Re: Possible to verify client certificate BUT ignore expiration-date?
Christopher Schultz <[email protected]> Tue, 14 May 2019 09:49:03 -0400
| Newsgroups | gmane.network.stunnel.user |
|---|---|
| Message-ID | <[email protected]> |
Eric, On 5/13/19 18:06, Eric Eberhard wrote: > Use openssl to make a private cert? What is a "private cert"? Also, I need to trust an existing certificate... If they can create a new certificate, then I can just trust the new one. I'm looking for a stop-gap measure, here. Thanks, -chris > -----Original Message----- > From: stunnel-users [mailto:[email protected]] On Behalf Of Christopher Schultz > Sent: Monday, May 13, 2019 2:28 PM > To: [email protected] > Subject: [stunnel-users] Possible to verify client certificate BUT ignore expiration-date? > > All, > > Does anyone know if it is possible to perform all other verification of a client certificate EXCEPT allow the certificate to have expired? > > We have a vendor whose certificate has expired, and we want to allow their old certificate to work while they chase their tails trying to figure out the best way to re-issue a new cert for us. *eyeroll* > > Is it possible? > > Thanks, > -chris > > > > _______________________________________________ stunnel-users mailing list [email protected] https://www.stunnel.org/cgi-bin/mailman/listinfo/stunnel-users
signature.asc
(application/pgp-signature, 899 B)
-----BEGIN PGP SIGNATURE----- Comment: Using GnuPG with Thunderbird - https://www.enigmail.net/ iQIzBAEBCAAdFiEEMmKgYcQvxMe7tcJcHPApP6U8pFgFAlzax08ACgkQHPApP6U8 pFiMaA//bHdxn6m10A6jVyu3WZ0tKGgBPfQcmD5vF6febhv2lltGg5+/K1MBrNIC mC3RC3nH2gbC1ePt1o95qYmXhymFF/i8kaEzPWmMzjswcahCf8INKfO7MxELeTKD o8nWzGQ6AJRPjn6/0HF8aEEyI2BbyqzqqUNrVapGN9yapqMqRrcXNqYkTvUbJneE 2RLsxJNk3M+pf1HCVtA2AeAyrTJGoU9SGYJBr4F7OeROTq/cqB38kIcJ332ug6Zi 6znLcsPyUAHggntP5zBRl0CrjrxhaIbvZdOd7kYvwJhbSBJ9wmz3VpKjGLVDlE3e /is2JfLttftTw8wH40CIrZXObRYC6Eri9qxBkszQJyXo9UOUjeVUAy0nutnOCYMr A2wqGcXeNRefuUi48Zl6XJo1GRFHOmjani3E+qf0k+gw0gAhFeMBk1aSfFAt4BxI HIQC34jeUnt5VFu2k/NR3MXCkzVwITtP6uV5DLdfk1JPRkGFx0PpcbwLxs6p/MO/ TFZIBCgu3uCwm7g5F3QVGxLj1iPt7cFpsUyp9CuULUnzAYD/uhdSpezBFS41B3i+ 0w/P7BAkHSWMZb1mBB3/JCO8CFvGiA1OjjXbK/JBFl7nCxOHGrMnS6In1cbfh13c h3lgQbmJZPzcTl9K72vRZ0cYdEzohBe/TjSBjN6J9Q1sKMUnPD8= =hbo3 -----END PGP SIGNATURE-----