Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > comp.protocols.dns.bind > #16031

Re: CNAME restrictions

Path csiph.com!newsfeed.xs4all.nl!newsfeed7.news.xs4all.nl!82.197.223.106.MISMATCH!feeder1.cambriumusenet.nl!feed.tweak.nl!news.uzoreto.com!news.etla.org!nntp-feed.chiark.greenend.org.uk!ewrotcd!usenet-its.stanford.edu!usenet.stanford.edu!not-for-mail
From Matus UHLAR - fantomas <uhlar@fantomas.sk>
Newsgroups comp.protocols.dns.bind
Subject Re: CNAME restrictions
Date Tue, 4 Aug 2020 19:34:48 +0200
Lines 16
Approved bind-users@lists.isc.org
Message-ID <mailman.780.1596562455.942.bind-users@lists.isc.org> (permalink)
References <YQXPR01MB38780C7AAD14F0009B63741CCD4A0@YQXPR01MB3878.CANPRD01.PROD.OUTLOOK.COM> <YQXPR01MB3878DEDA813E42EE01166478CD4A0@YQXPR01MB3878.CANPRD01.PROD.OUTLOOK.COM> <20200804173448.GA10336@fantomas.sk>
NNTP-Posting-Host lists.isc.org
Mime-Version 1.0
Content-Type text/plain; charset=us-ascii; format=flowed
X-Trace usenet.stanford.edu 1596562498 24608 149.20.1.60 (4 Aug 2020 17:34:58 GMT)
X-Complaints-To action@cs.stanford.edu
To bind-users@lists.isc.org
Return-Path <uhlar@fantomas.sk>
X-Original-To bind-users@lists.isc.org
Delivered-To bind-users@lists.isc.org
X-Authentication-Warning fantomas.fantomas.sk: uhlar set sender to uhlar@fantomas.sk using -f
Mail-Followup-To bind-users@lists.isc.org
Content-Disposition inline
In-Reply-To <YQXPR01MB3878DEDA813E42EE01166478CD4A0@YQXPR01MB3878.CANPRD01.PROD.OUTLOOK.COM>
User-Agent Mutt/1.10.1 (2018-07-13)
X-Spam-Status No, score=-0.0 required=5.0 tests=SPF_HELO_PASS,SPF_PASS autolearn=disabled version=3.4.2
X-Spam-Checker-Version SpamAssassin 3.4.2 (2018-09-13) on mx.pao1.isc.org
X-BeenThere bind-users@lists.isc.org
X-Mailman-Version 2.1.29
Precedence list
List-Id BIND Users Mailing List <bind-users.lists.isc.org>
List-Unsubscribe <https://lists.isc.org/mailman/options/bind-users>, <mailto:bind-users-request@lists.isc.org?subject=unsubscribe>
List-Archive <https://lists.isc.org/pipermail/bind-users/>
List-Post <mailto:bind-users@lists.isc.org>
List-Help <mailto:bind-users-request@lists.isc.org?subject=help>
List-Subscribe <https://lists.isc.org/mailman/listinfo/bind-users>, <mailto:bind-users-request@lists.isc.org?subject=subscribe>
X-Mailman-Original-Message-ID <20200804173448.GA10336@fantomas.sk>
X-Mailman-Original-References <YQXPR01MB38780C7AAD14F0009B63741CCD4A0@YQXPR01MB3878.CANPRD01.PROD.OUTLOOK.COM> <YQXPR01MB3878DEDA813E42EE01166478CD4A0@YQXPR01MB3878.CANPRD01.PROD.OUTLOOK.COM>
Xref csiph.com comp.protocols.dns.bind:16031

Show key headers only | View raw


On 04.08.20 17:29, Leroy Tennison wrote:
>I have a situation where, due to the system's location (IP subnet), its DNS
> name is <webserver>.<internal subdomain>.datavoiceint.com.  We have a
> certificate for *.datavoiceint.com which we prefer to use

wildcard in certificates only covers one level of subdomains, so
*.datavoiceint.com will cover <internal subdomain>.datavoiceint.com but not
anything under it.

you will have to strip the  <webserver> part or get other certificate.

-- 
Matus UHLAR - fantomas, uhlar@fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
Microsoft dick is soft to do no harm

Back to comp.protocols.dns.bind | Previous | Next | Find similar


Thread

Re: CNAME restrictions Matus UHLAR - fantomas <uhlar@fantomas.sk> - 2020-08-04 19:34 +0200

csiph-web