Index: net/socket/ssl_client_socket_nss.cc |
diff --git a/net/socket/ssl_client_socket_nss.cc b/net/socket/ssl_client_socket_nss.cc |
index acc1b0dee2e0af9f773f349b77691fb4e350a72e..24371a0d08859531a08779ad63772188fee0a59f 100644 |
--- a/net/socket/ssl_client_socket_nss.cc |
+++ b/net/socket/ssl_client_socket_nss.cc |
@@ -3442,7 +3442,7 @@ int SSLClientSocketNSS::DoVerifyCertComplete(int result) { |
TransportSecurityState::DomainState domain_state; |
if (transport_security_state_->GetDomainState(host, sni_available, |
- &domain_state) && |
+ true, &domain_state) && |
domain_state.HasPublicKeyPins()) { |
mef
2013/09/20 15:53:30
I'm not 100% sure that this is right thing to do h
|
if (!domain_state.CheckPublicKeyPins( |
server_cert_verify_result_.public_key_hashes)) { |