Home GnuPG
Diffusion GnuPG 493c142e582f

dirmngr: New Assuan option "http-crl".
493c142e582fUnpublished

Unpublished Commit · Learn More

Not On Permanent Ref: This commit is not an ancestor of any permanent ref.

Description

dirmngr: New Assuan option "http-crl".

* dirmngr/dirmngr.h (server_control_s): New flag 'http_no_crl'.
* dirmngr/dirmngr.c (dirmngr_init_default_ctrl): Set this flag.
* dirmngr/server.c (option_handler): New option "http-crl"
* dirmngr/http.h (HTTP_FLAG_NO_CRL): New flag.
* dirmngr/http-ntbtls.c (gnupg_http_tls_verify_cb): Consult this flag.
* dirmngr/ks-engine-hkp.c (send_request): Set flag depending on CTRL.
* dirmngr/ks-engine-http.c (ks_http_fetch): Ditto.
* dirmngr/t-http.c (main): New option --no-crl.

This new option can be used to enable CRL checks on a per session
base. The default is not to use CRLs for https connections.

  • Signed-off-by: Werner Koch <wk@gnupg.org>

Details

Provenance
wernerAuthored on Feb 21 2017, 9:37 AM
Parents
rG39c745038181: dirmngr: Add a magic field to the http structs.
Branches
Unknown
Tags
Unknown

Event Timeline

Werner Koch <wk@gnupg.org> committed rG493c142e582f: dirmngr: New Assuan option "http-crl". (authored by Werner Koch <wk@gnupg.org>).Feb 21 2017, 9:37 AM