Hello,

gnutls does not verify a certificate when the intermediate CA
certificate is expired.

situation:

server cert (valid)

signed by

intermediate cert (expired, valid at the time of signature)

signet by

root ca cert (valid)

Both GNUtls and OpenSSL refuse to verify the connection.

I am not sure if the certificate is technically valid in this case or not.

Any insight?

Thanks

Michal

_______________________________________________
Help-gnutls mailing list
Help-gnutls@gnu.org
https://lists.gnu.org/mailman/listinfo/help-gnutls

Reply via email to