I don't think anyone uses this except openconnect(8). It's redundant since you can just call openconnect_set_system_trust(vpninfo, 0) and then do the check in your own verify_cert callback. I know that none of the Windows, Android, GNOME and KDE tools use it, and I'd be surprised if Shimo does. So I'm going to move the handling of --servercert into main.c and kill the API function. At some point over the weekend, unless someone screams. -- dwmw2 -------------- next part -------------- A non-text attachment was scrubbed... Name: smime.p7s Type: application/x-pkcs7-signature Size: 5745 bytes Desc: not available URL: <http://lists.infradead.org/pipermail/openconnect-devel/attachments/20141107/e3572da5/attachment.bin>