#2801 Check next certificate on smart card if first is not valid
Closed: Fixed None Opened 8 years ago by spoore.

When checking for certificate on a smart card, if the first (of multiple) is revoked or expired, sssd should continue to check the other certificates for a valid one.

My understanding today is that if a smart card has multiple user certificates and the first is revoked or expired, no others are checked. It would be nice to have all checked for a valid one to use.


Fields changed

owner: somebody => sbose
status: new => assigned

Sumit, what do you think is an appropriate milestone? 1.13.x or rather 1.14.x ?

Fields changed

milestone: NEEDS_TRIAGE => SSSD 1.13.3

Fields changed

patch: 0 => 1

- master: d0de7701d44c7a75210a9cb04634913ce3a94bfb
- sssd-1-13: 6a1b214b4f17cd91afbcc8840caa65c875d52d3f

resolution: => fixed
status: assigned => closed

Metadata Update from @spoore:
- Issue assigned to sbose
- Issue set to the milestone: SSSD 1.13.3

7 years ago

SSSD is moving from Pagure to Github. This means that new issues and pull requests
will be accepted only in SSSD's github repository.

This issue has been cloned to Github and is available here:
- https://github.com/SSSD/sssd/issues/3842

If you want to receive further updates on the issue, please navigate to the github issue
and click on subscribe button.

Thank you for understanding. We apologize for all inconvenience.

Login to comment on this ticket.

Metadata