diff options
author | François Rigault <rigault.francois@gmail.com> | 2020-06-05 22:00:58 +0200 |
---|---|---|
committer | Daniel Stenberg <daniel@haxx.se> | 2020-06-06 18:01:24 +0200 |
commit | e2de2d53979ac6d93303562f5531f75944e70b8b (patch) | |
tree | 957013e2326285613eb69088e92c31c01d3eea00 /docs/libcurl/opts/CURLINFO_PROXY_SSL_VERIFYRESULT.3 | |
parent | 2705830f2fa0f7831e45fd4550dbe645136ab41c (diff) |
openssl: set FLAG_TRUSTED_FIRST unconditionally
On some systems, openssl 1.0.x is still the default, but it has been
patched to contain all the recent security fixes. As a result of this
patching, it is possible for macro X509_V_FLAG_NO_ALT_CHAINS to be
defined, while the previous behavior of openssl to not look at trusted
chains first, remains.
Fix it: ensure X509_V_FLAG_TRUSTED_FIRST is always set, do not try to
probe for the behavior of openssl based on the existence ofmacros.
Closes #5530
Diffstat (limited to 'docs/libcurl/opts/CURLINFO_PROXY_SSL_VERIFYRESULT.3')
0 files changed, 0 insertions, 0 deletions