Package: wl-beta Version: 2.11.30+0.20040810-2 Severity: wishlist Setting ssl-certificate-verification-policy to 3 doesn't reject SSL connection even if verification fails.
ssl.el uses openssl. But the bug is in openssl. The -verify option of s_client doesn't exit if the server verification fails. (ref. `http://bugs.debian.org/210757') This problem is not yet solved in the upstream. -- Tatsuya Kinoshita
pgpidtcQxLWIJ.pgp
Description: PGP signature