Skip to content
Discussion options

You must be logged in to vote

There are many ways here depending on how you use EJBCA, I think you know :-).
You can ignore what's in the CSR completely (default behavior, nothing is trusted from the end entity), so only what you have pre-registered is used.
End entity profiles can control much on what is required or not required, optional, exact values, regexp validation, etc etc.

I suspect you may be looking for this feature though?
https://docs.keyfactor.com/ejbca/latest/end-entity-profiles-fields#id-(8.3.1latest)EndEntityProfilesFields-AllowmergeDNacrossallinterfacesAllow_merge_DN_Webservices

Replies: 1 comment 1 reply

Comment options

You must be logged in to vote
1 reply
@RufusJWB
Comment options

Answer selected by RufusJWB
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants