[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[gnurl] 207/222: mbedtls: add error message for cert validity starting i
From: |
gnunet |
Subject: |
[gnurl] 207/222: mbedtls: add error message for cert validity starting in the future |
Date: |
Thu, 07 Nov 2019 00:11:43 +0100 |
This is an automated email from the git hooks/post-receive script.
ng0 pushed a commit to branch master
in repository gnurl.
commit 9910d6b9a49eac5ce9ab5d89dfb64327ab292a95
Author: Bastien Bouclet <address@hidden>
AuthorDate: Sat Nov 2 14:15:18 2019 +0100
mbedtls: add error message for cert validity starting in the future
Closes #4552
---
lib/vtls/mbedtls.c | 3 +++
1 file changed, 3 insertions(+)
diff --git a/lib/vtls/mbedtls.c b/lib/vtls/mbedtls.c
index 27898505f..e34ec9d13 100644
--- a/lib/vtls/mbedtls.c
+++ b/lib/vtls/mbedtls.c
@@ -588,6 +588,9 @@ mbed_connect_step2(struct connectdata *conn,
else if(ret & MBEDTLS_X509_BADCERT_NOT_TRUSTED)
failf(data, "Cert verify failed: BADCERT_NOT_TRUSTED");
+ else if(ret & MBEDTLS_X509_BADCERT_FUTURE)
+ failf(data, "Cert verify failed: BADCERT_FUTURE");
+
return CURLE_PEER_FAILED_VERIFICATION;
}
--
To stop receiving notification emails like this one, please contact
address@hidden.
- [gnurl] 182/222: http2: expire a timeout at end of stream, (continued)
- [gnurl] 182/222: http2: expire a timeout at end of stream, gnunet, 2019/11/06
- [gnurl] 187/222: tests: use %FILE_PWD for file:// URLs, gnunet, 2019/11/06
- [gnurl] 192/222: test1591: fix spelling of http feature, gnunet, 2019/11/06
- [gnurl] 193/222: schannel: reverse the order of certinfo insertions, gnunet, 2019/11/06
- [gnurl] 199/222: HTTP3: fix typo somehere1 > somewhere1, gnunet, 2019/11/06
- [gnurl] 188/222: RELEASE-NOTES: synced, gnunet, 2019/11/06
- [gnurl] 180/222: examples/sslbackend: fix -Wchar-subscripts warning, gnunet, 2019/11/06
- [gnurl] 197/222: RELEASE-NOTES: synced, gnunet, 2019/11/06
- [gnurl] 203/222: url: make Curl_close() NULLify the pointer too, gnunet, 2019/11/06
- [gnurl] 205/222: gtls: make gnutls_bye() not wait for response on shutdown, gnunet, 2019/11/06
- [gnurl] 207/222: mbedtls: add error message for cert validity starting in the future,
gnunet <=
- [gnurl] 210/222: configure: only say ipv6 enabled when the variable is set, gnunet, 2019/11/06
- [gnurl] 216/222: awk, gnunet, 2019/11/06
- [gnurl] 161/222: asyn-thread: make use of Curl_socketpair() where available, gnunet, 2019/11/06
- [gnurl] 174/222: url: normalize CURLINFO_EFFECTIVE_URL, gnunet, 2019/11/06
- [gnurl] 167/222: KNOWN_BUGS: remove "CURLFORM_CONTENTLEN in an array", gnunet, 2019/11/06
- [gnurl] 190/222: conn-reuse: requests wanting NTLM can reuse non-NTLM connections, gnunet, 2019/11/06
- [gnurl] 185/222: runtests: get textaware info from curl instead of perl, gnunet, 2019/11/06
- [gnurl] 198/222: HTTP3: fix invalid use of sendto for connected UDP socket, gnunet, 2019/11/06
- [gnurl] 169/222: connect: silence sign-compare warning, gnunet, 2019/11/06
- [gnurl] 201/222: url: Curl_free_request_state() should also free doh handles, gnunet, 2019/11/06