Allow the https server to request client certs only with OPTIONAL

This commit is contained in:
2025-11-27 11:11:21 +01:00
parent d0cba05798
commit fdb3a300b3
4 changed files with 9 additions and 1 deletions
@@ -91,6 +91,9 @@ struct httpd_ssl_config {
/** CA certificate byte length */
size_t cacert_len;
/** CA certificate verification optional */
bool cacert_authmode_optional;
/** Private key */
const uint8_t *prvtkey_pem;
@@ -278,6 +278,7 @@ static esp_err_t create_secure_context(const struct httpd_ssl_config *config, ht
cfg->userdata = config->ssl_userdata;
cfg->alpn_protos = config->alpn_protos;
cfg->tls_handshake_timeout_ms = config->tls_handshake_timeout_ms;
cfg->cacert_authmode_optional = config->cacert_authmode_optional;
cfg->tls_version = config->tls_version;
cfg->ciphersuites_list = config->ciphersuites_list;