Re: libtls syslogd pledge abort

2016-12-29 Thread Bob Beck
> Or do not call tls_configure_ssl_verify() if verification is turned > off. This makes sense to me. > > Index: lib/libtls/tls_client.c > === > RCS file: /data/mirror/openbsd/cvs/src/lib/libtls/tls_client.c,v > retrieving revisi

libtls syslogd pledge abort

2016-12-29 Thread Alexander Bluhm
Hi, The previous commit to libtls makes syslogd abort due to pledge if certification verification is turned off. This happens in the chrooted child process. 87878 syslogd CALL open(0x2d203ce4,0) 87878 syslogd NAMI "/etc/ssl/cert.pem" 87878 syslogd PLDG open, "rpath", errno 1 Operation n