For right now, don't verify server names in certificates. This will need

to be changed to something the individual clients can frob in the near
......@@ -1762,6 +1762,8 @@ static JSBool js_socket_set(JSContext *cx, JSObject *obj, jsid id, JSBool strict
// Reduced compliance checking... required for
if (tiny == SOCK_PROP_SSL_SESSION) {
// TODO: Make this configurable
do_cryptAttribute(p->session, CRYPT_SSLOPTION_DISABLE_NAMEVERIFY, 1);
ret=do_cryptAttributeString(p->session, CRYPT_SESSINFO_SERVER_NAME, p->hostname, strlen(p->hostname));
p->tls_server = FALSE;
