5d1487e167
Add CSR check for number of URIs.
3 lines
299 B
Plaintext
3 lines
299 B
Plaintext
```release-note:security
|
|
connect: Added URI length checks to ConnectCA CSR requests. Prior to this change, it was possible for a malicious actor to designate multiple SAN URI values in a call to the `ConnectCA.Sign` endpoint. The endpoint now only allows for exactly one SAN URI to be specified.
|
|
``` |