Existing documentation URL(s)
What changes are you suggesting?
The documentation says:
Subject Alternative Name: (Optional) To check for a Subject Alternative Name (SAN) on the client certificate, enter a string with optional ${serial_number} and ${hostname} variables (for example, ${serial_number}_mycompany). The Cloudflare One Client will search for an exact, case-insensitive match. You can add multiple SANs to the posture check — a certificate only needs to match one SAN for the check to pass.
But from my conversation with support this is incorrect. In fact, this posture check only does a match against some SANs (DNS, email, etc) and not all SANs -- particularly othername. This should be called out as an explicit limitation.
Additional information
No response
Existing documentation URL(s)
What changes are you suggesting?
The documentation says:
But from my conversation with support this is incorrect. In fact, this posture check only does a match against some SANs (DNS, email, etc) and not all SANs -- particularly othername. This should be called out as an explicit limitation.
Additional information
No response