From 9d8e62d07fb25e66d41179adb5bd43bb03ff48be Mon Sep 17 00:00:00 2001 From: jsing <> Date: Sun, 22 Feb 2015 15:09:54 +0000 Subject: Rename tls_config_insecure_noverifyhost() to tls_config_insecure_noverifyname(), so that it is more accurate and keeps inline with the distinction between DNS hostname and server name. Requested by tedu@ during s2k15. --- src/lib/libtls/tls_init.3 | 22 +++++++++++----------- 1 file changed, 11 insertions(+), 11 deletions(-) (limited to 'src/lib/libtls/tls_init.3') diff --git a/src/lib/libtls/tls_init.3 b/src/lib/libtls/tls_init.3 index 52220fa449..3e888115e8 100644 --- a/src/lib/libtls/tls_init.3 +++ b/src/lib/libtls/tls_init.3 @@ -1,4 +1,4 @@ -.\" $OpenBSD: tls_init.3,v 1.17 2015/02/21 21:41:00 tedu Exp $ +.\" $OpenBSD: tls_init.3,v 1.18 2015/02/22 15:09:54 jsing Exp $ .\" .\" Copyright (c) 2014 Ted Unangst .\" @@ -14,7 +14,7 @@ .\" ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF .\" OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. .\" -.Dd $Mdocdate: February 21 2015 $ +.Dd $Mdocdate: February 22 2015 $ .Dt TLS 3 .Os .Sh NAME @@ -36,8 +36,8 @@ .Nm tls_config_set_protocols , .Nm tls_config_set_verify_depth , .Nm tls_config_clear_keys , -.Nm tls_config_insecure_noverifyhost , .Nm tls_config_insecure_noverifycert , +.Nm tls_config_insecure_noverifyname , .Nm tls_config_verify , .Nm tls_load_file , .Nm tls_client , @@ -93,10 +93,10 @@ .Ft "void" .Fn tls_config_clear_keys "struct tls_config *config" .Ft "void" -.Fn tls_config_insecure_noverifyhost "struct tls_config *config" -.Ft "void" .Fn tls_config_insecure_noverifycert "struct tls_config *config" .Ft "void" +.Fn tls_config_insecure_noverifyname "struct tls_config *config" +.Ft "void" .Fn tls_config_verify "struct tls_config *config" .Ft "uint8_t *" .Fn tls_load_file "const char *file" "size_t *len" "char *password" @@ -289,18 +289,18 @@ Additionally, the values clears any secret keys from memory. .Em (Server) .It -.Fn tls_config_insecure_noverifyhost -disables hostname verification. -Be careful when using this option. -.Em (Client) -.It .Fn tls_config_insecure_noverifycert disables certificate verification. Be extremely careful when using this option. .Em (Client) .It +.Fn tls_config_insecure_noverifyname +disables server name verification. +Be careful when using this option. +.Em (Client) +.It .Fn tls_config_verify -reenables hostname and certificate verification. +reenables server name and certificate verification. .Em (Client) .It .Fn tls_load_file -- cgit v1.2.3-55-g6feb