Class AllowedSubjectAltNames

AllowedSubjectAltNames specifies the allowed values for SubjectAltNames by the CertificateAuthority when issuing Certificates.

Attributes
NameDescription
Sequence[str]allowed_dns_names
Optional. Contains valid, fully-qualified host names. Glob patterns are also supported. To allow an explicit wildcard certificate, escape with backlash (i.e. ``\*``). E.g. for globbed entries: ``*bar.com`` will allow ``foo.bar.com``, but not ``*.bar.com``, unless the allow_globbing_dns_wildcards field is set. E.g. for wildcard entries: ``\*.bar.com`` will allow ``*.bar.com``, but not ``foo.bar.com``.
Sequence[str]allowed_uris
Optional. Contains valid RFC 3986 URIs. Glob patterns are also supported. To match across path seperators (i.e. '/') use the double star glob pattern (i.e. '**').
Sequence[str]allowed_email_addresses
Optional. Contains valid RFC 2822 E-mail addresses. Glob patterns are also supported.
Sequence[str]allowed_ips
Optional. Contains valid 32-bit IPv4 addresses and subnet ranges or RFC 4291 IPv6 addresses and subnet ranges. Subnet ranges are specified using the '/' notation (e.g. 10.0.0.0/8, 2001:700:300:1800::/64). Glob patterns are supported only for ip address entries (i.e. not for subnet ranges).
boolallow_globbing_dns_wildcards
Optional. Specifies if glob patterns used for allowed_dns_names allows wildcard certificates.
boolallow_custom_sans
Optional. Specifies if to allow custom X509Extension values.

Inheritance

builtins.object > proto.message.Message > AllowedSubjectAltNames