/openssl/doc/man3/ |
H A D | SSL_CTX_load_verify_locations.pod | 15 int SSL_CTX_load_verify_dir(SSL_CTX *ctx, const char *CApath); 26 const char *CApath); 33 are located. The certificates available via B<CAfile>, B<CApath> and 79 If B<CApath> is not NULL, it points to a directory containing CA certificates 88 The certificates in B<CApath> are only looked up when required, e.g. when 93 will search for suitable certificates first in B<CAfile>, then in B<CApath>. 100 directory, it's generally treated the same way as a B<CApath>. 104 is not influenced by the contents of B<CAfile> or B<CApath> and must 110 try to fill in missing certificates from B<CAfile>/B<CApath>, if the 132 The operation failed because B<CAfile> and B<CApath> are NULL or the [all …]
|
/openssl/apps/ |
H A D | ts.c | 66 const char *CApath, const char *CAfile, 71 const char *CApath, const char *CAfile, 75 static X509_STORE *create_cert_store(const char *CApath, const char *CAfile, 169 char *inkey = NULL, *signer = NULL, *chain = NULL, *CApath = NULL; in ts_main() local 268 CApath = opt_arg(); in ts_main() 342 CApath, CAfile, CAstore, untrusted, in ts_main() 854 const char *CApath, const char *CAfile, in verify_command() argument 952 if (!TS_VERIFY_CTX_set0_store(ctx, create_cert_store(CApath, CAfile, in create_verify_ctx() 989 if (CApath != NULL) { in create_cert_store() 995 if (X509_LOOKUP_add_dir(lookup, CApath, X509_FILETYPE_PEM) <= 0) { in create_cert_store() [all …]
|
H A D | verify.c | 87 const char *prog, *CApath = NULL, *CAfile = NULL, *CAstore = NULL; in verify_main() local 129 CApath = opt_arg(); in verify_main() 202 && (CAfile != NULL || CApath != NULL || CAstore != NULL)) { in verify_main() 209 if ((store = setup_verify(CAfile, noCAfile, CApath, noCApath, in verify_main()
|
H A D | crl.c | 89 const char *CAfile = NULL, *CApath = NULL, *CAstore = NULL, *prog; in crl_main() local 139 CApath = opt_arg(); in crl_main() 223 if ((store = setup_verify(CAfile, noCAfile, CApath, noCApath, in crl_main()
|
H A D | s_time.c | 121 char *CApath = NULL, *CAfile = NULL, *CAstore = NULL; in s_time_main() local 172 CApath = opt_arg(); in s_time_main() 261 if (!ctx_set_verify_locations(ctx, CAfile, noCAfile, CApath, noCApath, in s_time_main()
|
H A D | smime.c | 174 const char *CAfile = NULL, *CApath = NULL, *CAstore = NULL, *prog = NULL; in smime_main() local 369 CApath = opt_arg(); in smime_main() 563 if ((store = setup_verify(CAfile, noCAfile, CApath, noCApath, in smime_main()
|
H A D | pkcs12.c | 184 const char *CApath = NULL, *CAfile = NULL, *CAstore = NULL, *prog; in pkcs12_main() local 349 CApath = opt_arg(); in pkcs12_main() 415 if (CApath != NULL) in pkcs12_main() 624 if ((store = setup_verify(CAfile, noCAfile, CApath, noCApath, in pkcs12_main()
|
H A D | ocsp.c | 232 const char *CAfile = NULL, *CApath = NULL, *CAstore = NULL; in ocsp_main() local 390 CApath = opt_arg(); in ocsp_main() 799 store = setup_verify(CAfile, noCAfile, CApath, noCApath, in ocsp_main()
|
H A D | cms.c | 297 const char *CAfile = NULL, *CApath = NULL, *CAstore = NULL; in cms_main() local 484 CApath = opt_arg(); in cms_main() 959 if ((store = setup_verify(CAfile, noCAfile, CApath, noCApath, in cms_main()
|
H A D | s_server.c | 1024 const char *CApath = NULL, *CAfile = NULL, *CAstore = NULL; in s_server_main() local 1296 CApath = opt_arg(); in s_server_main() 2026 if (!ctx_set_verify_locations(ctx, CAfile, noCAfile, CApath, noCApath, in s_server_main() 2089 if (!ctx_set_verify_locations(ctx2, CAfile, noCAfile, CApath, in s_server_main()
