOS / RHEL later but it would be helpful to know the OS and openssl version you're using in the environment where you miss the SAN.

Thanks!

This was an issue with the Mozilla Certificate Viewer. Using the openssl utility to inspect the certificates has confirmed the issue. I'll provide a PR to address this.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging a pull request may close this issue.

3 participants