[openssl-dev] [openssl.org #3621] Support legacy CA removal, ignore unnecessary intermediate CAs in SSL/TLS handshake by default

Kai Engert via RT rt at openssl.org
Mon Mar 16 09:45:06 UTC 2015


Thank you very much for your work on this issue!
In my testing so far, it works as requested.

I noticed the code changes in x509_vfy.c apply fine on top of the 1.0.2
stable branch, and the test suite succeeeds.

Will you consider to add this enhancement in a feature release on the
1.0.2 branch?

Regards
Kai





More information about the openssl-dev mailing list