Uploaded image for project: 'OpenDJ'
  1. OpenDJ
  2. OPENDJ-883

Implement certificateExactMatch matching rule

    Details

    • Type: Improvement
    • Status: Resolved
    • Priority: Minor
    • Resolution: Fixed
    • Affects Version/s: 2.6.0
    • Fix Version/s: 3.0.0, 2.8.0
    • Component/s: core server
    • Labels:
    • Environment:
      -
    • Sprint:
      Sprint 12, Sprint 13, Sprint 19, Sprint 20, Sprint 21, Sprint 22, Sprint 23, Sprint 25

      Description

      OpenDJ currently uses the default octetStringMatch matching rule for userCertificate and cACertificate.
      RFC 4523 specifies the certificateExactMatch matching rule which has to be used as the default equality matching rule for those attributes. To support this matching rule, it has to be implemented, as it doesn't exist at the moment.

      I already have a patch which implements this matching rule and will create a code review request for it.

        Attachments

          Issue Links

            Activity

              People

              • Assignee:
                manuelgaupp manuelgaupp
                Reporter:
                manuelgaupp manuelgaupp
              • Votes:
                0 Vote for this issue
                Watchers:
                2 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: