Mercurial > pidgin.yaz
diff COPYRIGHT @ 27997:4c5f35f2b1ff
A better solution for verifying certificate chains with NSS 3.12.3.
Instead of allowing weak certificate algorithms all over the place,
which is what the NSS flag we are enabling, short-circuit a verification
a step early if the fingerprint of the last-checked certificate matches
its signer's certificate (retrieved from the trusted CA pool).
Closes #9360.
author | Paul Aurich <paul@darkrain42.org> |
---|---|
date | Wed, 22 Jul 2009 06:03:31 +0000 |
parents | bbf5c43e269a |
children | 37141b94d568 |