فهرست منبع

Merge pull request #6440 from lclarkmichalek/how-to-ssl-question-mark

Obey the usual rules of SSL server name verification when using a private PKI
Anthony Romano 9 سال پیش
والد
کامیت
2db9d3b702
1فایلهای تغییر یافته به همراه0 افزوده شده و 4 حذف شده
  1. 0 4
      pkg/transport/listener.go

+ 0 - 4
pkg/transport/listener.go

@@ -23,7 +23,6 @@ import (
 	"crypto/x509/pkix"
 	"encoding/pem"
 	"fmt"
-	"log"
 	"math/big"
 	"net"
 	"os"
@@ -235,9 +234,6 @@ func (info TLSInfo) ClientConfig() (*tls.Config, error) {
 		if err != nil {
 			return nil, err
 		}
-		// if given a CA, trust any host with a cert signed by the CA
-		log.Println("warning: ignoring ServerName for user-provided CA for backwards compatibility is deprecated")
-		cfg.ServerName = ""
 	}
 
 	if info.selfCert {