commit | c97fc2d03a8dfddf55c55562c72d4d29d0fc2dc5 | [log] [tgz] |
---|---|---|
author | Christopher Wiley <wiley@chromium.org> | Mon Apr 15 15:23:44 2013 -0700 |
committer | ChromeBot <chrome-bot@google.com> | Tue Apr 16 13:49:44 2013 -0700 |
tree | 22b97d16ca1d989d8401b4675898f252815c7b08 | |
parent | 44dba7bd56949b0a17758abd0037ab6151c9c01d [diff] |
shill: Fix MAC address handling for Sonic certificates. Don't check destination MAC prefixes during verification. This check adds no security since the only real constraint is that the device present a certificate we trust that matches the BSSID we're connected to. The forgable manufacturer prefix doesn't add anything. While we're here, lowercase all mac address characters. TEST=network_DestinationVerification passes. BUG=chromium:231673 Change-Id: I1b73978f3e97a8c3e64e45ecf25cc0118367e2ae Reviewed-on: https://gerrit.chromium.org/gerrit/48181 Tested-by: Christopher Wiley <wiley@chromium.org> Reviewed-by: Greg Spencer <gspencer@chromium.org> Reviewed-by: mukesh agrawal <quiche@chromium.org> Commit-Queue: Christopher Wiley <wiley@chromium.org>