Dr. Stephen Henson 4ba9a4265b Make OCSP response verification more flexible.
If a set of certificates is supplied to OCSP_basic_verify use those in
addition to any present in the OCSP response as untrusted CAs when
verifying a certificate chain.

PR#3668

Reviewed-by: Matt Caswell <matt@openssl.org>
(cherry picked from commit 4ca5efc2874e094d6382b30416824eda6dde52fe)
2015-03-24 12:14:04 +00:00
..
2015-03-13 21:14:20 -07:00
2015-01-22 09:31:38 +00:00
2015-03-24 11:34:20 +00:00
2015-03-12 09:29:48 +00:00
2015-02-24 10:12:57 +01:00
2015-03-05 09:15:08 +00:00
2015-03-12 09:29:48 +00:00
2015-03-12 09:29:48 +00:00
2015-03-17 14:49:47 +00:00
2015-03-05 09:15:08 +00:00
2015-01-22 14:11:04 +00:00
2015-02-24 10:12:57 +01:00
2015-03-05 09:15:08 +00:00
2015-03-19 12:58:35 +00:00
2015-03-17 13:48:04 +00:00
2015-03-05 09:15:08 +00:00
2015-01-22 09:31:38 +00:00
2015-03-02 15:26:41 +00:00
2011-08-12 12:31:08 +00:00
2014-06-10 23:20:55 +02:00
2015-02-09 13:01:15 +00:00
2015-01-22 09:31:38 +00:00
2015-01-22 09:31:38 +00:00
2015-01-22 09:31:38 +00:00
2015-01-22 09:31:38 +00:00
2015-01-22 09:31:38 +00:00
2015-03-19 13:34:56 +00:00
2013-05-20 00:16:18 +02:00
2015-01-22 09:31:38 +00:00