openssl/crypto/x509
Richard Levitte 1228ae7738 Don't check any revocation info on proxy certificates
Because proxy certificates typically come without any CRL information,
trying to check revocation on them will fail.  Better not to try
checking such information for them at all.

Reviewed-by: Rich Salz <rsalz@openssl.org>
(cherry picked from commit 790555d675)
2016-08-03 16:15:05 +02:00
..
by_dir.c Re-align some comments after running the reformat script. 2015-01-22 09:31:48 +00:00
by_file.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
Makefile Add test for CVE-2015-1793 2015-07-07 21:48:55 +01:00
verify_extra_test.c Add test for CVE-2015-1793 2015-07-07 21:48:55 +01:00
vpm_int.h Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
x509.h Check that the subject name in a proxy cert complies to RFC 3820 2016-06-29 23:13:54 +02:00
x509_att.c Fix an error path leak in int X509_ATTRIBUTE_set1_data() 2016-06-10 16:45:04 +01:00
x509_cmp.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
x509_d2.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
x509_def.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
x509_err.c Check that the subject name in a proxy cert complies to RFC 3820 2016-06-29 23:13:54 +02:00
x509_ext.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
x509_lu.c Remove useless code 2015-10-23 20:32:59 +02:00
x509_obj.c Remove repeated condition from if in X509_NAME_oneline 2016-05-17 14:27:59 +01:00
x509_r2x.c Re-align some comments after running the reformat script. 2015-01-22 09:31:48 +00:00
x509_req.c Check public key is not NULL. 2015-03-02 15:26:41 +00:00
x509_set.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
x509_trs.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
x509_txt.c Check that the subject name in a proxy cert complies to RFC 3820 2016-06-29 23:13:54 +02:00
x509_v3.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
x509_vfy.c Don't check any revocation info on proxy certificates 2016-08-03 16:15:05 +02:00
x509_vfy.h Check that the subject name in a proxy cert complies to RFC 3820 2016-06-29 23:13:54 +02:00
x509_vpm.c Empty SNI names are not valid 2016-01-17 16:58:48 -05:00
x509cset.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
x509name.c Re-align some comments after running the reformat script. 2015-01-22 09:31:48 +00:00
x509rset.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
x509spki.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00
x509type.c Correctly check for export size limit 2015-05-20 22:19:34 +02:00
x_all.c Run util/openssl-format-source -v -c . 2015-01-22 09:31:38 +00:00