[dw...@infradead.org - Tue Jun 02 15:21:30 2009]:
On Tue, 2009-06-02 at 13:40 +0200, Stephen Henson via RT wrote:
If however we are going to revise this I'd say we should use
X509_verify_cert to build the chain instead of more ad-hoc stuff.
This seems to work... only tested for
[sean.cunning...@mandiant.com - Thu Jun 25 08:23:49 2009]:
This bug is not platform specific.
Some proxies, such as nginx, implement custom session caches via the
openssl callback API's. This implementation makes use of the
i2d_SSL_SESSION API to copy the session into a