Project

General

Profile

Actions

Bug #19391

closed

Ca Cert Fetcher should check if downloaded cert has CA capabilities

Added by Martin Bacovsky over 7 years ago. Updated over 6 years ago.

Status:
Closed
Priority:
Normal
Category:
Hammer core
Target version:
Difficulty:
Triaged:
Team Backlog:
Fixed in Releases:
Found in Releases:
In Kanboard:

Description

When the server is configured in a way that the cert does not contain the CA chain the Hammer cert fetcher downloads only the server cert that is not CA and it is not possible to use it fro verification. The CA cert fetcher should check if the cert that was downloaded is a CA and prevent storing it otherwise.

Actions

Also available in: Atom PDF