You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
A certificate-using system MUST reject the
certificate if it encounters a critical extension it does not
recognize
However, based on testing with a yet unassigned critical OID, it seems like rpstir2 does in fact accept certificates when there are unknown critical extensions. I do not expect this to be have any security impact, but it is part of the specs.
The text was updated successfully, but these errors were encountered:
According to https://datatracker.ietf.org/doc/html/rfc6487#section-4.8:
However, based on testing with a yet unassigned critical OID, it seems like rpstir2 does in fact accept certificates when there are unknown critical extensions. I do not expect this to be have any security impact, but it is part of the specs.
The text was updated successfully, but these errors were encountered: