R.B. Boyer c4b92d5534
connect: connect CA Roots in secondary datacenters should use a SigningKeyID derived from their local intermediate (#6513)
This fixes an issue where leaf certificates issued in secondary
datacenters would be reissued very frequently (every ~20 seconds)
because the logic meant to detect root rotation was errantly triggering
because a hash of the ultimate root (in the primary) was being compared
against a hash of the local intermediate root (in the secondary) and
always failing.
2019-09-26 11:54:14 -05:00
..
2019-08-09 15:19:30 -04:00
2019-09-12 19:39:58 +00:00
2019-07-01 16:28:30 -04:00
2019-07-24 17:06:39 -04:00
2019-03-27 08:54:56 -04:00