[prev in list] [next in list] [prev in thread] [next in thread] 

List:       stunnel-users
Subject:    Re: [stunnel-users] Possible to verify client certificate BUT ignore expiration-date?
From:       Christopher Schultz <chris () christopherschultz ! net>
Date:       2019-05-14 13:49:03
Message-ID: 6525a540-57a1-b326-becb-596ac2dcbcca () christopherschultz ! net
[Download RAW message or body]

[Attachment #2 (multipart/signed)]

[Attachment #4 (multipart/mixed)]


Eric,

On 5/13/19 18:06, Eric Eberhard wrote:
> Use openssl to make a private cert?

What is a "private cert"?

Also, I need to trust an existing certificate... If they can create a
new certificate, then I can just trust the new one. I'm looking for a
stop-gap measure, here.

Thanks,
-chris

> -----Original Message-----
> From: stunnel-users [mailto:stunnel-users-bounces@stunnel.org] On Behalf Of \
>                 Christopher Schultz
> Sent: Monday, May 13, 2019 2:28 PM
> To: stunnel-users@stunnel.org
> Subject: [stunnel-users] Possible to verify client certificate BUT ignore \
> expiration-date? 
> All,
> 
> Does anyone know if it is possible to perform all other verification of a client \
> certificate EXCEPT allow the certificate to have expired? 
> We have a vendor whose certificate has expired, and we want to allow their old \
> certificate to work while they chase their tails trying to figure out the best way \
> to re-issue a new cert for us. *eyeroll* 
> Is it possible?
> 
> Thanks,
> -chris
> 
> 
> 
> 


["signature.asc" (application/pgp-signature)]
[Attachment #8 (text/plain)]

_______________________________________________
stunnel-users mailing list
stunnel-users@stunnel.org
https://www.stunnel.org/cgi-bin/mailman/listinfo/stunnel-users


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic