Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > comp.protocols.dns.bind > #16031

Re: CNAME restrictions

From Matus UHLAR - fantomas <uhlar@fantomas.sk>
Newsgroups comp.protocols.dns.bind
Subject Re: CNAME restrictions
Date 2020-08-04 19:34 +0200
Message-ID <mailman.780.1596562455.942.bind-users@lists.isc.org> (permalink)
References <YQXPR01MB38780C7AAD14F0009B63741CCD4A0@YQXPR01MB3878.CANPRD01.PROD.OUTLOOK.COM> <YQXPR01MB3878DEDA813E42EE01166478CD4A0@YQXPR01MB3878.CANPRD01.PROD.OUTLOOK.COM> <20200804173448.GA10336@fantomas.sk>

Show all headers | View raw


On 04.08.20 17:29, Leroy Tennison wrote:
>I have a situation where, due to the system's location (IP subnet), its DNS
> name is <webserver>.<internal subdomain>.datavoiceint.com.  We have a
> certificate for *.datavoiceint.com which we prefer to use

wildcard in certificates only covers one level of subdomains, so
*.datavoiceint.com will cover <internal subdomain>.datavoiceint.com but not
anything under it.

you will have to strip the  <webserver> part or get other certificate.

-- 
Matus UHLAR - fantomas, uhlar@fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
Microsoft dick is soft to do no harm

Back to comp.protocols.dns.bind | Previous | Next | Find similar


Thread

Re: CNAME restrictions Matus UHLAR - fantomas <uhlar@fantomas.sk> - 2020-08-04 19:34 +0200

csiph-web