[gnutls-devel] GnuTLS | RFC7250 Raw public keys (!650)

Development of GNU's TLS library gnutls-devel at lists.gnutls.org
Wed Nov 28 22:21:55 CET 2018


Tom commented on a discussion on lib/pcert.c:

> +{
> +	/* For convenience we reuse the internal pcert structure to hold
> +	 * our raw public key. By doing so we only need one certificate
> +	 * structure that can hold multiple certificate-like credential
> +	 * types.
> +	 */
> +	int ret;
> +
> +	if (pubkey == NULL) {
> +		return gnutls_assert_val(GNUTLS_E_INVALID_REQUEST);
> +	}
> +
> +	memset(pcert, 0, sizeof(*pcert));
> +
> +	/* A pcert struct holds a raw copy of the certificate data.
> +	 * Therefore we convert our gnutls_pubkey_t to its raw DER

The key thing to document here is that we need to export the key in DER format. This info is relevant for a developer but not for the user of this API.

-- 
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/merge_requests/650#note_120895312
You're receiving this email because of your account on gitlab.com.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20181128/e5ce645d/attachment-0001.html>


More information about the Gnutls-devel mailing list