Re: [apache-ssl] More then one trusted CA's in Apache-SSL ?
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [apache-ssl] More then one trusted CA's in Apache-SSL ?




In article <35E283E3.980F4D2A@algroup.co.uk> you wrote:
> Holger Reif wrote:
>> 
>> > Could you elaborate, a bit, on the hash sym-links, please?
>> 
>> It's how SSLeay tries to find the issues cert: It takes a hash
>> of the issuer and looks wether there is a file with the hash
>> as name and an extension of .1, .2 and so on (just in case of
>> an unlikely collision or one issuer having more then one cert).

> Actually, it starts with .0, doesn't it?

Yes, SSLeay starts with the extension 0.
(see SSLeay 0.9.0b, file crypto/x509/by_dir.c, line 311)

                                       Ralf S. Engelschall
                                       rse@engelschall.com
                                       www.engelschall.com