TenBrink Tech
Subject Alternative Names in Microsoft PKI Certificates
On December 8, 2010
I use this little tip often enough, with the split DNS namespace we operate at my current company, that I thought I would post it for the benefit of the search engines.
To add a subject alternative name (SAN) to a certificate request using the PKI web interface or certreq.exe, add the additional DNS names in the attributes section of the request like so:
san:dns=hostname&dns=hostname2
You can add as many as you need. In the case of a Exchange 2010 CAS array, one certificate may carry nearly 10 SAN’s. Don’t forget to have the primary name of the certificate listed as the CN (subject name).
For deeper reference, see MS KB 931351 on how to add a SAN to an LDAPS certificate.
Twitter Favorites- PDX_JP: Gartner’s vision of the future of work: Less routine, more spontaneous http://t.co/YeWoROe0
- mranweiler: The Logbook is Online: One thing that is important to a ham is his logbook. Now while the FCC no longer requires... http://t.co/1v5PfyeD
- haroldwong: Download, Explore and Get Rewarded with Microsoft’s Private Cloud ($20 and enter for raffle of Lenovo W520) : http://t.co/VHFLAhNR
- roidude: Microsoft makes it challenging for cloud providers to host virtual desktops. New Post - By The Bell. http://t.co/f5cRyRus
- tcorfmat: Important updates to vCenter Orchestrator #vCO plug-ins: Little big updates for our swiss-knife plug-ins http://t.co/vXK8c6kk
- vCloud: Workaround for Chargeback and the vCD Appliance: http://t.co/iYI50VAV via @vCloud_Storm #vCloud
- KongYang: “@RodMatDell: @Dell feels traffic should minimize travel and reduce congestion latency: servers near servers, VMs near VMs, etc. #SANchat”
- KongYang: vApp resource requirement cont http://t.co/4LAPUpnM
- KongYang: vApp resource requirements #VMwarePEX http://t.co/OLO5f9z4
- cswolf: RT @herrod: AT&T announces vCloud Datacenter svc offering http://t.co/Um5kf956 <Nice partner addition; vCloud getting strength in numbers
Archives




