In message <20160803142331.gd2...@nikhef.nl> on Wed, 3 Aug 2016 16:23:31 +0200, Mischa Salle <msa...@nikhef.nl> said:
msalle> On Wed, Aug 03, 2016 at 03:41:55PM +0200, Richard Levitte wrote: msalle> > msalle> By the way, even for RFC proxies I still have the problem that setting msalle> > msalle> the flag X509_V_FLAG_CRL_CHECK (and X509_V_FLAG_CRL_CHECK_ALL) to do CRL msalle> > msalle> checking results in a failure. I haven't looked yet what causes it, but msalle> > msalle> that flag should be ignored for proxy certificates in my opinion. msalle> > msalle> Perhaps I'm doing something wrong...? msalle> > msalle> > I believe you've found a bug! Thanks. msalle> Would you like me to open an issue? I haven't checked in great detail msalle> though... Nah, the two lines that were needed got reviewed quite quickly and are already in master. In fact, it will be part of the beta we're releasing tomorrow. Cheers, Richard -- Richard Levitte levi...@openssl.org OpenSSL Project http://www.openssl.org/~levitte/ -- openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev