Add critical extension to only SAN

Signed-off-by: SpectralHiss <houssem.elfekih@jetstack.io>
This commit is contained in:
SpectralHiss 2023-12-21 12:06:33 +00:00
parent 8e2365dd54
commit 120240fec2
2 changed files with 6 additions and 4 deletions

View File

@ -145,8 +145,9 @@ var _ = framework.CertManagerDescribe("othername san processing", func() {
val, err := asn1.Marshal(generalNames)
Expect(err).To(BeNil())
return pkix.Extension{
Id: oidExtensionSubjectAltName,
Value: val,
Id: oidExtensionSubjectAltName,
Value: val,
Critical: true,
}
}
expectedSanExtension := mustMarshalSAN([]asn1.RawValue{

View File

@ -304,8 +304,9 @@ func (s *Suite) Define() {
val, err := asn1.Marshal(generalNames)
Expect(err).To(BeNil())
return pkix.Extension{
Id: oidExtensionSubjectAltName,
Value: val,
Id: oidExtensionSubjectAltName,
Value: val,
Critical: true, // Since there is no subject the SAN extension is critical
}
}
nameTypeEmail := 1