Details
-
New Feature
-
Status: Closed (View Workflow)
-
Critical
-
Resolution: Fixed
Description
The summary says it all, let's get a secure-by-default connection by enabling --ssl-verify-server-cert by default.
Attachments
Issue Links
- blocks
-
MDEV-28634 Client's --ssl-* options (without --ssl-verify-server-cert) are silently ignored if TLS is not possible
-
- Closed
-
- causes
-
MDEV-32473 MariaBackup requires disable-ssl-verify-server-cert
-
- Closed
-
-
MDEV-33430 Command line client error ERROR 2026 (HY000): TLS/SSL error: Server certificate validation failed. A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider. Error 0x800B0109(CERT_E_UNTRUSTEDROOT)
-
- Closed
-
-
MDEV-36500 Passwordless --ssl-verify-server-cert
-
- Closed
-
-
ODBC-421 Certificate verification option should be on by default
-
- Closed
-
- is blocked by
-
MDEV-31856 use ephemeral ssl certificates
-
- Closed
-
- relates to
-
MDEV-33396 main.user_limits fails sporadically with CERT_E_UNTRUSTED_ROOT
-
- Closed
-
-
MDEV-36663 Semi-sync Replica Can't Kill Dump Thread When Using SSL
-
- Closed
-
Activity
Transition | Time In Source Status | Execution Times |
---|
|
24d 20h 59m | 1 |
|
9s | 1 |
|
9d 37m | 1 |
|
3d 21h 11m | 1 |
|
7d 1h 49m | 1 |
|
126d 2h 3m | 1 |
|
12d 18h 45m | 1 |