]> git.ipfire.org Git - thirdparty/haproxy.git/commitdiff
MINOR: quic: Useless call to SSL_CTX_set_default_verify_paths()
authorFrédéric Lécaille <flecaille@haproxy.com>
Thu, 31 Mar 2022 14:37:01 +0000 (16:37 +0200)
committerAmaury Denoyelle <adenoyelle@haproxy.com>
Fri, 1 Apr 2022 14:26:06 +0000 (16:26 +0200)
This call to SSL_CTX_set_default_verify_paths() is useless for haproxy.

src/xprt_quic.c

index e201a91596365240129fbfb2111da40fbf85b6f3..bc96b3c573723d312045342e7b6b1e36b61eabbf 100644 (file)
@@ -1189,7 +1189,6 @@ int ssl_quic_initial_ctx(struct bind_conf *bind_conf)
        SSL_CTX_set_mode(ctx, SSL_MODE_RELEASE_BUFFERS);
        SSL_CTX_set_min_proto_version(ctx, TLS1_3_VERSION);
        SSL_CTX_set_max_proto_version(ctx, TLS1_3_VERSION);
-       SSL_CTX_set_default_verify_paths(ctx);
 
 #ifdef SSL_CTRL_SET_TLSEXT_HOSTNAME
 #ifdef OPENSSL_IS_BORINGSSL