]> git.ipfire.org Git - thirdparty/openvpn.git/commit
Log serial number of revoked certificate
authorBoris Lytochkin <lytboris@yandex-team.ru>
Sun, 20 Sep 2015 14:05:22 +0000 (17:05 +0300)
committerGert Doering <gert@greenie.muc.de>
Sun, 20 Sep 2015 16:46:19 +0000 (18:46 +0200)
commit767e4c56becbfeea525e4695a810593f373883cd
treeba121d7e342934a9504ca52c77700a4268dce6f0
parentfa5697f022110f557710f709c9ac0a3420bb073c
Log serial number of revoked certificate

In most of situations admin of OpenVPN server needs to know which
particular certificate is used by client.
In the case when certificate is OK, environment variable can be used for
that but once it is revoked, no user scripts are invoked so there is
no way to get serial number: only subject is printed in logs.

So we log certificate serial in case it is revoked.

Sponsored-by: Yandex LLC
Signed-off-by: Boris Lytochkin <lytboris@yandex-team.ru>
Acked-by: Steffan Karger <steffan.karger@fox-it.com>
Message-Id: <55FEBF7E.3010209@yandex-team.ru>
URL: http://article.gmane.org/gmane.network.openvpn.devel/10154

Signed-off-by: Gert Doering <gert@greenie.muc.de>
src/openvpn/ssl_verify_openssl.c
src/openvpn/ssl_verify_polarssl.c