xca icon indicating copy to clipboard operation
xca copied to clipboard

[Feature Request] Support UPN type for EAP/802.1X certificates

Open DraugurHundur opened this issue 2 years ago • 0 comments

When you use EAP-TLS/802.1.X and others on Microsoft OSes, the Subject Alternative Name in the certificate must contain a User/Universal Principal Name (UPN) (e.g. [email protected] or [email protected]), this is currently possible with XCA if you use the following syntax for the SAN:

otherName:1.3.6.1.4.1.311.20.2.3;UTF8:[email protected]

or slightly easier to read

otherName:msUPN;UTF8:[email protected]

It would be great if we can have a UPN type available in XCA and use a much simpler syntax such as UPN:[email protected]

DraugurHundur avatar Oct 21 '21 14:10 DraugurHundur