[gnutls-devel] GnuTLS | gnutls_x509_crt_check_hostname does not handle trailing dots (#1548)
Read-only notification of GnuTLS library development activities
gnutls-devel at lists.gnutls.org
Mon Apr 22 13:57:27 CEST 2024
Simon Josefsson commented: https://gitlab.com/gnutls/gnutls/-/issues/1548#note_1874910331
Can anyone find guidance on this in RFC 6125? On a quick reading, I can't find any argument that it supports strings with trailing dot, and some argument that it should not support them (dot-separated non-empty strings implies no trailing dot). The comparison function is complex enough as it is, so it would be nice to be as consistent as possible to some standard document.
--
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/-/issues/1548#note_1874910331
You're receiving this email because of your account on gitlab.com.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20240422/ac11bd7f/attachment.html>
More information about the Gnutls-devel
mailing list