#3916: Mutt 1.8: TOFU approach bails out on first fail or reject, not offering
higher links of the cert' chain
--------------------------+----------------------
Reporter: kratem32 | Owner: mutt-dev
Type: enhancement | Status: closed
Priority: minor | Milestone: 1.8
Component: crypto | Version:
Resolution: fixed | Keywords: tofu
--------------------------+----------------------
Comment (by m-a):
...only that all those EVP_sha1() in compare_certificates() and
check_certificate_cache() should be replaced by something modern given
https://shattered.io/ and https://konklone.com/post/why-google-is-
hurrying-the-web-to-kill-sha-1 while we think of it, lest we forget to
change that later.
--
Ticket URL: <https://dev.mutt.org/trac/ticket/3916#comment:77>
Mutt <http://www.mutt.org/>
The Mutt mail user agent