Skip to content

Commit 0db0af3

Browse files
authored
don't accept invalid certs even in tests (#550)
This is a minor cleanup change from the WIP self signed certificates that can be merged independently. Turns out we're actually not relying on invalid certificates because the `with_cert` functionality just asserts that the self signed certificate, which is its own root, is valid.
2 parents 50b5ad0 + edb595e commit 0db0af3

File tree

3 files changed

+1
-3
lines changed

3 files changed

+1
-3
lines changed

payjoin-cli/src/app/mod.rs

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -106,7 +106,6 @@ fn http_agent_builder() -> Result<reqwest::ClientBuilder> {
106106
let mut root_cert_store = RootCertStore::empty();
107107
root_cert_store.add(CertificateDer::from(cert_der.as_slice()))?;
108108
Ok(reqwest::ClientBuilder::new()
109-
.danger_accept_invalid_certs(true)
110109
.use_rustls_tls()
111110
.add_root_certificate(reqwest::tls::Certificate::from_der(cert_der.as_slice())?))
112111
}

payjoin-test-utils/src/lib.rs

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -161,7 +161,7 @@ pub fn http_agent(cert_der: Vec<u8>) -> Result<Client, BoxSendSyncError> {
161161
}
162162

163163
fn http_agent_builder(cert_der: Vec<u8>) -> ClientBuilder {
164-
ClientBuilder::new().danger_accept_invalid_certs(true).use_rustls_tls().add_root_certificate(
164+
ClientBuilder::new().use_rustls_tls().add_root_certificate(
165165
reqwest::tls::Certificate::from_der(cert_der.as_slice())
166166
.expect("cert_der should be a valid DER-encoded certificate"),
167167
)

payjoin/src/io.rs

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -44,7 +44,6 @@ pub async fn fetch_ohttp_keys_with_cert(
4444
let ohttp_keys_url = payjoin_directory.into_url()?.join("/ohttp-keys")?;
4545
let proxy = Proxy::all(ohttp_relay.into_url()?.as_str())?;
4646
let client = Client::builder()
47-
.danger_accept_invalid_certs(true)
4847
.use_rustls_tls()
4948
.add_root_certificate(reqwest::tls::Certificate::from_der(&cert_der)?)
5049
.proxy(proxy)

0 commit comments

Comments
 (0)