changeset 2234:3024116d6093

mod_s2s_auth_samecert: Log which s2sout has a matching cert
author Kim Alvefur <zash@zash.se>
date Fri, 08 Jul 2016 22:37:48 +0200
parents dd806ebeb2fc
children c5ee48e27d01
files mod_s2s_auth_samecert/mod_s2s_auth_samecert.lua
diffstat 1 files changed, 1 insertions(+), 0 deletions(-) [+]
line wrap: on
line diff
--- a/mod_s2s_auth_samecert/mod_s2s_auth_samecert.lua	Fri Jul 08 22:35:31 2016 +0200
+++ b/mod_s2s_auth_samecert/mod_s2s_auth_samecert.lua	Fri Jul 08 22:37:48 2016 +0200
@@ -8,6 +8,7 @@
 	
 	local outgoing = hosts[session.to_host].s2sout[session.from_host];
 	if outgoing and outgoing.type == "s2sout" and outgoing.secure and outgoing.conn:socket():getpeercertificate():pem() == cert:pem() then
+		session.log("debug", "Certificate matches that of s2sout%s", tostring(outgoing):match("[a-f0-9]+$"));
 		session.cert_identity_status = outgoing.cert_identity_status;
 		session.cert_chain_status = outgoing.cert_chain_status;
 		return true;