microsoft/msquic

Support for multiple server certificates

Aperta

#3141 aperta il 12 ott 2022

 (5 commenti) (0 reazioni) (0 assegnatari)C (686 fork)github user discovery
Area: APITLS: SchannelTLS: quicTLSfeature requestgood first issue

Metriche repository

Star
 (4763 stelle)
Metriche merge PR
 (Merge medio 6g) (40 PR mergiate in 30 g)

Descrizione

Describe the feature you'd like supported

Currently MsQuic only supports a single QUIC_CERTIFICATE_HASH_STORE in QUIC_CREDENTIAL_CONFIG, so servers cannot offer both RSA-based and ECDSA-based ciphers. As certificate protocols evolve it would be useful to support multiple types of certificates simultaneously.

Proposed solution

QUIC_CREDENTIAL_CONFIG.CertificateHashStore is already a pointer type. Either accept an array length via the Reserved parameter, or create a new QUIC_CERTIFICATE_MULTI_HASH_STORE type to handle an array of hash store objects.

Additional context

No response

Guida contributor