1gnutls_x509_crl_sign2(3) gnutls gnutls_x509_crl_sign2(3)
2
3
4
6 gnutls_x509_crl_sign2 - API function
7
9 #include <gnutls/x509.h>
10
11 int gnutls_x509_crl_sign2(gnutls_x509_crl_t crl, gnutls_x509_crt_t is‐
12 suer, gnutls_x509_privkey_t issuer_key, gnutls_digest_algorithm_t dig,
13 unsigned int flags);
14
16 gnutls_x509_crl_t crl
17 should contain a gnutls_x509_crl_t type
18
19 gnutls_x509_crt_t issuer
20 is the certificate of the certificate issuer
21
22 gnutls_x509_privkey_t issuer_key
23 holds the issuer's private key
24
25 gnutls_digest_algorithm_t dig
26 The message digest to use. GNUTLS_DIG_SHA256 is the safe
27 choice unless you know what you're doing.
28
29 unsigned int flags
30 must be 0
31
33 This function will sign the CRL with the issuer's private key, and will
34 copy the issuer's information into the CRL.
35
36 This must be the last step in a certificate CRL since all the previ‐
37 ously set parameters are now signed.
38
39 A known limitation of this function is, that a newly-signed CRL will
40 not be fully functional (e.g., for signature verification), until it is
41 exported an re-imported.
42
43 After GnuTLS 3.6.1 the value of dig may be GNUTLS_DIG_UNKNOWN, and in
44 that case, a suitable but reasonable for the key algorithm will be se‐
45 lected.
46
48 On success, GNUTLS_E_SUCCESS (0) is returned, otherwise a negative er‐
49 ror value.
50
52 Report bugs to <bugs@gnutls.org>.
53 Home page: https://www.gnutls.org
54
55
57 Copyright © 2001-2023 Free Software Foundation, Inc., and others.
58 Copying and distribution of this file, with or without modification,
59 are permitted in any medium without royalty provided the copyright no‐
60 tice and this notice are preserved.
61
63 The full documentation for gnutls is maintained as a Texinfo manual.
64 If the /usr/share/doc/gnutls/ directory does not contain the HTML form
65 visit
66
67 https://www.gnutls.org/manual/
68
69gnutls 3.8.2 gnutls_x509_crl_sign2(3)