Matching Text Strings in PKIX Certificates

Document Type Expired Internet-Draft (individual)
Authors Paul Hoffman  , Steve Hanna 
Last updated 2004-07-09
Stream (None)
Intended RFC status (None)
Expired & archived
pdf htmlized (tools) htmlized bibtex
Stream Stream state (No stream defined)
Consensus Boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


Strings of text appear in many fields in PKIX certificates. Some applications need to compare the values in these fields to strings from other certificates, or to values obtained in other manners. For many string encodings, this can be done in an octet-by-octet fashion. Other encodings, however, require preparation before the strings can be compared. This document describes that preparation and when it needs to be applied.


Paul Hoffman (
Steve Hanna (

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)