diff COPYRIGHT @ 27997:4c5f35f2b1ff

A better solution for verifying certificate chains with NSS 3.12.3. Instead of allowing weak certificate algorithms all over the place, which is what the NSS flag we are enabling, short-circuit a verification a step early if the fingerprint of the last-checked certificate matches its signer's certificate (retrieved from the trusted CA pool). Closes #9360.
author Paul Aurich <paul@darkrain42.org>
date Wed, 22 Jul 2009 06:03:31 +0000
parents bbf5c43e269a
children 37141b94d568
line wrap: on
line diff