summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authortb <>2025-10-24 11:34:23 +0000
committertb <>2025-10-24 11:34:23 +0000
commit9ea098f3616b1e68dff3cd8a9b2d0d4f929bfd2d (patch)
tree5ed37db2410631c6d95f6bb337e6138388b66dc7
parentf77c42a93e09c937696f65c6aefd2b3120a20cff (diff)
downloadopenbsd-9ea098f3616b1e68dff3cd8a9b2d0d4f929bfd2d.tar.gz
openbsd-9ea098f3616b1e68dff3cd8a9b2d0d4f929bfd2d.tar.bz2
openbsd-9ea098f3616b1e68dff3cd8a9b2d0d4f929bfd2d.zip
Document X509_VERIFY_PARAM_set_hostflags(3)
ok kenjiro
Diffstat (limited to '')
-rw-r--r--src/lib/libcrypto/man/X509_VERIFY_PARAM_set_flags.317
1 files changed, 15 insertions, 2 deletions
diff --git a/src/lib/libcrypto/man/X509_VERIFY_PARAM_set_flags.3 b/src/lib/libcrypto/man/X509_VERIFY_PARAM_set_flags.3
index e21d1122a9..b6860ab40b 100644
--- a/src/lib/libcrypto/man/X509_VERIFY_PARAM_set_flags.3
+++ b/src/lib/libcrypto/man/X509_VERIFY_PARAM_set_flags.3
@@ -1,4 +1,4 @@
1.\" $OpenBSD: X509_VERIFY_PARAM_set_flags.3,v 1.30 2025/06/08 22:40:30 schwarze Exp $ 1.\" $OpenBSD: X509_VERIFY_PARAM_set_flags.3,v 1.31 2025/10/24 11:34:23 tb Exp $
2.\" full merge up to: OpenSSL d33def66 Feb 9 14:17:13 2016 -0500 2.\" full merge up to: OpenSSL d33def66 Feb 9 14:17:13 2016 -0500
3.\" selective merge up to: OpenSSL 24a535ea Sep 22 13:14:20 2020 +0100 3.\" selective merge up to: OpenSSL 24a535ea Sep 22 13:14:20 2020 +0100
4.\" 4.\"
@@ -68,7 +68,7 @@
68.\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED 68.\" ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
69.\" OF THE POSSIBILITY OF SUCH DAMAGE. 69.\" OF THE POSSIBILITY OF SUCH DAMAGE.
70.\" 70.\"
71.Dd $Mdocdate: June 8 2025 $ 71.Dd $Mdocdate: October 24 2025 $
72.Dt X509_VERIFY_PARAM_SET_FLAGS 3 72.Dt X509_VERIFY_PARAM_SET_FLAGS 3
73.Os 73.Os
74.Sh NAME 74.Sh NAME
@@ -88,6 +88,7 @@
88.Nm X509_VERIFY_PARAM_set_auth_level , 88.Nm X509_VERIFY_PARAM_set_auth_level ,
89.Nm X509_VERIFY_PARAM_set1_host , 89.Nm X509_VERIFY_PARAM_set1_host ,
90.Nm X509_VERIFY_PARAM_add1_host , 90.Nm X509_VERIFY_PARAM_add1_host ,
91.Nm X509_VERIFY_PARAM_get_hostflags ,
91.Nm X509_VERIFY_PARAM_set_hostflags , 92.Nm X509_VERIFY_PARAM_set_hostflags ,
92.Nm X509_VERIFY_PARAM_get0_peername , 93.Nm X509_VERIFY_PARAM_get0_peername ,
93.Nm X509_VERIFY_PARAM_set1_email , 94.Nm X509_VERIFY_PARAM_set1_email ,
@@ -175,6 +176,10 @@
175.Fa "const char *name" 176.Fa "const char *name"
176.Fa "size_t namelen" 177.Fa "size_t namelen"
177.Fc 178.Fc
179.Ft unsigned int
180.Fo X509_VERIFY_PARAM_get_hostflags
181.Fa "const X509_VERIFY_PARAM *param"
182.Fc
178.Ft void 183.Ft void
179.Fo X509_VERIFY_PARAM_set_hostflags 184.Fo X509_VERIFY_PARAM_set_hostflags
180.Fa "X509_VERIFY_PARAM *param" 185.Fa "X509_VERIFY_PARAM *param"
@@ -351,6 +356,10 @@ uses a different default security level of 1 and calls
351.Fn X509_VERIFY_PARAM_set_auth_level 356.Fn X509_VERIFY_PARAM_set_auth_level
352with its own level before validating a certificate chain. 357with its own level before validating a certificate chain.
353.Pp 358.Pp
359.Fn X509_VERIFY_PARAM_get_hostflags
360returns the host flags previously set by a call to
361.Fn X509_VERIFY_PARAM_set_hostflags .
362.Pp
354.Fn X509_VERIFY_PARAM_set1_host 363.Fn X509_VERIFY_PARAM_set1_host
355sets the expected DNS hostname to 364sets the expected DNS hostname to
356.Fa name 365.Fa name
@@ -723,6 +732,10 @@ first appeared in OpenSSL 1.1.0 and
723in OpenSSL 1.1.0d. 732in OpenSSL 1.1.0d.
724Both functions have been available since 733Both functions have been available since
725.Ox 7.2 . 734.Ox 7.2 .
735.Pp
736.Fn X509_VERIFY_PARAM_get_hostflags
737first appeared in OpenSSL 1.1.0i and has been available since
738.Ox 7.9 .
726.Sh BUGS 739.Sh BUGS
727Delta CRL checking is currently primitive. 740Delta CRL checking is currently primitive.
728Only a single delta can be used and (partly due to limitations of 741Only a single delta can be used and (partly due to limitations of