Home
last modified time | relevance | path

Searched refs:crl (Results 1 – 25 of 132) sorted by relevance

123456

/freebsd/crypto/openssl/crypto/x509/
H A Dx_crl.c20 static int setup_idp(X509_CRL *crl, ISSUING_DIST_POINT *idp);
28 static int def_crl_verify(X509_CRL *crl, EVP_PKEY *r);
29 static int def_crl_lookup(X509_CRL *crl,
82 static int crl_set_issuers(X509_CRL *crl)
89 revoked = X509_CRL_get_REVOKED(crl);
100 crl->flags |= EXFLAG_INVALID;
106 if (crl->issuers == NULL) {
107 crl->issuers = sk_GENERAL_NAMES_new_null();
108 if (crl->issuers == NULL) {
113 if (!sk_GENERAL_NAMES_push(crl->issuers, gtmp)) {
[all …]
H A Dx509cset.c23 if (x->crl.version == NULL) { in X509_CRL_set_version()
24 if ((x->crl.version = ASN1_INTEGER_new()) == NULL) in X509_CRL_set_version()
27 return ASN1_INTEGER_set(x->crl.version, version); in X509_CRL_set_version()
34 return X509_NAME_set(&x->crl.issuer, name); in X509_CRL_set_issuer_name()
41 return ossl_x509_set1_time(&x->crl.lastUpdate, tm); in X509_CRL_set1_lastUpdate()
48 return ossl_x509_set1_time(&x->crl.nextUpdate, tm); in X509_CRL_set1_nextUpdate()
58 sk_X509_REVOKED_sort(c->crl.revoked); in X509_CRL_sort()
59 for (i = 0; i < sk_X509_REVOKED_num(c->crl.revoked); i++) { in X509_CRL_sort()
60 r = sk_X509_REVOKED_value(c->crl.revoked, i); in X509_CRL_sort()
63 c->crl.enc.modified = 1; in X509_CRL_sort()
[all …]
H A Dx509_ext.c21 return X509v3_get_ext_count(x->crl.extensions); in X509_CRL_get_ext_count()
26 return X509v3_get_ext_by_NID(x->crl.extensions, nid, lastpos); in X509_CRL_get_ext_by_NID()
32 return X509v3_get_ext_by_OBJ(x->crl.extensions, obj, lastpos); in X509_CRL_get_ext_by_OBJ()
37 return X509v3_get_ext_by_critical(x->crl.extensions, crit, lastpos); in X509_CRL_get_ext_by_critical()
42 return X509v3_get_ext(x->crl.extensions, loc); in X509_CRL_get_ext()
47 return X509v3_delete_ext(x->crl.extensions, loc); in X509_CRL_delete_ext()
52 return X509V3_get_d2i(x->crl.extensions, nid, crit, idx); in X509_CRL_get_ext_d2i()
58 return X509V3_add1_i2d(&x->crl.extensions, nid, value, crit, flags); in X509_CRL_add1_ext_i2d()
63 return (X509v3_add_ext(&(x->crl.extensions), ex, loc) != NULL); in X509_CRL_add_ext()
H A Dx509_vfy.c64 unsigned int *preasons, X509_CRL *crl, X509 *x);
70 static void crl_akid_check(X509_STORE_CTX *ctx, X509_CRL *crl, X509 **pissuer,
72 static int crl_crldp_check(X509 *x, X509_CRL *crl, int crl_score,
934 X509_CRL *crl = NULL, *dcrl = NULL; in check_cert() local
952 ok = ctx->get_crl(ctx, &crl, x); in check_cert()
954 ok = get_crl_delta(ctx, &crl, &dcrl, x); in check_cert()
960 ctx->current_crl = crl; in check_cert()
961 ok = ctx->check_crl(ctx, crl); in check_cert()
978 ok = ctx->cert_crl(ctx, crl, x); in check_cert()
983 X509_CRL_free(crl); in check_cert()
[all …]
H A Dx509_local.h67 int (*crl_init) (X509_CRL *crl);
68 int (*crl_free) (X509_CRL *crl);
69 int (*crl_lookup) (X509_CRL *crl, X509_REVOKED **ret,
