[openssl-users] Subject CN and SANs

Felipe Gasper felipe at felipegasper.com
Sat Dec 22 21:45:15 UTC 2018


It shouldn’t matter. Technically subject.CN is deprecated anyway, but all the CAs still create it.

-FG


> On Dec 22, 2018, at 4:29 PM, Walter H. <Walter.H at mathemainzel.info> wrote:
> 
> Hello,
> 
> I found several different certificates on the net
> 
> some are like this:
> 
> CN=example.com
> SANs are    DNS:example.com, DNS:www.example.com
> 
> and some are like this:
> 
> CN=www.example.com
> SANs are    DNS:example.com, DNS:www.example.com
> 
> does this matter or is one them the preferred one?
> 
> Thanks,
> Walter
> 
> 
> -- 
> openssl-users mailing list
> To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-users



More information about the openssl-users mailing list