openssl would accept certs that have been issued by a non-ca cert (which is trusted).
So if you have control over the leaf cert, you can just use it for contacting openssl.
If you don't have control over the leaf cert, you can't issue a bad cert.
Am I missing something?
openssl would accept certs that have been issued by a non-ca cert (which is trusted).
So if you have control over the leaf cert, you can just use it for contacting openssl.
If you don't have control over the leaf cert, you can't issue a bad cert.
Am I missing something?