發問發問
 

已答覆UAG DirectAccess Wildcard Certificate

  • Tuesday, 17 November, 2009 19:44jforgeson 使用者勳章使用者勳章使用者勳章使用者勳章使用者勳章
     
    Hi all,
    Just having a small issue with UAG DirectAccess and a wildcard SSL certificate for the IP-HTTPS certificate.
    As the wildcard certificate has a * in the subject name it is not accepted by the UAG DirectAccess setup and returns the following error.

    "The selected certificate CN=*.example.com does not have a suitable subject name. Select a certificate with a valid FQDN as a subject name.

    Does this mean that we cannot use our wildcard certificate for UAG DirectAccess?

解答

所有回覆

  • Tuesday, 17 November, 2009 20:51MS2065MSFT使用者勳章使用者勳章使用者勳章使用者勳章使用者勳章
     
    Hi,

    the error occurs if you are accessing a URL like a.b.example.com where the wildcard certificate subject name was set to *.example.com. A wildcard certificate allows you to substitue just one domain label but not any domain label. A your wildcard certificate *.example.com is valid for a.example.com but not for a.b.example.com
  • Tuesday, 24 November, 2009 6:04Max Braitmaiere 使用者勳章使用者勳章使用者勳章使用者勳章使用者勳章
     已答覆

    Resolved in RTM, selecting a wildcard cert will promt for input of the full name.