BIND 10 #127: Bindctl: remove client-side certificate && using digest authentication

BIND 10 Development do-not-reply at isc.org
Fri May 28 01:15:31 UTC 2010


#127: Bindctl: remove client-side certificate && using digest authentication
-------------------------+--------------------------------------------------
 Reporter:  zhanglikun   |        Owner:  zhanglikun                                 
     Type:  enhancement  |       Status:  assigned                                   
 Priority:  minor        |    Milestone:  04. 2nd Incremental Release: Early Adopters
Component:  bind-ctl     |   Resolution:                                             
 Keywords:               |    Sensitive:  0                                          
-------------------------+--------------------------------------------------

Comment(by zhanglikun):

 Sorry for delay response.
     Currently I don't think we need think on it(client certificate
 validation), since it works with the same way with server certificate
 validation. Once we have fixed the latter one, it's easy to support client
 certificate validation.(I think), any suggestion?
     I rechecked the code sent to me by somebody yesterday(Which made me
 think it has been done), I found it didn't implement as what I expected.
 the code did like this: let bindctl first connect with cmdctl over msgq,
 to get the path of server certificate file. What I expected is: let
 bindctl to get server certificate over normal tcp connection.

-- 
Ticket URL: <https://bind10.isc.org/ticket/127#comment:4>
BIND 10 Development <http://bind10.isc.org>
BIND 10 Development


More information about the bind10-tickets mailing list