From 0e84a3939e912f6a384416b3af214fe8d44ff343 Mon Sep 17 00:00:00 2001 From: jsing <> Date: Mon, 14 Sep 2015 16:16:38 +0000 Subject: Provide tls_config_insecure_noverifytime() in order to be able to disable certificate validity checking. ok beck@ --- src/lib/libtls/tls_config.c | 9 ++++++++- 1 file changed, 8 insertions(+), 1 deletion(-) (limited to 'src/lib/libtls/tls_config.c') diff --git a/src/lib/libtls/tls_config.c b/src/lib/libtls/tls_config.c index 4d536853c8..d5beb38f3e 100644 --- a/src/lib/libtls/tls_config.c +++ b/src/lib/libtls/tls_config.c @@ -1,4 +1,4 @@ -/* $OpenBSD: tls_config.c,v 1.12 2015/09/10 09:10:42 jsing Exp $ */ +/* $OpenBSD: tls_config.c,v 1.13 2015/09/14 16:16:38 jsing Exp $ */ /* * Copyright (c) 2014 Joel Sing * @@ -308,11 +308,18 @@ tls_config_insecure_noverifyname(struct tls_config *config) config->verify_name = 0; } +void +tls_config_insecure_noverifytime(struct tls_config *config) +{ + config->verify_time = 0; +} + void tls_config_verify(struct tls_config *config) { config->verify_cert = 1; config->verify_name = 1; + config->verify_time = 1; } void -- cgit v1.2.3-55-g6feb