Re: SSL Bump Certificate Blacklist

From: Alex Rousskov <rousskov_at_measurement-factory.com>
Date: Thu, 22 Sep 2011 10:07:03 -0600

On 09/22/2011 09:02 AM, Fabian Hugelshofer wrote:
>
> Feature request opened:
>
> http://bugs.squid-cache.org/show_bug.cgi?id=3359
>
>
>> Do we need to be able to test a match against a certificate at Nth
>> position in the chain? Or can we always test all certificates in the
>> chain?
>
> Like Amos wrote, one would have to go through the whole trust chain.

Good. It makes configuration support easier as all options will apply to
each certificate in the chain.

Thank you,

Alex.
Received on Thu Sep 22 2011 - 16:07:56 MDT

This archive was generated by hypermail 2.2.0 : Thu Sep 22 2011 - 12:00:05 MDT