RE: PI: 10: draft-ietf-pkix-pi-10.txt - single serialNumber attribute

"Fisher, James L." <jlf@mitretek.org> Thu, 22 July 2004 12:28 UTC

Received: from above.proper.com (above.proper.com [208.184.76.39]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id IAA14905 for <pkix-archive@lists.ietf.org>; Thu, 22 Jul 2004 08:28:47 -0400 (EDT)
Received: from above.proper.com (localhost.vpnc.org [127.0.0.1]) by above.proper.com (8.12.11/8.12.9) with ESMTP id i6MBIgVY001455; Thu, 22 Jul 2004 04:18:42 -0700 (PDT) (envelope-from owner-ietf-pkix@mail.imc.org)
Received: (from majordom@localhost) by above.proper.com (8.12.11/8.12.9/Submit) id i6MBIgd5001454; Thu, 22 Jul 2004 04:18:42 -0700 (PDT)
X-Authentication-Warning: above.proper.com: majordom set sender to owner-ietf-pkix@mail.imc.org using -f
Received: from mail45.messagelabs.com (mail45.messagelabs.com [140.174.2.179]) by above.proper.com (8.12.11/8.12.9) with SMTP id i6MBIfED001432 for <ietf-pkix@imc.org>; Thu, 22 Jul 2004 04:18:41 -0700 (PDT) (envelope-from jlf@mitretek.org)
X-VirusChecked: Checked
X-Env-Sender: jlf@mitretek.org
X-Msg-Ref: server-5.tower-45.messagelabs.com!1090495109!4337911
X-StarScan-Version: 5.2.10; banners=-,-,-
X-Originating-IP: [141.156.156.57]
Received: (qmail 8887 invoked from network); 22 Jul 2004 11:18:29 -0000
Received: from mtk-news1.mitretek.org (141.156.156.57) by server-5.tower-45.messagelabs.com with SMTP; 22 Jul 2004 11:18:29 -0000
Received: from email1.mitretek.org (localhost [127.0.0.1]) by mtk-news1.mitretek.org (8.12.10/8.12.10) with ESMTP id i6MBISQm020153 for <ietf-pkix@imc.org>; Thu, 22 Jul 2004 07:18:29 -0400 (EDT)
Content-class: urn:content-classes:message
MIME-Version: 1.0
Subject: RE: PI: 10: draft-ietf-pkix-pi-10.txt - single serialNumber attribute
Content-Type: text/plain; charset="us-ascii"
Date: Thu, 22 Jul 2004 07:18:22 -0400
X-MimeOLE: Produced By Microsoft Exchange V6.5.7226.0
Message-ID: <D6F85F437959E24C99E2EE757453E82BED647F@email1.mitretek.org>
Thread-Topic: PI: 10: draft-ietf-pkix-pi-10.txt - single serialNumber attribute
Thread-Index: AcRvXffs1xwifDvaQHivIbbSzMcgggAI4a2gABaZgJA=
From: "Fisher, James L." <jlf@mitretek.org>
To: ietf-pkix@imc.org
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from quoted-printable to 8bit by above.proper.com id i6MBIfED001449
Sender: owner-ietf-pkix@mail.imc.org
Precedence: bulk
List-Archive: <http://www.imc.org/ietf-pkix/mail-archive/>
List-ID: <ietf-pkix.imc.org>
List-Unsubscribe: <mailto:ietf-pkix-request@imc.org?body=unsubscribe>
Content-Transfer-Encoding: 8bit

> Russ's "problem" DN does not need to be solved.  As David notes, an
attribute type is not allowed to appear more than once in an RDN.

But we frequently see DNs containing multiple "dc=" and "ou="
attributes.  Are those certs in violation of RFC3280 since Section
4.1.2.6 references to X.501 names?