Print

Print


When XRootD act as active party in the HTTP-TPC it doesn't verify if remote site certificate (+ CAs certificates in the chain) is valid with respect to CRLs. This means XRootD is happy to establish TLS connection with storage endpoint with revoked certificate and e.g. sent there valid tokens.


-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/xrootd/xrootd/issues/1383

########################################################################
Use REPLY-ALL to reply to list

To unsubscribe from the XROOTD-DEV list, click the following link:
https://listserv.slac.stanford.edu/cgi-bin/wa?SUBED1=XROOTD-DEV&A=1