View Issue Details
| ID | Project | Category | View Status | Date Submitted | Last Update |
|---|---|---|---|---|---|
| 0005765 | 10000-004: Services | Spec | public | 2020-06-30 08:58 | 2020-09-16 14:26 |
| Reporter | Frank Fischer | Assigned To | Matthias Damm | ||
| Priority | high | Severity | major | Reproducibility | always |
| Status | closed | Resolution | fixed | ||
| Summary | 0005765: Clarify how the server should check the ClientCertificate from CreateSession | ||||
| Description | During the Create/ActivateSession the client and server prove to each other the possession of their private keys by creating the Client/ServerSignature, these signatures are created with the Client/ServerCertificate exchanged during CreateSession. For these checks to make sense the Client/ServerCertificate needs to be trusted and for the ServerCertificate it is stated: So the client may only accept the certificate already trusted in OpenSecureChannel, for the server however no such statement exist about how to verify the ClientCertificate, the only indication is given in the description of ActivateSession: So there is a strong indication that the ClientCertificate must also be the same as used for OpenSecureChannel, if this is the case the ClientCertificate parameter should also be extended with the following text: | ||||
| Tags | No tags attached. | ||||
| Commit Version | |||||
| Fix Due Date | |||||
|
|
Added Changed in |
|
|
Agreed to changes edited in Virtual F2F. |
| Date Modified | Username | Field | Change |
|---|---|---|---|
| 2020-06-30 08:58 | Frank Fischer | New Issue | |
| 2020-07-07 16:15 | Jim Luth | Assigned To | => Matthias Damm |
| 2020-07-07 16:15 | Jim Luth | Status | new => assigned |
| 2020-09-16 14:25 | Matthias Damm | Status | assigned => resolved |
| 2020-09-16 14:25 | Matthias Damm | Resolution | open => fixed |
| 2020-09-16 14:25 | Matthias Damm | Note Added: 0012853 | |
| 2020-09-16 14:26 | Jim Luth | Status | resolved => closed |
| 2020-09-16 14:26 | Jim Luth | Fixed in Version | => 1.05 |
| 2020-09-16 14:26 | Jim Luth | Note Added: 0012854 |