summaryrefslogtreecommitdiffhomepage
path: root/packages/server/src/helpers/validateCertificatePath.ts
diff options
context:
space:
mode:
authorMatthew Miller <matthew@millerti.me>2020-07-08 21:05:01 -0700
committerMatthew Miller <matthew@millerti.me>2020-07-08 21:05:01 -0700
commita8dab2d372f6bf324f49164aa4da104e2fe5d1bb (patch)
tree42ebfb42d092b3337fa46d0b483f30ea60ca5321 /packages/server/src/helpers/validateCertificatePath.ts
parent2bf0019ee1bd7e603a0813925eb1bdcd048a0ea8 (diff)
Add in cert revocation check when validating path
Diffstat (limited to 'packages/server/src/helpers/validateCertificatePath.ts')
-rw-r--r--packages/server/src/helpers/validateCertificatePath.ts3
1 files changed, 3 insertions, 0 deletions
diff --git a/packages/server/src/helpers/validateCertificatePath.ts b/packages/server/src/helpers/validateCertificatePath.ts
index 796f8cd..11e1110 100644
--- a/packages/server/src/helpers/validateCertificatePath.ts
+++ b/packages/server/src/helpers/validateCertificatePath.ts
@@ -33,6 +33,9 @@ export default async function validateCertificatePath(certificates: string[]): P
const issuerCert = new X509();
issuerCert.readCertPEM(issuerPem);
+ // Check for certificate revocation
+ const subjectCertRevoked = await isCertRevoked(subjectCert);
+
if (subjectCertRevoked) {
throw new Error(`Found revoked certificate in certificate path`);
}