Commit 348cc80
tls: make rejectUnauthorized default to true
rejectUnauthorized used to be false when the property was undefined or
null, quietly allowing client connections for which certificates have
been requested (requestCert is true) even when the client certificate
was not authorized (signed by a trusted CA). Change this so
rejectUnauthorized is always true unless it is explicitly set to false.
PR-URL: #5923
Reviewed-By: Sam Roberts <vieuxtech@gmail.com>
Reviewed-By: James M Snell <jasnell@gmail.com>
Reviewed-By: Ben Noordhuis <info@bnoordhuis.nl>
Reviewed-By: Colin Ihrig <cjihrig@gmail.com>1 parent ee19e29 commit 348cc80Copy full SHA for 348cc80
File tree
Expand file treeCollapse file tree
4 files changed
+16
-21
lines changedOpen diff view settings
Filter options
- doc/api
- lib
- test/parallel
Expand file treeCollapse file tree
4 files changed
+16
-21
lines changedOpen diff view settings
Collapse file
+9-7Lines changed: 9 additions & 7 deletions
- Display the source diff
- Display the rich diff
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| ||
712 | 712 | |
713 | 713 | |
714 | 714 | |
715 | | - |
| 715 | + |
| 716 | + |
| 717 | + |
| 718 | + |
716 | 719 | |
717 | 720 | |
718 | 721 | |
| ||
769 | 772 | |
770 | 773 | |
771 | 774 | |
772 | | - |
| 775 | + |
773 | 776 | |
774 | 777 | |
775 | 778 | |
| ||
1012 | 1015 | |
1013 | 1016 | |
1014 | 1017 | |
1015 | | - |
| 1018 | + |
1016 | 1019 | |
1017 | | - |
| 1020 | + |
1018 | 1021 | |
1019 | 1022 | |
1020 | 1023 | |
| ||
1190 | 1193 | |
1191 | 1194 | |
1192 | 1195 | |
1193 | | - |
1194 | | - |
1195 | | - |
| 1196 | + |
| 1197 | + |
1196 | 1198 | |
1197 | 1199 | |
1198 | 1200 | |
|
Collapse file
+3-12Lines changed: 3 additions & 12 deletions
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| ||
920 | 920 | |
921 | 921 | |
922 | 922 | |
923 | | - |
924 | | - |
925 | | - |
926 | | - |
927 | | - |
928 | | - |
929 | | - |
930 | | - |
931 | | - |
932 | | - |
933 | | - |
| 923 | + |
| 924 | + |
934 | 925 | |
935 | 926 | |
936 | 927 | |
| ||
1062 | 1053 | |
1063 | 1054 | |
1064 | 1055 | |
1065 | | - |
| 1056 | + |
1066 | 1057 | |
1067 | 1058 | |
1068 | 1059 | |
|
Collapse file
test/parallel/test-https-foafssl.js
Copy file name to clipboardExpand all lines: test/parallel/test-https-foafssl.js+2-1Lines changed: 2 additions & 1 deletion
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| ||
42 | 42 | |
43 | 43 | |
44 | 44 | |
45 | | - |
| 45 | + |
| 46 | + |
46 | 47 | |
47 | 48 | |
48 | 49 | |
|
Collapse file
test/parallel/test-tls-session-cache.js
Copy file name to clipboardExpand all lines: test/parallel/test-tls-session-cache.js+2-1Lines changed: 2 additions & 1 deletion
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| ||
56 | 56 | |
57 | 57 | |
58 | 58 | |
59 | | - |
| 59 | + |
| 60 | + |
60 | 61 | |
61 | 62 | |
62 | 63 | |
|
0 commit comments