fix(mtls) update to use newer mTLS api #89
Closed
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This revises the mTLS code to use the newer version of that feature (i.e.
setclientcert
instead oftlshandshake
).The relevant PRs are here and here.
However, the tests in this repo do not touch this code path, which is a little alarming, but also perhaps understandable since the feature isn't available in OpenResty mainline.
Merging this will be harmless to anyone not using mTLS, but will break for anyone using the old patch set. The reason for this PR is to try to unravel this tech debt as we push towards proper cosocket mTLS support in OpenResty.