GNU bug report logs -
#40486
http-get doesn't respect #:verify-certificate?
Previous Next
Reported by: Jan Synacek <jsynacek <at> redhat.com>
Date: Tue, 7 Apr 2020 15:31:02 UTC
Severity: normal
Done: Ludovic Courtès <ludo <at> gnu.org>
Bug is archived. No further changes may be made.
Full log
Message #10 received at 40486-done <at> debbugs.gnu.org (full text, mbox):
Hi,
Jan Synacek <jsynacek <at> redhat.com> skribis:
> When I run the following piece of code:
>
> (use-modules (web client))
> (http-get "https://bugzilla.redhat.com/rest/bug/1" #:verify-certificate? #f)
>
> I get:
> ...
> In web/client.scm:
> 563:0 1 (http-get "https://bugzilla.redhat.com/rest/bug/1" # _ # …)
> 231:6 0 (tls-wrap #<closed: file 1db4540> _ # _)
>
> web/client.scm:231:6: In procedure tls-wrap:
> X.509 certificate of 'bugzilla.redhat.com' could not be verified:
> signer-not-found invalid
>
> If I use http-request instead of http-get, the keyword argument is
> correctly taken into account and the certificate is not verified.
>
> I use v3.0.2.
Fixed in a5421d2bb6e27fe77e794f950833ca6d84c8c523, thanks!
Ludo’.
This bug report was last modified 5 years and 50 days ago.
Previous Next
GNU bug tracking system
Copyright (C) 1999 Darren O. Benham,
1997,2003 nCipher Corporation Ltd,
1994-97 Ian Jackson.