diff options
author | Daniel Stenberg <daniel@haxx.se> | 2019-12-02 10:45:55 +0100 |
---|---|---|
committer | Daniel Stenberg <daniel@haxx.se> | 2019-12-03 16:28:50 +0100 |
commit | 94f1f771586913addf5c68f9219e176036c50115 (patch) | |
tree | 29d69f2c702d407a6c800222f12e375bbb3fe586 /lib/vtls/polarssl_threadlock.h | |
parent | 7dffc2b46f78e15ac0f8e19a2c8ebeba0c032aa4 (diff) |
openssl: set X509_V_FLAG_PARTIAL_CHAIN
Have intermediate certificates in the trust store be treated as
trust-anchors, in the same way as self-signed root CA certificates
are. This allows users to verify servers using the intermediate cert
only, instead of needing the whole chain.
Other TLS backends already accept partial chains.
Reported-by: Jeffrey Walton
Bug: https://curl.haxx.se/mail/lib-2019-11/0094.html
Diffstat (limited to 'lib/vtls/polarssl_threadlock.h')
0 files changed, 0 insertions, 0 deletions