Skip to content

Commit c947fc8

Browse files
committed
sever side checks OCSP even if it uses v2 multi
1 parent ac4f3fb commit c947fc8

1 file changed

Lines changed: 3 additions & 1 deletion

File tree

src/internal.c

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14836,7 +14836,9 @@ int ProcessPeerCerts(WOLFSSL* ssl, byte* input, word32* inOutIdx,
1483614836
#ifdef HAVE_OCSP
1483714837
#ifdef HAVE_CERTIFICATE_STATUS_REQUEST_V2
1483814838
addToPendingCAs = 0;
14839-
if (ssl->status_request_v2 && TLSX_CSR2_IsMulti(ssl->extensions)) {
14839+
if (ssl->options.side == WOLFSSL_CLIENT_END &&
14840+
ssl->status_request_v2 &&
14841+
TLSX_CSR2_IsMulti(ssl->extensions)) {
1484014842
ret = TLSX_CSR2_InitRequests(ssl->extensions,
1484114843
args->dCert, 0, ssl->heap);
1484214844
addToPendingCAs = 1;

0 commit comments

Comments
 (0)