Ken Giusti created PROTON-302: --------------------------------- Summary: Messenger does not verify the hostname in the peer's SSL certificate. Key: PROTON-302 URL: https://issues.apache.org/jira/browse/PROTON-302 Project: Qpid Proton Issue Type: Bug Components: proton-c Affects Versions: 0.5 Reporter: Ken Giusti Assignee: Rafael H. Schloming Priority: Blocker Fix For: 0.5
When Messenger is configured to use SSL, and a CA database is provided (via set_trusted_certificates), messenger fails to check that the CommonName/Subject Alternate Name provided in the peer's certificate. Currently, it merely validates that the certificate is signed correctly. -- This message is automatically generated by JIRA. If you think it was sent incorrectly, please contact your JIRA administrators For more information on JIRA, see: http://www.atlassian.com/software/jira