[cabfpub] Require commonName in Root and Intermediate Certificates ballot draft

Gervase Markham gerv at mozilla.org
Tue Mar 28 06:56:28 MST 2017


On 28/03/17 15:39, Peter Bowen wrote:
> What is the rationale of requiring a unique commonName attribute per
> issuer rather than a unique Name per issuer?  Amazon purposefully
> chose to use the same commonName (but different Names) for issuers
> that follow the same policy and only vary by cryptographic parameters
> (e.g. public key algorithm, key size and signature hash algorithm).

If everyone else is fine with this, I am. (By Name, do you mean DN?)

Gerv



More information about the Public mailing list