gnutls_x509_crt_t crt
a certificate of type gnutls_x509_crt_t
gnutls_x509_crt_t issuer
is the certificate of the certificate issuer
gnutls_privkey_t issuer_key
holds the issuer's private key
gnutls_digest_algorithm_t dig
The message digest to use, GNUTLS_DIG_SHA256 is a
safe choice
unsigned int flags
must be 0
ОПИСАНИЕ
This function will sign the certificate with the issuer's private
key, and will copy the issuer's information into the certificate.
This must be the last step in a certificate generation since all
the previously set parameters are now signed.
A known limitation of this function is, that a newly-signed
certificate will not be fully functional (e.g., for signature
verification), until it is exported an re-imported.
After GnuTLS 3.6.1 the value of dig may be GNUTLS_DIG_UNKNOWN,
and in that case, a suitable but reasonable for the key algorithm
will be selected.
ЗНАЧЕНИЯ, ВОЗВРАЩАЕМЫЕ ФУНКЦИЕЙ
On success, GNUTLS_E_SUCCESS (0) is returned, otherwise a
negative error value.
The full documentation for gnutls is maintained as a Texinfo
manual. If the /usr/share/doc/gnutls/ directory does not contain
the HTML form visit
https://www.gnutls.org/manual/
КОЛОФОН
This page is part of the GnuTLS (GnuTLS Transport Layer Security
Library) project. Information about the project can be found at
⟨http://www.gnutls.org/⟩. If you have a bug report for this
manual page, send it to bugs@gnutls.org. This page was obtained
from the tarball gnutls-3.8.5.tar.xz fetched from
⟨http://www.gnutls.org/download.html⟩ on 2024-06-14. If you
discover any rendering problems in this HTML version of the page,
or you believe there is a better or more up-to-date source for
the page, or you have corrections or improvements to the
information in this COLOPHON (which is not part of the original
manual page), send a mail to man-pages@man7.org
gnutls 3.8.5 gnutls_x509_crt_privkey_sign(3)