[MDEV-9141] [PATCH] Add CA validation to wsrep_sst_xtrabackup-v2.sh Created: 2015-11-17 Updated: 2015-12-21 Resolved: 2015-12-21 |
|
| Status: | Closed |
| Project: | MariaDB Server |
| Component/s: | Galera, Galera SST |
| Affects Version/s: | 10.1 |
| Fix Version/s: | 10.1.10 |
| Type: | Bug | Priority: | Major |
| Reporter: | Sergey Vojtovich | Assignee: | Nirbhay Choubey (Inactive) |
| Resolution: | Fixed | Votes: | 0 |
| Labels: | contribution | ||
| Sprint: | 10.1.10 |
| Description |
|
Add CA validation to wsrep_sst_xtrabackup-v2.sh (encrypt=3), not checking against CA leaves you vulnerable against mitm - I see no reason why not to check it. Also added a few {} around tpem for consistency |
| Comments |
| Comment by Nirbhay Choubey (Inactive) [ 2015-12-21 ] |
|
https://github.com/MariaDB/server/commit/ab9a488dec79f325d73dddd11d7ee120108a9f36 |