[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: AC509 Login Name



Hi everyybody.

<>の記事において
stephen.farrell@baltimore.ieさんは書きました。

>> I am working on the use of attribute certificates for secure access to a
>> database, where the user's global identity authenticated using SSL/TLS needs
>> to be securely mapped to a local login name.

We going to implement ac's CA. And discus about same problem.

>Bit naughty, but what about using rfc822Name? It does map reasonably 
>well in lots of cases so long as IA5String isn't a problem.

It's same result of our implement. Because We need items that are
hostname and user name.
It is simplest choice for us.

---
Fingerprint16 = 4F CC 44 F8 54 BE 45 3A  4F 9F 1C 4E 5E 3B 91 E9
Fingerprint20 = 12CA 6B2D DC50 8248 A636  992B 0292 F548 D65F 4D5B
-----------------+-----------------------------------増田 健作---+
三・六を守ろう! | greg@greg.rim.or.jp                            |
 お家へ帰ろう! |   greg@fxis.fujixerox.co.jp                    |
                 |     http://www.st.rim.or.jp/~greg/             |
-----------------+------------------------------------------------+