Uploaded image for project: 'Traffic Server'
  1. Traffic Server
  2. TS-2563

Set the SSL default verify paths when ssl.client.verify.server=1

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Major
    • Resolution: Fixed
    • None
    • 5.0.0
    • SSL
    • None

    Description

      When working at reverse proxy mode with the following remap rule:
      map https://xxx1.com https://xxx2.com

      ssl.client.verify.server=1

      If xxx2.com is providing trusted certificate and 'ssl.client.CA.cert.filename' is NULL, ats should be able to verify the certificate in terms of the default provided CAs.

      Attachments

        1. TS-2563.diff
          1.0 kB
          Wei Sun

        Activity

          People

            jamespeach James Peach
            sunwei Wei Sun
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: