In message <[EMAIL PROTECTED]> on Mon, 23 Feb 2004 15:40:42 -0500, "Chris Brook" 
<[EMAIL PROTECTED]> said:

cbrook> Is there any support in crypto->x509(v3) for certificate
cbrook> policy processing/checking as described in X.509 or PKIX?

No, not yet.  I've plans to do that, but haven't gotten to actually do
it yet (I need to give myself a good kick in the ass, and perhaps a
better financial situation).

cbrook> I had a quick look through the code but did not see anything?
cbrook> Or is it planned since it is required for some of the PKI
cbrook> compliance tests?
cbrook> This gets pretty complex with pathLengthConstraints, Name
cbrook> Constraints, User and Authority Constrained policies.  Perhaps
cbrook> someone is planning a contribution.

-----
Please consider sponsoring my work on free software.
See http://www.free.lp.se/sponsoring.html for details.

-- 
Richard Levitte   \ Tunnlandsv�gen 3  \ [EMAIL PROTECTED]
[EMAIL PROTECTED]  \ S-168 36  BROMMA  \ T: +46-8-26 52 47
                    \      SWEDEN       \ or +46-708-26 53 44
Procurator Odiosus Ex Infernis                -- [EMAIL PROTECTED]
Member of the OpenSSL development team: http://www.openssl.org/

Unsolicited commercial email is subject to an archival fee of $400.
See <http://www.stacken.kth.se/~levitte/mail/> for more info.
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to