Bogusław Brandys wrote: > > Hello, > > I have one question about CRL: is X509_verify_cert parse CRL list ? > I had try to use X509_STORE_load_locations to load CRL file with revokation > of certificate which is used for signing. Surpsise is that verify is always > successful neither certificate is signed as revoked in CRL or not. > Maybe I don't understand something ? >
It doesn't work because CRL checking was only added in 0.9.7. Steve. -- Dr Stephen N. Henson. http://www.drh-consultancy.demon.co.uk/ Personal Email: [EMAIL PROTECTED] Senior crypto engineer, Gemplus: http://www.gemplus.com/ Core developer of the OpenSSL project: http://www.openssl.org/ Business Email: [EMAIL PROTECTED] PGP key: via homepage. ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]