From: William Lallemand Date: Fri, 2 Oct 2020 16:08:18 +0000 (+0200) Subject: CLEANUP: ssl: "bundle" is not an OpenSSL wording X-Git-Tag: v2.3-dev6~113 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=51f784bcf9a3e92c035ca5df3b4e570d45774e7c;p=thirdparty%2Fhaproxy.git CLEANUP: ssl: "bundle" is not an OpenSSL wording There is a confusion between the HAProxy bundle and OpenSSL. OpenSSL does not have "bundles" but multiple certificates in the same store. Fix a commentary in the crt-list code. --- diff --git a/src/ssl_crtlist.c b/src/ssl_crtlist.c index 3f09c86738..65ca2891d2 100644 --- a/src/ssl_crtlist.c +++ b/src/ssl_crtlist.c @@ -552,11 +552,11 @@ int crtlist_parse_file(char *file, struct bind_conf *bind_conf, struct proxy *cu } else { /* If we didn't find the file, this could be a - bundle, since 2.3 we don't support OpenSSL - multi-certificate bundle, so we emulate it by - loading each file separately. To do so we need - to duplicate the entry in the crt-list because - it becomes independent */ + bundle, since 2.3 we don't support multiple + certificate in the same OpenSSL store, so we + emulate it by loading each file separately. To + do so we need to duplicate the entry in the + crt-list because it becomes independent */ char fp[MAXPATHLEN+1] = {0}; int n = 0; struct crtlist_entry *entry_dup = entry; /* use the previous created entry */