Skip to content

Conversation

@hessjcg
Copy link
Collaborator

@hessjcg hessjcg commented Jan 9, 2025

Going forward, both GOOGLE_MANAGED_CAS_CA, CUSTOMER_MANAGED_CAS_CA, and future new kinds
of CA will use standard TLS domain name validation using the server certificate SAN records. The certificate
validation logic for the original GOOGLE_MANAGED_INTERNAL_CA is now the exception.

See implementation in other connectors:

@hessjcg hessjcg requested a review from a team as a code owner January 9, 2025 18:59
Copy link
Contributor

@jackwotherspoon jackwotherspoon left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM ✅

@hessjcg hessjcg merged commit e88d82a into main Jan 10, 2025
14 checks passed
@hessjcg hessjcg deleted the custom-ca-logic branch January 10, 2025 17:25
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants