S5527 is a new rule merging the implementations of S3510 and S4499 into the same umbrella.
S3510 and S4499 should be deprecated. See SONARJAVA-3204
- contributes to
-
MMF-1852 8 java security rules focusing on cryptography domain
-
- Closed
-
- depends upon
-
SONARJAVA-3204 Deprecate S3510 and S4499 in favor of S5527
-
- Closed
-
- implements
-
RSPEC-5527 Server hostnames should be verified during SSL/TLS connections
- Active
- relates to
-
RSPEC-3510 "HostnameVerifier.verify" should not always return true
- Deprecated
-
RSPEC-4499 SMTP SSL connection should check server identity
- Deprecated