﻿<?xml version='1.0' encoding='UTF-8'?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/"><channel><title>SSL Forums / SSL Certificates / Community Support  / Subject Alternative Name (SAN) / Latest Posts</title><generator>InstantForum.NET v4.1.3</generator><description>SSL Forums</description><link>http://forums.ssl.com/</link><webMaster>forums@ssl.com</webMaster><lastBuildDate>Thu, 09 Sep 2010 19:22:56 GMT</lastBuildDate><ttl>20</ttl><item><title>Subject Alternative Name (SAN)</title><link>http://forums.ssl.com/Topic361-3-1.aspx</link><description>I am using OpenSSL to create a self sign certificate and have a need to add approximately 4000, yes 4000, DNS entries (don't ask why) using Subject Alternative Name.  I have succeeded in creating a certificate with 500 DNS entries and it works just fine with no noticeable latency accessing the web sites listed via the SAN in the certificate.  However, I run into a problem when I create a certificate with more than 500 SAN entries.  OpenSSL creates the certificate and there are no indications of any problems.  After installing the new certificate, however, I can no longer access any of the sites where the certificate is installed.&lt;/P&gt;&lt;P&gt;I've read RFC3280 and there is no mention of a maximum for SAN entries.  Has anyone had any experience with this or do you have any ideas?  Thanks for any help.</description><pubDate>Wed, 10 Feb 2010 15:08:25 GMT</pubDate><dc:creator>rono16</dc:creator></item></channel></rss>