[PATCH] OpenSSL: Accept certificates marked for both server and client use

Jouni Malinen j at w1.fi
Wed Feb 19 08:25:20 EST 2014


On Sat, Feb 15, 2014 at 07:05:05PM -0500, Anders Kaseorg wrote:
> Okay, then it sounds like the most reasonable solution is reverting commit 
> 51e3eafb68e15e78e98ca955704be8a6c3a7b304.

I did that now. I don't yet know what will happen with the other
conflicting requirements in this area, but I'll try to get them changed
and at least keep this use case in mind as far as wpa_supplicant
implementation is concerned. There is now a regression test case that
verifies interop with this type of AAA server certificate.

-- 
Jouni Malinen                                            PGP id EFC895FA


More information about the HostAP mailing list