Fix erroneous trailing period in x509 certificates served over DNS.

pull/60/head
JeremyRand 6 years ago
parent 09a88dc989
commit cb6bceae5c
No known key found for this signature in database
GPG Key ID: B3F2D165786D6570

@ -261,6 +261,11 @@ func (v *Value) appendTLSA(out []dns.RR, suffix, apexSuffix string) ([]dns.RR, e
_, nameNoPort := util.SplitDomainTail(suffix)
_, nameNoPortOrProtocol := util.SplitDomainTail(nameNoPort)
if !strings.HasSuffix(nameNoPortOrProtocol, ".") {
continue
}
nameNoPortOrProtocol = strings.TrimSuffix(nameNoPortOrProtocol, ".")
derBytes, err := certdehydrate.FillRehydratedCertTemplate(template, nameNoPortOrProtocol)
if err != nil {
// TODO: add debug output here

Loading…
Cancel
Save