From ba336c297b30e61511f02ea9eff3e86c517a9ec3 Mon Sep 17 00:00:00 2001 From: Jamie Cameron Date: Tue, 14 Apr 2026 16:19:22 -0700 Subject: [PATCH] Make check for 'X-SSL-Client-Verify' header stricter --- miniserv.pl | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/miniserv.pl b/miniserv.pl index e6d0201c0..86c68ef86 100755 --- a/miniserv.pl +++ b/miniserv.pl @@ -1722,7 +1722,7 @@ if ($header{'user-agent'} =~ /webmin/i || my $trust_ssl = $config{'trust_real_ip'} && !$config{'no_trust_ssl'}; if ($use_ssl && $verified_client || $trust_ssl && $header{'x-ssl-client-dn'} && - $header{'x-ssl-client-verifiy'} !~ /^(failed|none)/i) { + $header{'x-ssl-client-verify'} =~ /^success/i) { if ($use_ssl && $verified_client) { $peername = Net::SSLeay::X509_NAME_oneline( Net::SSLeay::X509_get_subject_name(