New issue
Advanced search Search tips

Issue 844210 link

Starred by 2 users

Issue metadata

Status: Untriaged
Owner: ----
Components:
EstimatedDays: ----
NextAction: ----
OS: ----
Pri: 3
Type: Bug


Sign in to add a comment

Increase strictness/standards compliance of certificate verification

Project Member Reported by eroman@chromium.org, May 17 2018

Issue description

Meta bug for tracking and removing behaviors in certificate parsing/verification which are not defined by modern profiles (i.e. RFC 5280 / Baseline Requirements).

This includes relaxations in parsing (accepting invalid DER / ASN.1) and verification.

Because of the possibility of breaking existing chains, each of these deprecations will involve measurement, and following a deprecation process.
 

Comment 1 by eroman@chromium.org, May 17 2018

Blockedon: 844203

Comment 2 by eroman@chromium.org, May 17 2018

Blockedon: 843738

Comment 3 by eroman@chromium.org, May 17 2018

Blockedon: 843735

Comment 4 by eroman@chromium.org, May 17 2018

Blockedon: 791106

Sign in to add a comment