[Nut-upsdev] NUT I-D: Unencrypted communication

Ted Mittelstaedt tedm at mittelstaedt.us
Tue Jan 4 08:00:09 GMT 2022


What if the client doesn't ask for TLS because the UPS (server) only
> supports an old TLS version that was removed in the client for security
> purposes? Or what if the certificate/certificate chain was compromised
> and so the client doesn't have a TLS cert/cert chain for the UPS?

more likely than a certificate chain being compromised is simply the 
certificate expiring.  All certificates have expiration dates.

Ted





More information about the Nut-upsdev mailing list