The Policy Server v6.0 SP 2 release introduced support for multi-value components in certificate Issuer and Subject DN fields. However, these changes caused existing certificate mappings to fail when attributes were part of a multi-value DN.
The Policy Server is fixed to enable existing mappings to continue to function correctly. This fix adds backwards-compatibility functionality for single-attribute and simple custom mappings.
Note: Custom mappings that relied on attributes which occur multiple times in a DN (for example %{CN2} or %{UID2}) still behave differently than they did before if any of the attributes being mapped are part of a multi-valued DN component.
| Copyright © 2011 CA. All rights reserved. | Email CA Technologies about this topic |