OpenSSL and Authority Information Access (AIA)
  Home FAQ Contact Sign in
mailing.openssl.dev only
 
Advanced search
POPULAR GROUPS

more...

mailing.openssl.dev Profile…
 Up
OpenSSL and Authority Information Access (AIA)         


Author: Amnon
Date: Jun 12, 2008 10:44

Hi All,

In a product my company is working on we met the need to validate
certificates based on the AIA extension.
In my searches (Internet, groups) I couldn't find any information
regarding usage of this extension, other than parsing the data (which
I understand is already in the OpenSSL code). Thus we would like to
implement such support.

I would like to raise to questions to the list:
1) Has anyone had any experience with this? Is there an easy way to
get this done I'm just not familiar with?
2) Assuming the answer to (1) is no, we would like to patch OpenSSL
and add a callback, that if set will be called during the certificate
verification process with the info regarding the AIA extension. The
callback will return (fill a buffer, etc) with the actual certificate
information so that OpenSSL can resume the verification process using
that info (just as if that certificate information was stored
locally). I would like to know, before we proceed with this method, if
such a patch would be entered into the official OpenSSL code?
Show full article (1.06Kb)
no comments

RELATED THREADS
SubjectArticles qty Group
[CVS] OpenSSL: openssl/crypto/bn/ bn_print.c openssl/crypto/ cryptlib....mailing.openssl.cvs ·
[CVS] OpenSSL: OpenSSL_0_9_7-stable: openssl/ CHANGES openssl/ssl/ ssl...mailing.openssl.cvs ·
[CVS] OpenSSL: openssl/ Configure openssl/crypto/bn/ bn.h bn_mont.cmailing.openssl.cvs ·