]> git.ipfire.org Git - thirdparty/haproxy.git/commit
BUG/MINOR: ssl/cli: free the previous ckch content once a PEM is loaded
authorWilliam Lallemand <wlallemand@haproxy.com>
Thu, 23 Jan 2020 09:56:05 +0000 (10:56 +0100)
committerWilliam Lallemand <wlallemand@haproxy.org>
Thu, 23 Jan 2020 10:08:46 +0000 (11:08 +0100)
commit75b15f790f2be0600483476c1505fec0ce898e35
treede918fbdaf83ddee2dd4c5ae1f39aba320399216
parentd0142e7224e874380b3f2c5f651557ffe74155c0
BUG/MINOR: ssl/cli: free the previous ckch content once a PEM is loaded

When using "set ssl cert" on the CLI, if we load a new PEM, the previous
sctl, issuer and OCSP response are still loaded. This doesn't make any
sense since they won't be usable with a new private key.

This patch free the previous data.

Should be backported in 2.1.
src/ssl_sock.c