Name (SAN) Field: SAN Field: SAN Field: • Federal • DoD Derived RFC 822 name Derived User UPN Principal • Request For Name (UPN) Comment • Federal (RFC) 822 Agency Smart name Credential Number Future Remove Certificate Same as current. Same as current Same as current. CAC except: • Remove SCL EKU • Remove Client-Authentication EKU

Using SSL with an IP address instead of DNS | BowerStudios.com Useful Background links: SSLHandshakeException: No subject alternative names present; How are SSL certificate server names resolved/Can I add alternative names using keytool? Mail::RFC822::Address - Perl extension for validating Apr 13, 2002 Display Subject Alternative Names of a Certificate with FriendlyName-match "subject alternative name"}). RawData However you can convert the ASN to a hex array and then decode it with the InitializeDecode method of the X509Enrollment.CX509ExtensionAlternativeNames COM object to get to human-readable text. Smart card RFC822

x509, subject alternative name: RFC822 Name=firs@mail

PKI - Subject Alternative Name (SAN) Extension The Subject Alternative Name (SAN) is an X.509 v3 certificate extension that binds additional information to the subject DN of this certificate. The most notable information includes: DNS Name; RFC822 Name; DNS Name. CA uses this construct when issuing SSL server certificates. It contains the domain(s) for which this certificate is issued. IETF | Internet Engineering Task Force

However, other than that, we'll continue to reject malformed rfc822 name constraints, in particular ones of the form "@example.com", in order to conform to the spec. Hopefully this change will buy some time to allow for the replacement of the certificates with the malformed constraints.

RFC 822 is a standard for ARPA Internet Text Messages. RFC 822 standard is where messages consist of lines of text. No special provisions are made for encoding, facsimile, speech, or structured text. A general “memo” framework is used. That is, a message con-sists of some information in a rigid format, followed by the main part of the message. OFFICE OF THE SECRETARY OF DEFENSE MEMORANDUM … Name (SAN) Field: SAN Field: SAN Field: • Federal • DoD Derived RFC 822 name Derived User UPN Principal • Request For Name (UPN) Comment • Federal (RFC) 822 Agency Smart name Credential Number Future Remove Certificate Same as current. Same as current Same as current. CAC except: • Remove SCL EKU • Remove Client-Authentication EKU Using SSL with an IP address instead of DNS | BowerStudios.com Useful Background links: SSLHandshakeException: No subject alternative names present; How are SSL certificate server names resolved/Can I add alternative names using keytool?