зеркало из https://github.com/mozilla/gecko-dev.git
Bug 479393: Call CERT_SetUsePKIXForValidation(PR_TRUE) after
initializing NSS to make the old NSS cert validation APIs use the new libpkix cert validation engine internally. r=kaie.
This commit is contained in:
Родитель
6ec60d390e
Коммит
5b8a7c550c
|
@ -1578,6 +1578,11 @@ nsNSSComponent::InitializeNSS(PRBool showWarningBox)
|
|||
|
||||
mNSSInitialized = PR_TRUE;
|
||||
|
||||
// Make the old cert validation APIs (CERT_VerifyCert and
|
||||
// CERT_VerifyCertificate) use the new libpkix cert validation engine.
|
||||
// Eventually PSM should switch to the new CERT_PKIXVerifyCert function.
|
||||
CERT_SetUsePKIXForValidation(PR_TRUE);
|
||||
|
||||
::NSS_SetDomesticPolicy();
|
||||
// SSL_EnableCipher(SSL_RSA_WITH_NULL_MD5, SSL_ALLOWED);
|
||||
// SSL_EnableCipher(SSL_RSA_WITH_NULL_SHA, SSL_ALLOWED);
|
||||
|
|
Загрузка…
Ссылка в новой задаче