R.B. Boyer c4b92d5534
connect: connect CA Roots in secondary datacenters should use a SigningKeyID derived from their local intermediate (#6513)
This fixes an issue where leaf certificates issued in secondary
datacenters would be reissued very frequently (every ~20 seconds)
because the logic meant to detect root rotation was errantly triggering
because a hash of the ultimate root (in the primary) was being compared
against a hash of the local intermediate root (in the secondary) and
always failing.
2019-09-26 11:54:14 -05:00
..
2018-11-02 12:00:39 -05:00
2017-10-25 19:30:35 +02:00
2018-10-19 12:04:07 -04:00
2017-07-18 20:24:38 +02:00
2018-10-19 12:04:07 -04:00
2019-08-09 15:19:30 -04:00
2019-09-12 19:39:58 +00:00
2019-07-01 16:28:30 -04:00
2019-07-24 17:06:39 -04:00
2018-02-12 10:15:31 -08:00
2018-03-19 16:56:00 +00:00
2019-03-27 08:54:56 -04:00