emacs-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [PATCH RFC] GnuTLS: Support TOFU certificate checking.


From: Lars Magne Ingebrigtsen
Subject: Re: [PATCH RFC] GnuTLS: Support TOFU certificate checking.
Date: Wed, 08 Oct 2014 13:58:50 +0200
User-agent: Gnus/5.130012 (Ma Gnus v0.12) Emacs/24.4.50 (gnu/linux)

Lars Magne Ingebrigtsen <address@hidden> writes:

> Yes, `open-network-stream' would implement certificate pinning. 

(By default.  But there should probably be a way for the user to switch
it off, since the user may not want to store a list of servers (with
self-signed certificates) it has talked to -- for privacy reasons.  But
that's a pretty marginal issue.)

-- 
(domestic pets only, the antidote for overdose, milk.)
   bloggy blog: http://lars.ingebrigtsen.no



reply via email to

[Prev in Thread] Current Thread [Next in Thread]