Re: Misunderstanding openssl verify

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



> On 16 Aug 2021, at 9:41 am, Ken Goldman <kgoldman@xxxxxxxxxx> wrote:
> 
> Adding -check_ss_sig correctly causes a signature failure.

Well, there you are.  See the documentation of "check_ss_sig":

   -check_ss_sig
       Verify the signature on the self-signed root CA. This is
       disabled by default because it doesn't add any security.

> It seems as though the 'verify' command checks the issuer,
> but not the signature of the certificate - the last parameter.

As documented.

-- 
	Viktor.




[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux