Skip to content

For optional_no_ca allow invalid purpose#192

Open
jdachman wants to merge 1 commit intoapache:trunkfrom
jdachman:patch-1
Open

For optional_no_ca allow invalid purpose#192
jdachman wants to merge 1 commit intoapache:trunkfrom
jdachman:patch-1

Conversation

@jdachman
Copy link
Copy Markdown

@jdachman jdachman commented Jun 4, 2021

Currently with this setting
SSLVerifyClient optional_no_ca
If the client cert has an invalid purpose, SSL fails.

This is necessary for the case when we always want Httpd to pass the client cert with validation information to the backend--and for the backend to make decisions based on that.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant