On 14/12/20 9:11 am, Eliezer Croitor wrote:
I am trying to understand the way the sslcrtvalidator_program  works.
I am pretty sure I have asked this in the past but didn’t found it for some
reason.

I want to read line by line so.
/^-----BEGIN CERTIFICATE-----$/
***
/^-----END CERTIFICATE-----$/

What else should I look for? I was thinking about validating with some extra
values in the request, for example ip/domain:port and sni.
Are these available in some way?


The details you need are all here:


<https://wiki.squid-cache.org/Features/AddonHelpers#SSL_server_certificate_validator>

Notice that it receives chains of certificates - maybe several, and/or out of order. Whatever the client sends.


Amos
_______________________________________________
squid-users mailing list
squid-users@lists.squid-cache.org
http://lists.squid-cache.org/listinfo/squid-users

Reply via email to