[gnutls-devel] [sr #108550] It is impractical to call dane_verify_session_crt() from the gnutls_certificate_set_verify_function()

Simon Arlott INVALID.NOREPLY at gnu.org
Sun Jul 6 23:11:46 CEST 2014


Follow-up Comment #7, sr #108550 (project gnutls):

I'll implement a copy of
https://github.com/lp0/weechat/commit/6d69397b4fa3c947e1cc80b1b454a666232b1d1a#diff-8053959401d6693d38be5b1272ef40d7R158
directly in libdane/dane.c (I've added the number of entries as a return value
because it simplifies duplicating the data if you don't have to iterate first
to find this out).

It's a bit inconvenient having to obtain and provide the certificate chain
manually when the non-raw session version of the function does this
automatically:
https://github.com/lp0/weechat/commit/e9d033abd9669315b73e3f8b707a592964ae932c#diff-e5707b6a1e5cfc1f92761719c83b3782R3748

    _______________________________________________________

Reply to this item at:

  <http://savannah.gnu.org/support/?108550>

_______________________________________________
  Message sent via/by Savannah
  http://savannah.gnu.org/




More information about the Gnutls-devel mailing list