dotnet / dotnet/aspnetcore

Kestrel RemoteCertificateValidationCallback client IP.

Open
#57,710 5 comments 0 reactions 0 assignees View on GitHub
area-networking Needs: Attention :wave:
Dominant language
C#
Stars
38.4k
Forks
10.9k
Avg merge
2d 5h
Merged PRs (30d)
276

Description

### Is there an existing issue for this?

- [X] I have searched the existing issues

### Is your feature request related to a problem? Please describe the problem.

When writing a QUIC server the RemoteCertificateValidationCallback recieves a QuicConnection as the Sender object. From this a lot of data can be extracted such as the IP of the remote host. Kestrel has a similar RemoteCertificateValidationCallback but without the "object sender" parameter which means that there is no way at this point of knowing the IP of the client which is useful when implementing strict IP based access control.

### Describe the solution you'd like

Add a way to know the remote IP address and other useful information about the connection in the RemoteCertificateValidationCallback handler.

### Additional context

_No response_

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.