Menu

#4963 SSL certificate validation only checks CN, not Subject Alternative Name

1.840
closed-fixed
nobody
None
5
2017-05-28
2017-05-28
No

Since switching all my webmin installs to SSL, I'm getting "Certificate is for domain1.com, not domain2.com".
This is caused by validate_ssl_connection only checking Common Name, and not also Subject Alternative Names. The Subject Alternative Names field should be correctly checked (DNS & IP).

Discussion

  • Jamie Cameron

    Jamie Cameron - 2017-05-28

    Thanks for pointing this out - a fix has been submitted for inclusion in the next Webmin release.

     
  • Jamie Cameron

    Jamie Cameron - 2017-05-28
    • status: open --> closed-fixed
     

Log in to post a comment.