Dňa 3. septembra 2022 9:17:41 UTC používateľ Simon Arlott via mailop 
<mailop@mailop.org> napísal:


>Looks like the latest version of this (https://github.com/shuque/gotls)
>returns the reason why it fails, which appears to be a bug in the tool
>caused by the expired DST X3 CA:
>
>Result: FAILED: DANE TLS error: cert chain: x509: certificate has expired or 
>is not yet valid: current time 2022-09-03T09:10:15Z is after 
>2021-09-30T14:01:15Z

Is not 3 X X TLSA (DANE-EE) intended to use without chain verifying?
Thus only end entity certificate have to match?

regards

-- 
Slavko
_______________________________________________
mailop mailing list
mailop@mailop.org
https://list.mailop.org/listinfo/mailop

Reply via email to