Uploaded image for project: 'Apache NiFi'
  1. Apache NiFi
  2. NIFI-3265

tls-toolkit client can fail when tls-toolkit server has multiple cn attributes

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Minor
    • Resolution: Won't Do
    • 1.1.1, 1.0.1
    • None
    • None

    Description

      Ldap hierarchies can have multiple cn attributes.

      tls-toolkit in client mode validates the first CN attribute parsed from the distinguished name against the hostname name of the tls-toolkit server to help avoid man-in-the-middle attacks.

      This check can fail when multiple CN attributes are present.

      Attachments

        Issue Links

          Activity

            People

              Unassigned Unassigned
              bryanrosander@gmail.com Bryan Rosander
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: