On Mon, Dec 28, 2020 at 5:00 PM Justin Erenkrantz <jus...@erenkrantz.com> wrote:
> It's not clear to me if OpenSSL authors intended to make this breaking > change. On the serf side, we would need to think through what it would > mean to have our app callback return false upon failure in order to > short-circuit the check. > > I probably won't get a chance to open an upstream OpenSSL issue today (or > even tomorrow)... > I found the original issue where they changed the behavior and added a comment there: https://github.com/openssl/openssl/issues/11297 Cheers. -- justin