caddy/caddytls
Matt Holt f6e50890b3
caddytls: Raise TLS alert if no certificate matches SAN (closes #1303) (#2339)
* caddytls: Raise TLS alert if no certificate matches SAN (closes #1303)

I don't love this half-baked solution to the issue raised in #1303 way
more than a year after the original issue was closed (the necro comments
are about an issue separate from the original issue that started it),
but I do like TLS alerts more than wrong certificates.

* Restore test to match

* Restore another previous test
2018-11-12 14:24:07 -07:00
..
storagetest Apply Apache license to all .go source files (closes #1865) 2017-09-22 23:56:58 -06:00
certificates_test.go caddytls: Raise TLS alert if no certificate matches SAN (closes #1303) (#2339) 2018-11-12 14:24:07 -07:00
certificates.go Merge branch 'master' into telemetry 2018-04-20 00:03:57 -06:00
client_test.go Apply Apache license to all .go source files (closes #1865) 2017-09-22 23:56:58 -06:00
client.go Merge branch 'master' into telemetry 2018-04-20 00:03:57 -06:00
config_test.go vendor: delete github.com/codahale/aesnicheck in favor of cpuid (#2020) 2018-02-09 10:39:21 -07:00
config.go caddytls: Raise TLS alert if no certificate matches SAN (closes #1303) (#2339) 2018-11-12 14:24:07 -07:00
crypto_test.go Apply Apache license to all .go source files (closes #1865) 2017-09-22 23:56:58 -06:00
crypto.go caddytls: Raise TLS alert if no certificate matches SAN (closes #1303) (#2339) 2018-11-12 14:24:07 -07:00
filestorage_test.go tls: Fix tests on Windows (#2093) 2018-03-28 12:42:47 -06:00
filestorage.go tls: Prevent directory traversal via On-Demand TLS (fixes #2092) 2018-03-28 12:04:35 -06:00
filestoragesync.go tls: Prevent directory traversal via On-Demand TLS (fixes #2092) 2018-03-28 12:04:35 -06:00
handshake_test.go caddytls: Raise TLS alert if no certificate matches SAN (closes #1303) (#2339) 2018-11-12 14:24:07 -07:00
handshake.go caddytls: Raise TLS alert if no certificate matches SAN (closes #1303) (#2339) 2018-11-12 14:24:07 -07:00
httphandler_test.go tls: Fix HTTP->HTTPS redirects and HTTP challenge when using custom port 2018-02-16 12:05:34 -07:00
httphandler.go Dangit, goimports imported the wrong acme package 2018-03-15 19:38:29 -06:00
maintain.go tls: Avoid nil pointer deref when parsing corrupt OCSP staple files 2018-02-21 10:53:12 -07:00
setup_test.go tls: Initial transition to ACMEv2 and support automatic wildcard certs 2018-03-14 21:44:08 -06:00
setup.go caddytls: Raise TLS alert if no certificate matches SAN (closes #1303) (#2339) 2018-11-12 14:24:07 -07:00
storage.go tls: Prevent directory traversal via On-Demand TLS (fixes #2092) 2018-03-28 12:04:35 -06:00
tls_test.go tls: Initial transition to ACMEv2 and support automatic wildcard certs 2018-03-14 21:44:08 -06:00
tls.go tls: Support distributed solving of the HTTP-01 challenge 2018-03-15 19:30:45 -06:00
user_test.go caddytls: Improve flaky test related to email (#2318) 2018-10-30 11:59:23 -06:00
user.go tls: Initial transition to ACMEv2 and support automatic wildcard certs 2018-03-14 21:44:08 -06:00