>One approach would be to use the email field.

No no no no no no  no no!

There is no such thing as an "email" field.  Many older
CA's (eg., the early Verisign's) used this RDN, which
was defined in PKCS9.  *That's wrong.*

The proper thing to do is use the subjectAltNames
extension.
        /r$
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to