]> git.ipfire.org Git - thirdparty/haproxy.git/commit
MINOR: ssl: Prevent delete on certificate used by jwt_verify
authorRemi Tricot-Le Breton <rlebreton@haproxy.com>
Mon, 30 Jun 2025 14:56:28 +0000 (16:56 +0200)
committerWilliam Lallemand <wlallemand@haproxy.com>
Mon, 30 Jun 2025 15:59:55 +0000 (17:59 +0200)
commit093a3ad7f2e2f526cdda7481a830b46a6afaf722
tree926bf88769da4b28f61cf5082d28e99cf834b906
parent31955e6e0afc2d93534151e68591942689a70fd3
MINOR: ssl: Prevent delete on certificate used by jwt_verify

A ckch_store used in JWT verification might not have any ckch instances
or crt-list entries linked but we don't want to be able to remove it via
the CLI anyway since it would make all future jwt_verify calls using
this certificate fail.
src/ssl_ckch.c