Jay Satiro b8673bb9f0 openssl: Fix verification of server-sent legacy intermediates
- Try building a chain using issuers in the trusted store first to avoid
problems with server-sent legacy intermediates.

Prior to this change server-sent legacy intermediates with missing
legacy issuers would cause verification to fail even if the client's CA
bundle contained a valid replacement for the intermediate and an
alternate chain could be constructed that would verify successfully.

https://rt.openssl.org/Ticket/Display.html?id=3621&user=guest&pass=guest
2015-06-07 23:33:32 -04:00
..
2015-04-22 17:07:19 -04:00
2015-03-03 23:17:43 +01:00
2015-03-20 19:03:53 +01:00
2015-03-20 20:14:35 +01:00
2015-05-02 22:21:25 +02:00
2015-03-25 08:32:12 +01:00