[Bro-Dev] [JIRA] (BIT-953) SSL Analyzer: return the root CA used to validate a cert

Bernhard Amann (JIRA) jira at bro-tracker.atlassian.net
Mon Sep 16 18:15:19 PDT 2013


    [ https://bro-tracker.atlassian.net/browse/BIT-953?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14101#comment-14101 ] 

Bernhard Amann commented on BIT-953:
------------------------------------

...this definitely won't make it into 2.2. And will make much more sense with x509 parsing split into the file-analysis-framework in any case.

> SSL Analyzer: return the root CA used to validate a cert
> --------------------------------------------------------
>
>                 Key: BIT-953
>                 URL: https://bro-tracker.atlassian.net/browse/BIT-953
>             Project: Bro Issue Tracker
>          Issue Type: New Feature
>          Components: Bro
>    Affects Versions: git/master
>            Reporter: liamrandall
>            Assignee: Bernhard Amann
>            Priority: Low
>              Labels: Analyzer,, CA, Root,, SSL
>             Fix For: 2.3
>
>
> Since Bro will validate certs can we add a variable that says who the root CA was; would be useful for CA pinning, white listing or black listing.



--
This message was sent by Atlassian JIRA
(v6.1-OD-08#6143)


More information about the bro-dev mailing list