]> git.karo-electronics.de Git - karo-tx-linux.git/commit
PKCS#7: Verify internal certificate chain
authorDavid Howells <dhowells@redhat.com>
Tue, 15 Jan 2013 15:33:39 +0000 (15:33 +0000)
committerDavid Howells <dhowells@redhat.com>
Sat, 19 Jan 2013 01:05:20 +0000 (01:05 +0000)
commitfc84fca31c2ca641329417d0afac2a3b71c6af01
tree854fdde69d5c4637cee196bceb1b68c3d1866fb8
parent73afc6dc745fcb1f2686978f526127bf46c2d31a
PKCS#7: Verify internal certificate chain

Verify certificate chain in the X.509 certificates contained within the PKCS#7
message as far as possible.  If any signature that we should be able to verify
fails, we reject the whole lot.

Signed-off-by: David Howells <dhowells@redhat.com>
Reviewed-by: Kees Cook <keescook@chromium.org>
crypto/asymmetric_keys/pkcs7_verify.c
crypto/asymmetric_keys/x509_parser.h