Files
ziti/common
Paul Lorenz 3e6f0f2a76 Verify router leaf against full CA bundle without EKU restriction
- verifies the control-channel peer leaf against the controller's full trusted-CA pool
  (identity.CA()) instead of only self-signed roots, honoring intermediate trust anchors
  and multi-root bundles
- drops the client-auth extended-key-usage requirement so an externally managed PKI with
  arbitrary or absent EKUs is not rejected
2026-07-27 14:06:44 -04:00
..
2026-01-28 12:34:10 -05:00
2024-06-10 13:49:50 -04:00
2026-01-28 15:01:35 -05:00
2026-02-10 13:13:32 -05:00
2026-01-28 15:01:35 -05:00
2026-01-28 15:01:35 -05:00
2026-01-28 15:01:35 -05:00
2026-01-28 15:01:35 -05:00
2026-03-11 15:48:30 -04:00
2026-01-28 15:01:35 -05:00
2026-01-28 15:01:35 -05:00
2025-10-17 12:54:25 -04:00
2026-01-28 15:01:35 -05:00
2026-01-28 15:01:35 -05:00
2026-01-28 15:01:35 -05:00
2026-01-28 12:34:10 -05:00