fix(stream): 添加 SSL 证书验证禁用的安全警告
当 verify=false 跳过证书验证时,打印警告日志提醒中间人攻击风险 Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
This commit is contained in:
parent
1bf9e7ad5d
commit
d0396a3854
@ -16,6 +16,7 @@ import (
|
|||||||
"sync"
|
"sync"
|
||||||
|
|
||||||
"rua.plus/lolly/internal/config"
|
"rua.plus/lolly/internal/config"
|
||||||
|
"rua.plus/lolly/internal/logging"
|
||||||
"rua.plus/lolly/internal/sslutil"
|
"rua.plus/lolly/internal/sslutil"
|
||||||
)
|
)
|
||||||
|
|
||||||
@ -190,6 +191,7 @@ func (m *ProxySSLManager) GetClientTLSConfig(serverName string) *tls.Config {
|
|||||||
tlsConfig.RootCAs = m.rootCAPool
|
tlsConfig.RootCAs = m.rootCAPool
|
||||||
} else if !m.config.Verify {
|
} else if !m.config.Verify {
|
||||||
// 跳过证书验证
|
// 跳过证书验证
|
||||||
|
logging.Warn().Msg("SSL证书验证已禁用,连接可能遭受中间人攻击")
|
||||||
tlsConfig.InsecureSkipVerify = true
|
tlsConfig.InsecureSkipVerify = true
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
Loading…
x
Reference in New Issue
Block a user