71 int (*crl_verify) (X509_CRL *crl, EVP_PKEY *pk);
133 int (*get_crl) (X509_STORE_CTX *ctx, X509_CRL **crl, X509 *x);
135 int (*check_crl) (X509_STORE_CTX *ctx, X509_CRL *crl);
137 int (*cert_crl) (X509_STORE_CTX *ctx, X509_CRL *crl, X509 *x);
H A Dx_all.c144 x->crl.enc.modified = 1; in X509_CRL_sign()
145 return ASN1_item_sign_ex(ASN1_ITEM_rptr(X509_CRL_INFO), &x->crl.sig_alg, in X509_CRL_sign()
146 &x->sig_alg, &x->signature, &x->crl, NULL, in X509_CRL_sign()
156 x->crl.enc.modified = 1; in X509_CRL_sign_ctx()
158 &x->crl.sig_alg, &x->sig_alg, &x->signature, in X509_CRL_sign_ctx()
159 &x->crl, ctx); in X509_CRL_sign_ctx()
198 X509_CRL *d2i_X509_CRL_fp(FILE *fp, X509_CRL **crl) in d2i_X509_CRL_fp() argument
200 return ASN1_item_d2i_fp(ASN1_ITEM_rptr(X509_CRL), fp, crl); in d2i_X509_CRL_fp()
203 int i2d_X509_CRL_fp(FILE *fp, const X509_CRL *crl) in i2d_X509_CRL_fp() argument
205 return ASN1_item_i2d_fp(ASN1_ITEM_rptr(X509_CRL), fp, crl); in i2d_X509_CRL_fp()
[all …]
H A Dx509_lu.c171 ret = X509_CRL_cmp((*a)->data.crl, (*b)->data.crl); in x509_object_cmp()
353 static int x509_store_add(X509_STORE *store, void *x, int crl) { in x509_store_add() argument
363 if (crl) { in x509_store_add()
365 obj->data.crl = (X509_CRL *)x; in x509_store_add()
422 return X509_CRL_up_ref(a->data.crl); in X509_OBJECT_up_ref_count()
438 return a->data.crl; in X509_OBJECT_get0_X509_CRL()
469 X509_CRL_free(a->data.crl); in x509_object_free_internal()
492 a->data.crl = obj; in X509_OBJECT_set1_X509_CRL()
517 stmp.data.crl = &crl_s; in x509_object_idx_cnt()
518 crl_s.crl.issuer = (X509_NAME *)name; /* won't modify it */ in x509_object_idx_cnt()
[all …]
H A Dv3_conf.c355 X509_CRL *crl) in X509V3_EXT_CRL_add_nconf() argument
358 if (crl != NULL) in X509V3_EXT_CRL_add_nconf()
359 sk = &crl->crl.extensions; in X509V3_EXT_CRL_add_nconf()
447 X509_CRL *crl, int flags) in X509V3_set_ctx() argument
457 ctx->crl = crl; in X509V3_set_ctx()
555 const char *section, X509_CRL *crl) in X509V3_EXT_CRL_add_conf() argument
563 ret = X509V3_EXT_CRL_add_nconf(ctmp, ctx, section, crl); in X509V3_EXT_CRL_add_conf()
/freebsd/crypto/heimdal/lib/hx509/
H A Drevoke.c57 CRLCertificateList crl; member
155 free_CRLCertificateList(&(*ctx)->crls.val[i].crl); in hx509_revoke_free()
457 CRLCertificateList *crl, in verify_crl() argument
467 t = _hx509_Time2time_t(&crl->tbsCertList.thisUpdate); in verify_crl()
474 if (crl->tbsCertList.nextUpdate == NULL) { in verify_crl()
480 t = _hx509_Time2time_t(crl->tbsCertList.nextUpdate); in verify_crl()
498 q.subject_name = &crl->tbsCertList.issuer; in verify_crl()
510 &crl->signatureAlgorithm, in verify_crl()
511 &crl->tbsCertList._save, in verify_crl()
512 &crl->signatureValue); in verify_crl()
[all …]
H A Dtest_ca.in70 ${hxtool} crl-sign \
71 --crl-file=crl.crl \
77 crl:FILE:crl.crl \
81 ${hxtool} crl-sign \
82 --crl-file=crl.crl \
89 crl:FILE:crl.crl \
93 ${hxtool} crl-sign \
94 --crl-file=crl.crl \
102 crl:FILE:crl.crl \
407 --crl-uri="http://www.test.h5l.se/crl1.crl" \
H A Dtest_windows.in69 --crl-uri="http://www.test.h5l.se/test-hemdal-pki-crl1.crl" \
80 --crl-uri="http://www.test.h5l.se/test-hemdal-pki-crl1.crl" \
85 ${hxtool} crl-sign \
86 --crl-file=wcrl.crl \
H A Dtest_nist.in71 *.crl) args="$args crl:FILE:$nistdir/crls/$arg1" ;;
76 *.crl) args="$args crl:FILE:$nistdir/crls/$arg2" ;;
81 *.crl) args="$args crl:FILE:$nistdir/crls/$arg3" ;;
86 *.crl) args="$args crl:FILE:$nistdir/crls/$arg4" ;;
91 *.crl) args="$args crl:FILE:$nistdir/crls/$arg5" ;;
/freebsd/crypto/openssl/fuzz/
H A Dcrl.c29 X509_CRL *crl = d2i_X509_CRL(NULL, &p, len); in FuzzerTestOneInput() local
30 if (crl != NULL) { in FuzzerTestOneInput()
32 X509_CRL_print(bio, crl); in FuzzerTestOneInput()
35 i2d_X509_CRL(crl, &der); in FuzzerTestOneInput()
38 X509_CRL_free(crl); in FuzzerTestOneInput()
H A Dbuild.info12 PROGRAMS{noinst}=asn1 asn1parse bignum bndiv client conf crl server
62 SOURCE[crl]=crl.c driver.c
63 INCLUDE[crl]=../include {- $ex_inc -}
64 DEPEND[crl]=../libcrypto {- $ex_lib -}
80 …PROGRAMS{noinst}=asn1-test asn1parse-test bignum-test bndiv-test client-test conf-test crl-test se…
131 SOURCE[crl-test]=crl.c test-corpus.c
132 INCLUDE[crl-test]=../include
133 DEPEND[crl-test]=../libcrypto
H A Dx509.c43 X509_CRL *crl = NULL; in FuzzerTestOneInput() local
73 crl = d2i_X509_CRL(NULL, &p, len); in FuzzerTestOneInput()
74 if (crl == NULL) in FuzzerTestOneInput()
99 if (crl != NULL) { in FuzzerTestOneInput()
104 sk_X509_CRL_push(crls, crl); in FuzzerTestOneInput()
139 X509_CRL_free(crl); in FuzzerTestOneInput()
/freebsd/crypto/openssl/apps/
H A Dcrl2pkcs7.c57 X509_CRL *crl = NULL; in crl2pkcs7_main() local
117 crl = d2i_X509_CRL_bio(in, NULL); in crl2pkcs7_main()
119 crl = PEM_read_bio_X509_CRL(in, NULL, NULL, NULL); in crl2pkcs7_main()
120 if (crl == NULL) { in crl2pkcs7_main()
138 if (crl != NULL) { in crl2pkcs7_main()
141 p7s->crl = crl_stack; in crl2pkcs7_main()
142 sk_X509_CRL_push(crl_stack, crl); in crl2pkcs7_main()
143 crl = NULL; /* now part of p7 for OPENSSL_freeing */ in crl2pkcs7_main()
180 X509_CRL_free(crl); in crl2pkcs7_main()
H A Dpkcs7.c155 crls = p7->d.sign->crl; in pkcs7_main()
161 crls = p7->d.signed_and_enveloped->crl; in pkcs7_main()
184 X509_CRL *crl; in pkcs7_main() local
187 crl = sk_X509_CRL_value(crls, i); in pkcs7_main()
189 X509_CRL_print_ex(out, crl, get_nameopt()); in pkcs7_main()
192 PEM_write_bio_X509_CRL(out, crl); in pkcs7_main()
/freebsd/crypto/openssl/doc/man3/
H A DX509_CRL_get0_by_serial.pod15 int X509_CRL_get0_by_serial(X509_CRL *crl,
17 int X509_CRL_get0_by_cert(X509_CRL *crl, X509_REVOKED **ret, X509 *x);
19 STACK_OF(X509_REVOKED) *X509_CRL_get_REVOKED(X509_CRL *crl);
27 int X509_CRL_add0_revoked(X509_CRL *crl, X509_REVOKED *rev);
29 int X509_CRL_sort(X509_CRL *crl);
33 X509_CRL_get0_by_serial() attempts to find a revoked entry in I<crl> for
42 revoked entries for I<crl>.
