mirror of
https://github.com/openssl/openssl.git
synced 2025-01-18 13:44:20 +08:00
In order to get the expected self signed error when
calling X509_verify_cert() in x509.c the cert should not be added to the trusted store.
This commit is contained in:
parent
82384690e2
commit
7068c8b1a6
@ -1103,7 +1103,7 @@ static int x509_certify(X509_STORE *ctx, char *CAfile, const EVP_MD *digest,
|
||||
else if (!(bs = x509_load_serial(CAfile, serialfile, create)))
|
||||
goto end;
|
||||
|
||||
if (!X509_STORE_add_cert(ctx,x)) goto end;
|
||||
/* if (!X509_STORE_add_cert(ctx,x)) goto end;*/
|
||||
|
||||
/* NOTE: this certificate can/should be self signed, unless it was
|
||||
* a certificate request in which case it is not. */
|
||||
|
Loading…
Reference in New Issue
Block a user