On Wed, Aug 10, 2005, david kine wrote:

> Thanks for the response.  The CRL files (multiple) are
> provided by an external application.  I provide an API
> to reload the CRL files, and my plan is to update the
> SSL_CTX objects with the new CRL files.
> 
> Can I use 0.9.6d, or should I update to 0.9.7g for
> this application?  My understanding is that 0.9.7 is
> necessary for handling CRL's, yet I see CRL functions
> in 0.9.6.
> 

0.9.6 could parse, print out and generate CRL files, much older versions of
OpenSSL could in fact.

0.9.7 is the first to provided (limited) support for checking CRL files when a
certificate is verified.

Steve.
--
Dr Stephen N. Henson. Email, S/MIME and PGP keys: see homepage
OpenSSL project core developer and freelance consultant.
Funding needed! Details on homepage.
Homepage: http://www.drh-consultancy.demon.co.uk
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to