Skip to content

Stop accepting invalid certs #17

@Will-Shanks

Description

@Will-Shanks

Currently we accept invalid certs, since we haven't sorted making public certs for the server nor added the private cert to the client. To improve security the custom cert either needs to be added to the client so it can validate the server, or the server needs to get a public cert so that the client can authenticate it without needing the custom cert to be added to it.

Metadata

Metadata

Assignees

No one assigned

    Labels

    debtTech Debt

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions