]> git.ipfire.org Git - thirdparty/haproxy.git/commit
MINOR: ssl: Do not dump decrypted privkeys in 'dump ssl cert'
authorRemi Tricot-Le Breton <rlebreton@haproxy.com>
Tue, 28 Oct 2025 17:00:47 +0000 (18:00 +0100)
committerWilliam Lallemand <wlallemand@haproxy.com>
Wed, 29 Oct 2025 09:54:17 +0000 (10:54 +0100)
commitdc35a3487bcb74d3bc9585e9cac7a196166c54ba
tree31a9ed8d3c6ae01894e8ce2955e9ff2cab323fc5
parent5a036d223b1a5dcd32b36e68307d6e9dfeb5a871
MINOR: ssl: Do not dump decrypted privkeys in 'dump ssl cert'

A private keys that is password protected and was decoded during init
thanks to the password obtained thanks to 'ssl-passphrase-cmd' should
not be dumped via 'dump ssl cert' CLI command.
include/haproxy/ssl_ckch-t.h
include/haproxy/ssl_sock-t.h
src/ssl_ckch.c
src/ssl_sock.c