-
Task
-
Resolution: Fixed
-
Minor
-
None
In FIPS mode insecure certificates should not be used.
Steps to reproduce this behaviour:
- Go to Manage Jenkins > Security > Security Realm and select Active directory
- Click on Add domain
- Select [Insecure] Trust all certificates in TLS Configuration
The output is:
- You don’t get any error message
- You can save the configuration
- You can test it without re-validating the TLS Configuration option
The user should have an error message if an insecure certificate is chosen in TLS Configuration
- links to
[JENKINS-73828] active-directory does not check the use of Trust all certificates
Assignee | Original: Félix Belzunce Arcos [ fbelzunc ] | New: Andra Maria Puscas [ ampuscas ] |
Status | Original: Open [ 1 ] | New: In Progress [ 3 ] |
Remote Link | New: This issue links to "PR (Web Link)" [ 30016 ] |
Resolution | New: Fixed [ 1 ] | |
Status | Original: In Progress [ 3 ] | New: Resolved [ 5 ] |