|
H A D | s_client.c | 861 const char *CApath = NULL, *CAfile = NULL, *CAstore = NULL; in s_client_main() local 1407 CApath = opt_arg(); in s_client_main() 2025 if (!ctx_set_verify_locations(ctx, CAfile, noCAfile, CApath, noCApath, in s_client_main()
|
/openssl/apps/include/ |
H A D | apps.h | 161 const char *CApath, int noCApath, 165 const char *CApath, int noCApath,
|
/openssl/doc/man1/ |
H A D | openssl-verification-options.pod | 213 =item B<-CApath> I<dir> 222 =item B<-no-CApath> 231 B<-CApath>, depending on if the URI indicates a single file or 404 via B<-CAfile>, B<-CApath>, B<-CAstore> or B<-trusted> are always used 417 This option implies the B<-no-CAfile>, B<-no-CApath>, and B<-no-CAstore> options 418 and it cannot be used with the B<-CAfile>, B<-CApath> or B<-CAstore> options, so 666 a directory (as specified by B<-CApath>),
|
H A D | openssl-crl.pod.in | 100 This option is implicitly enabled if any of B<-CApath>, B<-CAfile>
|
H A D | openssl-ts.pod.in | 55 [B<-CApath> I<dir>] 350 =item B<-CAfile> I<file>, B<-CApath> I<dir>, B<-CAstore> I<uri> 353 At least one of B<-CAfile>, B<-CApath> or B<-CAstore> must be specified.
|
H A D | openssl-s_time.pod.in | 142 …openssl s_time -connect servername:443 -www / -CApath yourdir -CAfile yourfile.pem -cipher commonc…
|
H A D | openssl-ocsp.pod.in | 435 B<-CApath> or B<-CAstore> options or they will be looked for in the 471 Normally only the B<-CApath>, B<-CAfile>, B<-CAstore> and (if the responder
|
/openssl/apps/lib/ |
H A D | apps.c | 144 const char *CApath, int noCApath, in ctx_set_verify_locations() argument 147 if (CAfile == NULL && CApath == NULL && CAstore == NULL) { in ctx_set_verify_locations() 160 if (CApath != NULL && !SSL_CTX_load_verify_dir(ctx, CApath)) in ctx_set_verify_locations() 1423 const char *CApath, int noCApath, in setup_verify() argument 1454 if (CApath != NULL || !noCApath) { in setup_verify() 1458 if (CApath != NULL) { in setup_verify() 1459 if (X509_LOOKUP_add_dir(lookup, CApath, X509_FILETYPE_PEM) <= 0) { in setup_verify() 1460 BIO_printf(bio_err, "Error loading directory %s\n", CApath); in setup_verify()
|
/openssl/ssl/ |
H A D | ssl_conf.c | 488 const char *CAfile, const char *CApath, const char *CAstore, in do_store() argument 524 if (CApath != NULL && !X509_STORE_load_path(*st, CApath)) in do_store()
|
H A D | ssl_lib.c | 5495 int SSL_CTX_load_verify_dir(SSL_CTX *ctx, const char *CApath) in SSL_CTX_load_verify_dir() argument 5497 return X509_STORE_load_path(ctx->cert_store, CApath); in SSL_CTX_load_verify_dir() 5507 const char *CApath) in SSL_CTX_load_verify_locations() argument 5509 if (CAfile == NULL && CApath == NULL) in SSL_CTX_load_verify_locations() 5513 if (CApath != NULL && !SSL_CTX_load_verify_dir(ctx, CApath)) in SSL_CTX_load_verify_locations()
|
/openssl/test/ |
H A D | ssl_old_test.c | 898 const char *CApath = NULL, *CAfile = NULL; in main() local 1075 CApath = *(++argv); in main() 1549 || SSL_CTX_load_verify_dir(s_ctx, CApath)) in main() 1552 || SSL_CTX_load_verify_dir(s_ctx2, CApath)) in main() 1555 || SSL_CTX_load_verify_dir(c_ctx, CApath)) in main()
|
/openssl/include/openssl/ |
H A D | ssl.h.in | 2118 __owur int SSL_CTX_load_verify_dir(SSL_CTX *ctx, const char *CApath); 2122 const char *CApath);
|
/openssl/ |
H A D | CHANGES.md | 17140 * Add the arguments -CAfile and -CApath to the pkcs12 utility. 18837 * Add new -verify -CAfile and -CApath options to the crl program, these
|