Using Common Name in certificates
Adnan Maolood
me at adnano.co
Tue Nov 3 02:07:08 GMT 2020
On Mon Nov 2, 2020 at 9:04 PM EST, wrote:
> When I made the fix, I posted about it on the mailing list:
>
> https://lists.orbitalfox.eu/archives/gemini/2020/002391.html
Using `==` to compare the common name with the domain name doesn't
handle all cases though. The common name could contain a wildcard
hostname.
To resolve this I simply vendored in the parts of crypto/tls responsible
for hostname verification, and removed the GODEBUG variable check. You
can find the code here:
https://git.sr.ht/~adnano/go-gemini/tree/master/vendor.go
More information about the Gemini
mailing list