← Back to team overview

hipl-maintainer team mailing list archive

[Bug 677041] Re: broken certificate inclusion and verification in BEX and UPDATE

 

** Changed in: hipl
     Assignee: Andrius Bentkus (toxedvirus) => René Hummen (rene-hummen)

-- 
You received this bug notification because you are a member of HIPL
maintainer team, which is a subscriber of a duplicate bug (607592).
https://bugs.launchpad.net/bugs/677041

Title:
  broken certificate inclusion and verification in BEX and UPDATE

Status in Host Identity Protocol for Linux:
  Confirmed

Bug description:
  PISA functionality requires certificates to be included by the
  responder during BEX and during UPDATEs respectively. If a packet
  contains a certificate parameter, it needs to be checked (by hipfw)
  both at middleboxes and the addressed end-host. This is due to the
  fact that a middlebox can also be the end-point of a hip connection.