]> git.karo-electronics.de Git - linux-beck.git/commit
Merge branch 'keys-sig' into keys-next
authorDavid Howells <dhowells@redhat.com>
Tue, 12 Apr 2016 19:10:19 +0000 (20:10 +0100)
committerDavid Howells <dhowells@redhat.com>
Tue, 12 Apr 2016 19:10:19 +0000 (20:10 +0100)
commitb6e17c1be75c796b37d01d058ae17387f043e495
treeb28635b7a29c43c9773cecf6f9eca46db5a71ed5
parent6e007f3186e398ec4e3b6d4f1c22740d9dc2715e
parentad3043fda39db0361d9601685356db4512e914be
Merge branch 'keys-sig' into keys-next

These commits do the following:

 (1) Retain a signature in an asymmetric-type key and associate with it the
     identifiers that will match a key that can be used to verify it.

 (2) Differentiate an X.509 cert that cannot be used versus one that cannot
     be verified due to unavailable crypto.  This is noted in the
     structures involved.

 (3) Determination of the self-signedness of an X.509 cert is improved to
     include checks on the subject/issuer names and the key
     algorithm/signature algorithm types.

 (4) Self-signed X.509 certificates are consistency checked early on if the
     appropriate crypto is available.

Signed-off-by: David Howells <dhowells@redhat.com>