[openssl.org #2732] Bug: verification fails if muliple certification path (EV/Verisign)

2012-03-06 Thread Dan Lukes via RT
Same problem apply for cross-certificates which create multiple paths also. Imagine the expiring CA (expiring within year or two, not expired already). The organization will create the new one, but want to maintain transition period for the users. So create two cross certificates - the public

[openssl.org #2732] Bug: verification fails if muliple certification path (EV/Verisign)

2012-02-25 Thread Steffen Ullrich via RT
Hi, we get the following verification problem in our product, because some servers like signin.ebay.de, comdirect.de or meine.deutsche-bank.de add additional certicates to the chain, which are needed for some clients but not for others. Unfortunatly these are not minor companies and all of the