hsa: do not configure cert for tls ao 42/43442/1
authorFlorin Coras <[email protected]>
Wed, 16 Jul 2025 21:48:25 +0000 (14:48 -0700)
committerFlorin Coras <[email protected]>
Wed, 16 Jul 2025 21:48:25 +0000 (14:48 -0700)
No need to configure cert for tls active opens as we don't support mtls
for now.

Type: improvement

Change-Id: Ied0a0152ec965e10f1a743a15188a4679ebb0b11
Signed-off-by: Florin Coras <[email protected]>
src/plugins/hs_apps/proxy.c

index a4b1aea..2c7535d 100644 (file)
@@ -686,7 +686,8 @@ proxy_session_start_connect (proxy_session_side_ctx_t *sc, session_t *s)
       transport_endpt_ext_cfg_t *ext_cfg = session_endpoint_add_ext_cfg (
        &a->sep_ext, TRANSPORT_ENDPT_EXT_CFG_CRYPTO,
        sizeof (transport_endpt_crypto_cfg_t));
-      ext_cfg->crypto.ckpair_index = pm->ckpair_index;
+      ext_cfg->crypto.crypto_engine = CRYPTO_ENGINE_NONE;
+      /* mTLS not supported, so no cert configured for now */
     }
 
   proxy_program_connect (a);