>Cute, but likely completely insecure.  I see no check that the
>certificate chain is trusted.

Is it really that hard to look at the documentation for the python
libraries?  It's right here: https://docs.python.org/3/library/http.client.html

By default, the https library checks the certificate chain against the
usual pile of CAs and throws an exception if the validation fails.
You can turn off the checks for applications that want to do something
special, but we didn't do that.

R's,
John

_______________________________________________
Uta mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/uta

Reply via email to