Which name exactly is checked if sendmail uses the SSL library to verify
a client certificate
Henning Hucke wrote:
Which name exactly is checked if sendmail uses the SSL library to verify
a client certificate
None - certificates are verified against the list of CAs
which you specified.
However, sendmail allows you do any kind of check you want to perform
via its rulesets and some builtin features. See cf/README, section
"Allowing Connections" for the available features (and doc/op/op.*
for the rulesets)
just to verify that I understand this correct: Beside checking the
validity of a client certificate with its issuing certification authority no further checks are processed by default?
Uh! I think I'll write an appropriate rule set in the next few weeks to verify more than that! :-)
Sysop: | Keyop |
---|---|
Location: | Huddersfield, West Yorkshire, UK |
Users: | 428 |
Nodes: | 16 (2 / 14) |
Uptime: | 108:04:22 |
Calls: | 9,053 |
Calls today: | 10 |
Files: | 13,395 |
Messages: | 6,015,806 |