Well, sorry but this is not possible w/o source code changes.
Signature verifications includes cert verification and there
is no way to disable it.
Aleksey
Frank Gross wrote:
Hi,
I would like to encrypt or validate a document using the X509 retrieval
method but without setting a root certificate in the trusted list of the
key manager. Is this possible ? Because I tried with flag
XMLSEC_KEYINFO_FLAGS_X509DATA_DONT_VERIFY_CERTS in the xmlSecEncCtx
structure and in the corresponding keyInfoWriteCtx and keyInfoReadCtx
structure, but it doesn't work.
Thanks,
Frank
_______________________________________________
xmlsec mailing list
[email protected]
http://www.aleksey.com/mailman/listinfo/xmlsec
_______________________________________________
xmlsec mailing list
[email protected]
http://www.aleksey.com/mailman/listinfo/xmlsec