sks-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Sks-devel] Dirmngr now supports hkps


From: Werner Koch
Subject: Re: [Sks-devel] Dirmngr now supports hkps
Date: Mon, 19 May 2014 10:10:53 +0200
User-agent: Gnus/5.13 (Gnus v5.13)

On Thu,  8 May 2014 20:28, address@hidden said:

> they want to be able to select a CA based on the pool.  The current
> design of CA management/selection for keyservers in GnuPG, including the
> new dirmngr support, has to use the pool name in TLS SNI and Host: to

I changed that.  If Dirmngr figures that the given keyserver is a pool
(more than one A or AAAA record), it used the canonical name of the pool
for Host and SNI.  If it it is not a pool the the name is passed
verbatim to the http layer.

I also added some debug code to print the server certificates on failed.
DNS names are missing in the output but will be added soon.


Salam-Shalom,

   Werner

-- 
Die Gedanken sind frei.  Ausnahmen regelt ein Bundesgesetz.




reply via email to

[Prev in Thread] Current Thread [Next in Thread]