cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
398
Views
1
Helpful
1
Replies

Certificate SAN Field and RFC 822...

Hi all;

When deploying ISE BYOD using ISE internal CA, when everything works as expected, ISE will generate a certificate for the client with the MAC address of the client's NIC as SAN, as you can see below:

rezaalikhani_0-1709975044059.png

I want to know that why Cisco attaches RFC822 for the name of this field as far as I know, this RFC is about "ARPA INTERNET TEXT MESSAGES"?

Thanks

1 Reply 1

That's a very good question. I have no answer, but I would really like to hear something from Cisco on this.

RFC 5280 defines a couple of SAN types to store information. There is no definition of how to store MAC addresses, although from my understanding other types would be a better fit than "rfc822Name". IMO, Aruba uses the type "directoryName."