Skip to content

[BUG]服务端未校验客户端证书是否过期 #551

@ldwnt

Description

@ldwnt

问题:0.10.6版本,客户端使用过期的fullchain.cer任然可以连接服务端并工作。
期望结果:服务端拒绝客户端连接。
服务端/客户端配置:
"ssl": {
"sni": "*.my.domain",
"verify": true,
"verify_hostname": true,
"cert": "/root/trojan/fullchain.cer",
"key": "/root/trojan/my.domain.key"
},

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions