Skip to content

use issuerName to verify AKID#9463

Closed
loskutov wants to merge 1 commit intowolfSSL:masterfrom
loskutov:issuerName-akid
Closed

use issuerName to verify AKID#9463
loskutov wants to merge 1 commit intowolfSSL:masterfrom
loskutov:issuerName-akid

Conversation

@loskutov
Copy link
Copy Markdown

@loskutov loskutov commented Nov 23, 2025

Description

As per https://datatracker.ietf.org/doc/html/rfc5280#section-4.2.1.1, AuthorityKeyIdentifier refers to the issuer name, not subject name like wolfssl used to. Because of that, I was unable to use OpenVPN with WolfSSL (peer certificate was rejected).

ZD 20860

Testing

Tried verifying a NordVPN cert that I dumped with OpenVPN.

Checklist

  • added tests
  • updated/added doxygen
  • updated appropriate READMEs
  • Updated manual and documentation

@wolfSSL-Bot
Copy link
Copy Markdown

Can one of the admins verify this patch?

@dgarske
Copy link
Copy Markdown
Member

dgarske commented Nov 24, 2025

Hi @loskutov, thank you for this PR. Can you tell us more about your project? I don't see you setup as a contributor. Are you planning to submit further patches? We require a signed contributor agreement for any third party code. If you would like to get setup please email support at wolfssl dot com and reference this ticket.
Thanks, David Garske, wolfSSL

@loskutov
Copy link
Copy Markdown
Author

loskutov commented Dec 3, 2025

Superseded by #9489

@loskutov loskutov closed this Dec 3, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants