summaryrefslogtreecommitdiff
path: root/lib/x509/verify-high.c
Commit message (Expand)AuthorAgeFilesLines
* Fix typos in lib/tmp-fix-typos-in-libTim Rühsen2019-01-041-1/+1
* trust list: added flag to force failure on CRL validation errorNikos Mavrogiannopoulos2018-09-211-0/+2
* gnutls_x509_trust_list_add_cas: corrected return valueNikos Mavrogiannopoulos2018-09-171-1/+1
* fixed documentation in trust list functionsNikos Mavrogiannopoulos2018-09-171-14/+26
* Fix variable used in reallocationNikos Mavrogiannopoulos2018-09-141-1/+1
* Fix warnings seen on OpenCSW Solaris 10Tim Rühsen2018-06-101-3/+1
* Improve documentation of gnutls_x509_trust_list_iter_get_ca [ci skip]Michael Catanzaro2018-02-101-2/+5
* pkcs11 verification: always use the GNUTLS_PKCS11_OBJ_FLAG_PRESENT_IN_TRUSTED...Nikos Mavrogiannopoulos2017-12-031-4/+4
* Fix memleaks in gnutls_x509_trust_list_add_crls()Tim Rühsen2017-08-081-5/+14
* gnutls_x509_trust_list_verify_crt2: treat signers with insecure algorithms as...Nikos Mavrogiannopoulos2017-05-101-6/+24
* Introduced GNUTLS_DT_IP_ADDRESSNikos Mavrogiannopoulos2017-03-231-5/+32
* x509: better documented gnutls_trust_list_flags_tNikos Mavrogiannopoulos2016-12-091-3/+5
* doc: updated gnutls_x509_trust_list_verify_crt2()Nikos Mavrogiannopoulos2016-11-251-10/+13
* several spacing fixes to keep syntax-check happyNikos Mavrogiannopoulos2016-09-111-6/+6
* several sign-related API changesNikos Mavrogiannopoulos2016-05-311-6/+6
* doc update [ci skip]Nikos Mavrogiannopoulos2016-05-171-3/+5
* x509: use the modified flag in gnutls_x509_crt_tNikos Mavrogiannopoulos2016-05-071-2/+2
* _gnutls_x509_crt_cpy: optimized and simplifiedNikos Mavrogiannopoulos2016-05-021-2/+2
* exported gnutls_x509_crt_equals() and gnutls_x509_crt_equals2()Nikos Mavrogiannopoulos2016-05-021-6/+6
* trust_list_get_issuer_by_dn: fixed check for DN or SPKINikos Mavrogiannopoulos2016-01-071-19/+19
* Removed the 'gnutls_' prefix from files to simplify file namingNikos Mavrogiannopoulos2015-08-231-7/+7
* x509: when appending CRLs to a trust list ensure that we don't have duplicatesNikos Mavrogiannopoulos2015-08-211-2/+31
* Added gnutls_pkcs11_get_raw_issuer_by_subject_key_id and gnutls_x509_trust_li...Nikos Mavrogiannopoulos2015-06-021-8/+101
* Added gnutls_x509_crt_check_email(), gnutls_openpgp_crt_check_email() and GNU...Nikos Mavrogiannopoulos2015-03-251-1/+12
* doc: avoid using structure for opaque typesNikos Mavrogiannopoulos2015-03-201-12/+12
* combined gnutls_pkcs11_obj_attr_t with gnutls_pkcs11_obj_flagsNikos Mavrogiannopoulos2014-12-221-1/+1
* use gnutls_x509_trust_list_verify_named_crt in gnutls_x509_trust_list_verify_...Nikos Mavrogiannopoulos2014-12-121-8/+32
* when the trusted list contains a non-CA certificate warn via the audit logNikos Mavrogiannopoulos2014-12-051-0/+12
* Added flag GNUTLS_X509_CRT_LIST_SORT for gnutls_x509_crt_list_import*Nikos Mavrogiannopoulos2014-11-271-61/+1
* added gnutls_pkcs11_get_raw_issuer_by_dn and gnutls_x509_trust_list_get_issue...Nikos Mavrogiannopoulos2014-11-141-0/+85
* corrected bug in gnutls_x509_trust_list_get_issuer() when used without the GN...Nikos Mavrogiannopoulos2014-10-231-0/+1
* when both a trust module and additional CAs are present account the latter as...Nikos Mavrogiannopoulos2014-10-091-42/+50
* simplify the handling of trust_list_get_issuer() when GNUTLS_TL_GET_COPY is n...Nikos Mavrogiannopoulos2014-10-091-21/+53
* Also iterate over the CA certificates in a PKCS11 tokenArmin Burgmeier2014-10-071-17/+113
* corrected compilation for non-pkcs11; reported by David Woodhouse.Nikos Mavrogiannopoulos2014-10-021-1/+1
* Added GNUTLS_TL_GET_COPY flag and documented the limitations of gnutls_x509_t...Nikos Mavrogiannopoulos2014-10-011-4/+29
* Add an interface to iterate the trusted CA certificates in a trust listArmin Burgmeier2014-09-241-0/+88
* Verify key purpose on intermediate certificate if GNUTLS_VERIFY_KEY_PURPOSE_O...Nikos Mavrogiannopoulos2014-09-221-6/+6
* Memory leak fix on certificate copy failureArmin Burgmeier2014-09-211-0/+1
* updated details on certificate verificationNikos Mavrogiannopoulos2014-09-181-7/+8
* unified the key purpose checks functionsNikos Mavrogiannopoulos2014-09-161-63/+5
* check for CAs with the same key in gnutls_x509_trust_list_add_casNikos Mavrogiannopoulos2014-09-161-3/+7
* hostname and key purpose checks were moved above CRL checksNikos Mavrogiannopoulos2014-09-161-26/+28
* when adding a duplicate certificate, keep the last entryNikos Mavrogiannopoulos2014-09-121-1/+2
* Revert "corrected planned version number"Nikos Mavrogiannopoulos2014-09-111-1/+1
* check the key purpose of the CA certificate when in pkcs11 cert validationNikos Mavrogiannopoulos2014-09-111-8/+9
* doc updateNikos Mavrogiannopoulos2014-09-101-1/+1
* corrected planned version numberNikos Mavrogiannopoulos2014-09-091-1/+1
* gnutls_x509_trust_list_verify_crt2 is in par with gnutls_certificate_verify_p...Nikos Mavrogiannopoulos2014-09-091-7/+36
* Added gnutls_x509_trust_list_verify_purpose_crt()Nikos Mavrogiannopoulos2014-09-081-0/+105