> o Certificate fingerprints: For each transport receiver, the client > is configured with a fingerprint of the server's certificate > (which can be self-signed). This option MUST be supported.
Am I the only one who finds this whole fingerprint option completely unnecessary? Is this practice actually used somewhere? I have not heard about this before and get the impression it is only a bad substitute for copying the peer's certificate. -- Martin _______________________________________________ Syslog mailing list [email protected] https://www.ietf.org/mailman/listinfo/syslog
