[openssl-dev] [openssl.org #4644] bug: cert verification always examining entire chain

Salz, Rich via RT rt at openssl.org
Tue Aug 9 18:52:27 UTC 2016


> Why do you have to trust root CAs? Why can't you trust at a lower level, e.g.
> an intermediate CA or even a leaf certificate that is not a CA at all?

I said CA's, not root CA's.

As Viktor pointed out, this doesn't work in 1.0.1

-- 
Ticket here: http://rt.openssl.org/Ticket/Display.html?id=4644
Please log in as guest with password guest if prompted



More information about the openssl-dev mailing list