Sign Up

Sign Up to our social questions and Answers Engine to ask questions, answer people’s questions, and connect with other people.

Have an account? Sign In

Have an account? Sign In Now

Sign In

Login to our social questions & Answers Engine to ask questions answer people’s questions & connect with other people.

Sign Up Here

Forgot Password?

Don't have account, Sign Up Here

Forgot Password

Lost your password? Please enter your email address. You will receive a link and will create a new password via email.

Have an account? Sign In Now

You must login to ask a question.

Forgot Password?

Need An Account, Sign Up Here

Please briefly explain why you feel this question should be reported.

Please briefly explain why you feel this answer should be reported.

Please briefly explain why you feel this user should be reported.

Sign InSign Up

The Archive Base

The Archive Base Logo The Archive Base Logo

The Archive Base Navigation

  • SEARCH
  • Home
  • About Us
  • Blog
  • Contact Us
Search
Ask A Question

Mobile menu

Close
Ask a Question
  • Home
  • Add group
  • Groups page
  • Feed
  • User Profile
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Buy Points
  • Users
  • Help
  • Buy Theme
  • SEARCH
Home/ Questions/Q 8456777
In Process

The Archive Base Latest Questions

Editorial Team
  • 0
Editorial Team
Asked: June 10, 20262026-06-10T12:38:07+00:00 2026-06-10T12:38:07+00:00

I am implementing PKI authentication for my application, and everything I’ve read online says

  • 0

I am implementing PKI authentication for my application, and everything I’ve read online says that you extract the CN attribute from the certificate subject and use the CN to look up the user in the LDAP server, for example.

However, when I browse my company’s LDAP directory, every user’s CN attribute is just first and last name. This does not uniquely identify a user across an Organizational Unit or the company. Does this mean that the CN is not set up correctly here? Examples of CN values I’ve seen online are usually a concatenation of first, last names and email address. Is this usual format the CN attribute takes on?

  • 1 1 Answer
  • 0 Views
  • 0 Followers
  • 0
Share
  • Facebook
  • Report

Leave an answer
Cancel reply

You must login to add an answer.

Forgot Password?

Need An Account, Sign Up Here

1 Answer

  • Voted
  • Oldest
  • Recent
  • Random
  1. Editorial Team
    Editorial Team
    2026-06-10T12:38:09+00:00Added an answer on June 10, 2026 at 12:38 pm

    The subject of a certificate is an X.500 Distinguished Name (DN) as per RFC 5280 (see section 4.1.2.6 on https://www.rfc-editor.org/rfc/rfc5280#page-23). Yes, the DN must be unique for each subject. Instead of a first name/last name concatenation, you could pick something unique like an E-mail address, employee ID or user account.

    Also note that the DN may have multiple elements rather than a single CN (Common Name) entry but I think that’s beyond the scope of the question.

    • 0
    • Reply
    • Share
      Share
      • Share on Facebook
      • Share on Twitter
      • Share on LinkedIn
      • Share on WhatsApp
      • Report

Sidebar

Related Questions

I'm looking at implementing PKI authentication ( 2 way SSL requiring x.509 certificates) for
Implementing a custom membership provider, there are certain properties such as MinRequiredPasswordLength that only
Before implementing j_security_check using MySQL realm authentication in my web app. I had the
When implementing the Strategy Pattern, where does one put the code that determines which
Whilst implementing my first MVVM application in WPF, I've been wondering about the pros
Im implementing NFS and almoste done but the RFC section 3.3.8 says this in
Im Implementing a video broadcasting website. For that I planned to use silverlight player
Implementing a Thread by providing a new class that extends Thread and overriding its
Implementing a web service that uses Transport-level security with WCF over HTTP is pretty
I implementing OLE DB provider for my custom database. It will be used from

Explore

  • Home
  • Add group
  • Groups page
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Users
  • Help
  • SEARCH

Footer

© 2021 The Archive Base. All Rights Reserved
With Love by The Archive Base

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.