Add missing AUTH_RULE for trusted self-signed peer certificates
This commit is contained in:
@@ -716,6 +716,11 @@ METHOD(enumerator_t, trusted_enumerate, bool,
|
|||||||
DBG1(DBG_CFG, " using trusted certificate \"%Y\"",
|
DBG1(DBG_CFG, " using trusted certificate \"%Y\"",
|
||||||
this->pretrusted->get_subject(this->pretrusted));
|
this->pretrusted->get_subject(this->pretrusted));
|
||||||
*cert = this->pretrusted;
|
*cert = this->pretrusted;
|
||||||
|
if (!this->auth->get(this->auth, AUTH_RULE_SUBJECT_CERT))
|
||||||
|
{ /* add cert to auth info, if not returned by trustchain */
|
||||||
|
this->auth->add(this->auth, AUTH_RULE_SUBJECT_CERT,
|
||||||
|
this->pretrusted->get_ref(this->pretrusted));
|
||||||
|
}
|
||||||
if (auth)
|
if (auth)
|
||||||
{
|
{
|
||||||
*auth = this->auth;
|
*auth = this->auth;
|
||||||
|
|||||||
Reference in New Issue
Block a user