[SERVER-37793] SSL - SAN parsing issue Created: 28/Oct/18 Updated: 29/Oct/18 Resolved: 29/Oct/18 |
|
| Status: | Closed |
| Project: | Core Server |
| Component/s: | None |
| Affects Version/s: | 3.6.6 |
| Fix Version/s: | None |
| Type: | Bug | Priority: | Major - P3 |
| Reporter: | George Solymosi | Assignee: | Kelsey Schubert |
| Resolution: | Duplicate | Votes: | 0 |
| Labels: | None | ||
| Remaining Estimate: | Not Specified | ||
| Time Spent: | Not Specified | ||
| Original Estimate: | Not Specified | ||
| Issue Links: |
|
||||||||
| Operating System: | ALL | ||||||||
| Participants: | |||||||||
| Description |
|
Fedora 28 MongoDB server version: 3.6.3 I'm trying to access mongoDB via mongo shell through SSL with SAN using IP addresses: [thread1] Error: socket exception [CONNECT_ERROR] for The server certificate does not match the host name. Hostname: 99.999.99.999 does not match SAN(s): : Then I tried replace IP.1 to DNS.1: DNS.1 = 99.999.99.001
which is not a preferred way of functionality, I guess.
|
| Comments |
| Comment by George Solymosi [ 29/Oct/18 ] |
|
Hi Kelsey, Thank you for the info. Kind regards, George |
| Comment by Kelsey Schubert [ 29/Oct/18 ] |
|
Hi georgegssy, Thanks for reporting this behavior. We're tracking the work to support hostname validation with IP addresses in SAN in Kind regards, |