Skip to content

fix: do not require a TLS client cert when InsecureSkipVerify is false#8525

Merged
traefiker merged 7 commits intotraefik:v2.5from
kevinpollet:fix-client-tls-cert
Oct 26, 2021
Merged

fix: do not require a TLS client cert when InsecureSkipVerify is false#8525
traefiker merged 7 commits intotraefik:v2.5from
kevinpollet:fix-client-tls-cert

Conversation

@kevinpollet
Copy link
Member

What does this PR do?

This PR fixes the behaviour of the CreateTLSConfig method which requires a TLS client cert when the InsecureSkipVerify option is set to false.

The InsecureSkipVerify option is only used to disable the verification of the server certificate and is not related to TLS client authentication.

Motivation

Related to #5604

More

  • Added/updated tests
  • Added/updated documentation

Additional Notes

Co-authored-by: Tom Moulard tom.moulard@traefik.io

Copy link
Member

@rtribotte rtribotte left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks 👍

Copy link
Collaborator

@tomMoulard tomMoulard left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM 👌

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants