[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Matching ID with cetificate's subjectName and subjectAltName



Hi,

The "PKIX profile for IKE" draft mentioned that the ID used in IKE
negotiation, must match with the subjectName or SubjectAltName within the
peer certificate.

Can someone please help me to understand the risk involved with not doing
this match during  MAIN/AGGR modes?
	
Mohamed Eissa
Intel of Canada