[ 
https://issues.apache.org/jira/browse/TS-2031?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13883209#comment-13883209
 ] 

James Peach commented on TS-2031:
---------------------------------

I took a quick look and this seems basically OK. The major issue is that I 
think {{found_entry.release()}} would be a double-free.

> Two SSL certs with overlapping CNs stomps over each other without warnings
> --------------------------------------------------------------------------
>
>                 Key: TS-2031
>                 URL: https://issues.apache.org/jira/browse/TS-2031
>             Project: Traffic Server
>          Issue Type: Bug
>          Components: SSL
>            Reporter: Leif Hedstrom
>            Assignee: James Peach
>            Priority: Minor
>             Fix For: 5.1.0
>
>         Attachments: TS-2031.diff
>
>
> If you have two certs that has the same CNs, the last one wins in the SNI 
> negotiation. This even takes precedence over "assigned" IPs (SNI trumps IP). 
> We should at least warn on this.



--
This message was sent by Atlassian JIRA
(v6.1.5#6160)

Reply via email to