httpd-bugs mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From bugzi...@apache.org
Subject DO NOT REPLY [Bug 35083] Certificate validation problems trapping
Date Tue, 09 Sep 2008 08:22:19 GMT
https://issues.apache.org/bugzilla/show_bug.cgi?id=35083





--- Comment #19 from Marc Stern <marc.stern@approach.be>  2008-09-09 01:22:18 PST ---
The patch is waiting for approval.
Glad to see other people manifesting their interest ;-)

I think the only real question before actually implementing it is to see if the
"legacy" directive SSL_CVERIFY_OPTIONAL_NO_CA is still meaningful, or if we
should replace it with something like SSL_IGNORE_ERRORS.

Otherwise, I never got any problem report.
It runs in production for 3 years (18 months for latest patch) on dozens of Web
sites, in a version published and supported by Belgian government for all
agencies and private sector.

Note that this is key differentiator compared to IIS and other servers.
Wouldn't it worth to integrate it ?


-- 
Configure bugmail: https://issues.apache.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.

---------------------------------------------------------------------
To unsubscribe, e-mail: bugs-unsubscribe@httpd.apache.org
For additional commands, e-mail: bugs-help@httpd.apache.org


Mime
View raw message