Uploaded image for project: 'Qpid Proton'
  1. Qpid Proton
  2. PROTON-302

Messenger does not verify the hostname in the peer's SSL certificate.

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Blocker
    • Resolution: Fixed
    • proton-0.5
    • proton-0.6
    • proton-c
    • None

    Description

      When Messenger is configured to use SSL, and a CA database is provided (via set_trusted_certificates), messenger fails to check that the CommonName/Subject Alternate Name provided in the peer's certificate. Currently, it merely validates that the certificate is signed correctly.

      Attachments

        Activity

          People

            kgiusti Ken Giusti
            kgiusti Ken Giusti
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: