On Wed, Aug 10, 2005, david kine wrote: > Thanks for the response. The CRL files (multiple) are > provided by an external application. I provide an API > to reload the CRL files, and my plan is to update the > SSL_CTX objects with the new CRL files. > > Can I use 0.9.6d, or should I update to 0.9.7g for > this application? My understanding is that 0.9.7 is > necessary for handling CRL's, yet I see CRL functions > in 0.9.6. >
0.9.6 could parse, print out and generate CRL files, much older versions of OpenSSL could in fact. 0.9.7 is the first to provided (limited) support for checking CRL files when a certificate is verified. Steve. -- Dr Stephen N. Henson. Email, S/MIME and PGP keys: see homepage OpenSSL project core developer and freelance consultant. Funding needed! Details on homepage. Homepage: http://www.drh-consultancy.demon.co.uk ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]