Dear All, 

In openssl  API  X509_verify(X509 *a, EVP_PKEY *r) is used to verify the
signature of certificate. I have some doubt please help me.

1.      Is in this API we are passing the CA certificate and public key of
CA certificate?
2.      What is  data over SSL compute the HASH?
3.      SSL will decrypt the CA signature (Which is on CA certificate
bundle)? 
4.      Decrypted CA Signature will match to above HASH.(query 2)?

 

Please tell me.

 

Thank you.

Regards,

--Ajeet  Kumar  Singh

 

 

 

Reply via email to