2008/12/17 Jarod Neuner <j.neu...@networkharbor.com>:
> This is first in a series of patches to the TLS code that will improve
> certificate validation facilities.  Significant changes in this round
> include:
>
> 1) The TLS handshake is no longer handled via transparent negotiation.
> Certain static methods from tport.c were exposed to make this possible.
>
> 2) Certificate subjects are copied out of the peer certificate before
> the first message is sent.  The next patch will include code that allows
> the stack to reject messages sent to a untrusted peer.
>
> 3) The tport module can now report whether a secondary has a verified
> certificate chain and the subjects of the peer certificate.
>
> These patches should not change the behavior of NTA or NUA.

Thanks! I've applied the changes and added some text to RELEASE.
Looking forward for your net patches...

--Pekka
-- 
Pekka.Pessi mail at nokia.com

------------------------------------------------------------------------------
_______________________________________________
Sofia-sip-devel mailing list
Sofia-sip-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/sofia-sip-devel

Reply via email to