Skip to content

Commit

Permalink
sever side checks OCSP even if it uses v2 multi
Browse files Browse the repository at this point in the history
  • Loading branch information
miyazakh committed Aug 6, 2024
1 parent ac4f3fb commit c947fc8
Showing 1 changed file with 3 additions and 1 deletion.
4 changes: 3 additions & 1 deletion src/internal.c
Original file line number Diff line number Diff line change
Expand Up @@ -14836,7 +14836,9 @@ int ProcessPeerCerts(WOLFSSL* ssl, byte* input, word32* inOutIdx,
#ifdef HAVE_OCSP
#ifdef HAVE_CERTIFICATE_STATUS_REQUEST_V2
addToPendingCAs = 0;
if (ssl->status_request_v2 && TLSX_CSR2_IsMulti(ssl->extensions)) {
if (ssl->options.side == WOLFSSL_CLIENT_END &&
ssl->status_request_v2 &&
TLSX_CSR2_IsMulti(ssl->extensions)) {
ret = TLSX_CSR2_InitRequests(ssl->extensions,
args->dCert, 0, ssl->heap);
addToPendingCAs = 1;
Expand Down

0 comments on commit c947fc8

Please sign in to comment.