gnutls_x509_crl_t crl
should contain a gnutls_x509_crl_t type
gnutls_x509_crt_t issuer
is the certificate of the certificate issuer
gnutls_x509_privkey_t issuer_key
holds the issuer's private key
gnutls_digest_algorithm_t dig
The message digest to use. GNUTLS_DIG_SHA256 is the
safe choice unless you know what you're doing.
unsigned int flags
must be 0
ОПИСАНИЕ
This function will sign the CRL with the issuer's private key,
and will copy the issuer's information into the CRL.
This must be the last step in a certificate CRL since all the
previously set parameters are now signed.
A known limitation of this function is, that a newly-signed CRL
will not be fully functional (e.g., for signature verification),
until it is exported an re-imported.
After GnuTLS 3.6.1 the value of dig may be GNUTLS_DIG_UNKNOWN,
and in that case, a suitable but reasonable for the key algorithm
will be selected.
ЗНАЧЕНИЯ, ВОЗВРАЩАЕМЫЕ ФУНКЦИЕЙ
On success, GNUTLS_E_SUCCESS (0) is returned, otherwise a
negative error value.
The full documentation for gnutls is maintained as a Texinfo
manual. If the /usr/share/doc/gnutls/ directory does not contain
the HTML form visit
https://www.gnutls.org/manual/
КОЛОФОН
This page is part of the GnuTLS (GnuTLS Transport Layer Security
Library) project. Information about the project can be found at
⟨http://www.gnutls.org/⟩. If you have a bug report for this
manual page, send it to bugs@gnutls.org. This page was obtained
from the tarball gnutls-3.8.5.tar.xz fetched from
⟨http://www.gnutls.org/download.html⟩ on 2024-06-14. If you
discover any rendering problems in this HTML version of the page,
or you believe there is a better or more up-to-date source for
the page, or you have corrections or improvements to the
information in this COLOPHON (which is not part of the original
manual page), send a mail to man-pages@man7.org
gnutls 3.8.5 gnutls_x509_crl_sign2(3)