58 X509_CRL_add0_revoked() appends revoked entry I<rev> to CRL I<crl>. The
62 X509_CRL_sort() sorts the revoked entries of I<crl> into ascending serial
H A DX509_get0_notBefore.pod23 const ASN1_TIME *X509_CRL_get0_lastUpdate(const X509_CRL *crl);
24 const ASN1_TIME *X509_CRL_get0_nextUpdate(const X509_CRL *crl);
47 B<lastUpdate> and B<nextUpdate> fields of B<crl>. The value
49 the call. If the B<nextUpdate> field is absent from B<crl> then
53 and B<nextUpdate> fields of B<crl> to B<tm>. Ownership of the passed parameter
/freebsd/usr.sbin/rpc.tlsservd/
H A Drpc.tlscommon.c167 X509_CRL *crl; in rpctls_checkcrl() local
188 for (crl = PEM_read_bio_X509_CRL(infile, NULL, NULL, nullstr); in rpctls_checkcrl()
189 crl != NULL; crl = PEM_read_bio_X509_CRL(infile, NULL, NULL, in rpctls_checkcrl()
193 ret = X509_CRL_get0_by_cert(crl, &revoked, in rpctls_checkcrl()
230 X509_CRL_free(crl); in rpctls_checkcrl()
/freebsd/crypto/openssl/test/recipes/90-test_includes_data/conf-includes/
H A Dincludes1.cnf16 crl_dir = $dir/crl # Where the issued crl are kept
22 crl = $dir/crl.pem # The current CRL
/freebsd/crypto/openssl/doc/man1/
H A Dopenssl-crl.pod.in6 openssl-crl - CRL command
10 B<openssl> B<crl>
147 openssl crl -in crl.pem -outform DER -out crl.der
151 openssl crl -in crl.der -text -noout
/freebsd/crypto/openssl/crypto/store/
H A Dstore_result.c507 X509_CRL *crl; in try_crl() local
509 crl = d2i_X509_CRL(NULL, (const unsigned char **)&data->octet_data, in try_crl()
512 if (crl != NULL) in try_crl()
516 if (crl != NULL && !ossl_x509_crl_set0_libctx(crl, libctx, propq)) { in try_crl()
517 X509_CRL_free(crl); in try_crl()
518 crl = NULL; in try_crl()
521 if (crl != NULL) in try_crl()
522 *v = OSSL_STORE_INFO_new_CRL(crl); in try_crl()
524 X509_CRL_free(crl); in try_crl()
/freebsd/crypto/openssl/test/
H A Dtest.cnf11 crl_dir = $dir/crl # Where the issued crl are kept
17 crl = $dir/crl.pem # The current CRL
/freebsd/crypto/openssl/tools/
H A Dc_rehash.in146 FILE: foreach $fname (grep {/\.(pem)|(crt)|(cer)|(crl)$/} @flist) {
148 my ($cert, $crl) = check_file($fname);
149 if (!$cert && !$crl) {
154 link_hash_crl($fname) if ($crl);

123456