1
0
mirror of https://github.com/MariaDB/server.git synced 2025-08-08 11:22:35 +03:00

MDEV-31857 enable --ssl-verify-server-cert by default in the internal client

enable ssl + ssl_verify_server_cert in the internal client too

* fix replication tests to disable master_ssl_verify_server_cert
  because accounts are passwordless - except rpl.rpl_ssl1
* fix federated/federatedx/connect to disable SSL_VERIFY_SERVER_CERT
  because they cannot configure an ssl connection
* fix spider to disable ssl_verify_server_cert, if configuration
  says so, as spider _can_ configure an ssl connection
* memory leak in embedded test-connect
This commit is contained in:
Sergei Golubchik
2023-09-04 15:32:36 +02:00
parent e0c30390a7
commit abcd23add2
132 changed files with 276 additions and 259 deletions

View File

@@ -1906,12 +1906,10 @@ int spider_db_mbase::connect(
mysql_options(db_conn, MYSQL_OPT_SSL_CA, conn->tgt_ssl_ca);
mysql_options(db_conn, MYSQL_OPT_SSL_CAPATH, conn->tgt_ssl_capath);
mysql_options(db_conn, MYSQL_OPT_SSL_CIPHER, conn->tgt_ssl_cipher);
if (conn->tgt_ssl_vsc)
{
my_bool verify_flg = TRUE;
mysql_options(db_conn, MYSQL_OPT_SSL_VERIFY_SERVER_CERT,
&verify_flg);
}
}
{
my_bool verify_flg = conn->tgt_ssl_vsc != 0;
mysql_options(db_conn, MYSQL_OPT_SSL_VERIFY_SERVER_CERT, &verify_flg);
}
if (conn->tgt_default_file)