Lack of support for the Subject Alternative Name (SAN) extension
Open
Nobody has claimed this yet.
- Dominant language
- Python
- Stars
- 115
- Forks
- 34
- PR merge metrics
- No merged PRs in 30d
Description
This is a standard extension documented in RFC 5280, essential for hostname
verification. When Subject field contains an empty sequence, CAs can mark this extension as critical as well.
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Start with the RFC 5280 requirements cited in the issue and trace the certificate path-validation entry points in this Python library. The work is done when Subject Alternative Name is supported for hostname verification and certificates with an empty Subject can treat the extension as critical according to the standard.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- python
- Domain
- cryptography, security
- Issue type
- Feature
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 35/100