Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

reverseproxy: add tls_server_cert_sha256 #6329

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Commits on May 25, 2024

  1. reverseproxy: add tls_server_cert_sha256

    Unfortunately there *are* some production setups requiring
    tls_insecure_skip_verify in reverse_proxy, like old devices with
    outdated firmware. In many such cases, the devices aren't supposed to
    regenerate or update their certificates.
    
    This patch adds tls_server_cert_sha256 directive for reverse_proxy,
    making MITM impossible even with tls_insecure_skip_verify.
    akovalenko committed May 25, 2024
    Configuration menu
    Copy the full SHA
    5fde819 View commit details
    Browse the repository at this point in the history