Uploaded image for project: 'Apache NiFi'
  1. Apache NiFi
  2. NIFI-3265

tls-toolkit client can fail when tls-toolkit server has multiple cn attributes

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Open
    • Minor
    • Resolution: Unresolved
    • 1.1.1, 1.0.1
    • None
    • None

    Description

      Ldap hierarchies can have multiple cn attributes.

      tls-toolkit in client mode validates the first CN attribute parsed from the distinguished name against the hostname name of the tls-toolkit server to help avoid man-in-the-middle attacks.

      This check can fail when multiple CN attributes are present.

      Attachments

        Activity

          People

            Unassigned Unassigned
            bryanrosander@gmail.com Bryan Rosander
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated: