square / rails-auth

Modular resource-based authentication and authorization for Rails/Rack
Apache License 2.0
291 stars 26 forks source link

Expose Subject Alternative Name information in the certificate #59

Closed mbyczkowski closed 4 years ago

mbyczkowski commented 4 years ago

This is useful, because: 1) CN is deprecated and domain information should be provided in the subjectAltName extension, known as DNS SAN 2) There are some emerging standards that encode identity in the URI SAN (e.g. SPIFFE