From: Bastien Bouclet Date: Sat, 2 Nov 2019 13:15:18 +0000 (+0100) Subject: mbedtls: add error message for cert validity starting in the future X-Git-Tag: curl-7_67_0~5 X-Git-Url: http://git.ipfire.org/?a=commitdiff_plain;h=9910d6b9a49eac5ce9ab5d89dfb64327ab292a95;p=thirdparty%2Fcurl.git mbedtls: add error message for cert validity starting in the future Closes #4552 --- diff --git a/lib/vtls/mbedtls.c b/lib/vtls/mbedtls.c index 27898505f1..e34ec9d13f 100644 --- a/lib/vtls/mbedtls.c +++ b/lib/vtls/mbedtls.c @@ -588,6 +588,9 @@ mbed_connect_step2(struct connectdata *conn, else if(ret & MBEDTLS_X509_BADCERT_NOT_TRUSTED) failf(data, "Cert verify failed: BADCERT_NOT_TRUSTED"); + else if(ret & MBEDTLS_X509_BADCERT_FUTURE) + failf(data, "Cert verify failed: BADCERT_FUTURE"); + return CURLE_PEER_FAILED_VERIFICATION; }