.
D 2018-09-22T09:29:33.809
J foundin 1.7.16
J icomment The\swebsite\shttps://badssl.com/\scollects\svarious\stest\scases\sfor\sinsecure\sTLS\sconnections,\ssuch\sas\sexpired\sor\sincorrect\shostnames\sin\scertificates.\sI\scan\sget\smany\sof\sthem\sto\spass\sby\susing\sexplicit\ssettings:\r\n\r\n\s\s\s\s-tls1\s0\s-tls1.1\s0\s-tls1.2\s1\s-require\s1\s-cafile\s/etc/ssl/cert.pem\s-cipher\s{ECDHE-ECDSA-AES256-GCM-SHA384\sECDHE-ECDSA-AES128-GCM-SHA256\sECDHE-RSA-AES256-GCM-SHA384\sECDHE-RSA-AES128-GCM-SHA256}\s-autoservername\s1\r\n\r\nBut\sothers\sseem\sto\sbe\simpossible\sto\spass\sthe\stests\swith\sthe\scurrent\slibrary.\sI\scan\smanually\sfix\sthe\shostname/wildcard\smatching\sby\susing\sa\s-command\scallback\s(there\sis\sanother\sbug\scovering\sthis),\sbut\sI\scannot\seither\sget\sit\sto\sreject\sa\srevoked\scertificate\sor\sa\sSHA-1\sintermediate\scert.\sThese\scould\sbe\sdone\svia\sthe\s-command\scallback,\sbut\sunfortunately\sthe\sraw\scertificate\sfield\spassed\sto\sthis\scallback\sis\struncated\sso\scannot\sbe\sparsed.
J login anonymous
J mimetype text/x-fossil-wiki
J private_contact 4d3bc24d727f6c89fb1509fef02f21887282efcc
J severity Severe
J status Open
J title Library\sfails\smost\stests\sfrom\sbadssl.com
J type Code\sDefect
K 9773973cfc90212087f851de2c94014ef72339d1
U anonymous
Z fe360c78977578809a71a2c40d436c9d