Certificate Attributes
The Enterprise Gateway can authorize access to a Web Service based on the X.509 attributes of an authenticated client's certificate. For example, a simple Certificate Attributes filter might only authorize clients whose certificates have a Distinguished Name (DName) containing the following attribute: O=oracle. In other words, only "oracle" users are authorized to access the Web Service.
An X.509 certificate consists of a number of fields. The Subject field is the one of most relevance to this tutorial. It gives the DName of the client to which the certificate belongs. A DName is a unique name given to an X.500 directory object. It consists of a number of attribute-value pairs called Relative Distinguished Names (RDNs). Some of the most common RDNs and their explanations are as follows:
- CN: CommonName
- OU: OrganizationalUnit
- O: Organization
- L: Locality
- S: StateOrProvinceName
- C: CountryName
For example, the following is the DName of the sample.p12 client certificate supplied with the Enterprise Gateway:
|
|
Using the Certificate Attributes filter, it is possible to authorize clients based on, for example, the "CN", "OU", or "C" in the DName.
Tag » Cn Ou
-
What Are CN, OU, DC In An LDAP Search? - Stack Overflow
-
What Are CN, OU, DC In An LDAP Search? - Config Router
-
[ActiveDirectory]différence OU/DC/CN Par Tot94 - Page 1
-
The Meaning Of The CN, OU, DC In LDAP - Alibaba Cloud Topic Center
-
What Are CN, OU, DC In An LDAP Search? - Newbedev
-
LDAP Binding Strings
-
LDAP 中CN, OU, DC 的含义 - CSDN博客
-
What Is CN Ou DC?
-
What Are CN, OU, DC In An LDAP Search? - Read For Learn
-
Why Is The Computers Object A CN Not An OU In Microsoft Active ...
-
Sofitex Tourneur CN Ou Traditionnel H/F - HelloWork
-
Offre Emploi CDI Tourneur Fraiseur CN Ou Traditionnel Saint-Savin ...