mirror of
https://github.com/Mbed-TLS/mbedtls.git
synced 2026-10-11 03:17:24 +00:00
Add documentation and a changelog entry
Signed-off-by: Andrzej Kurek <[email protected]>
This commit is contained in:
@@ -0,0 +1,6 @@
|
|||||||
|
Features
|
||||||
|
* It is now possible to generate certificates with SubjectAltNames.
|
||||||
|
Currently supported subtypes: DnsName, UniformResourceIdentifier,
|
||||||
|
IP address, OtherName, and DirectoryName, as defined in RFC 5280.
|
||||||
|
See mbedtls_x509write_crt_set_subject_alternative_name for
|
||||||
|
more information.
|
||||||
@@ -473,7 +473,6 @@ int mbedtls_x509_set_extension(mbedtls_asn1_named_data **head, const char *oid,
|
|||||||
size_t val_len);
|
size_t val_len);
|
||||||
int mbedtls_x509_write_extensions(unsigned char **p, unsigned char *start,
|
int mbedtls_x509_write_extensions(unsigned char **p, unsigned char *start,
|
||||||
mbedtls_asn1_named_data *first);
|
mbedtls_asn1_named_data *first);
|
||||||
|
|
||||||
int mbedtls_x509_write_names(unsigned char **p, unsigned char *start,
|
int mbedtls_x509_write_names(unsigned char **p, unsigned char *start,
|
||||||
mbedtls_asn1_named_data *first);
|
mbedtls_asn1_named_data *first);
|
||||||
int mbedtls_x509_write_sig(unsigned char **p, unsigned char *start,
|
int mbedtls_x509_write_sig(unsigned char **p, unsigned char *start,
|
||||||
|
|||||||
@@ -241,6 +241,18 @@ typedef struct mbedtls_x509write_cert {
|
|||||||
}
|
}
|
||||||
mbedtls_x509write_cert;
|
mbedtls_x509write_cert;
|
||||||
|
|
||||||
|
/**
|
||||||
|
* \brief Set Subject Alternative Name
|
||||||
|
*
|
||||||
|
* \param ctx Certificate context to use
|
||||||
|
* \param san_list List of SAN values
|
||||||
|
*
|
||||||
|
* \return 0 if successful, or MBEDTLS_ERR_X509_ALLOC_FAILED
|
||||||
|
*
|
||||||
|
* \note "dnsName", "uniformResourceIdentifier", "IP address",
|
||||||
|
* "otherName", and "DirectoryName", as defined in RFC 5280,
|
||||||
|
* are supported.
|
||||||
|
*/
|
||||||
int mbedtls_x509write_crt_set_subject_alternative_name(mbedtls_x509write_cert *ctx,
|
int mbedtls_x509write_crt_set_subject_alternative_name(mbedtls_x509write_cert *ctx,
|
||||||
const mbedtls_x509_san_list *san_list);
|
const mbedtls_x509_san_list *san_list);
|
||||||
|
|
||||||
|
|||||||
@@ -153,7 +153,6 @@ int mbedtls_x509write_crt_set_validity(mbedtls_x509write_cert *ctx,
|
|||||||
return 0;
|
return 0;
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|
||||||
int mbedtls_x509write_crt_set_subject_alternative_name(mbedtls_x509write_cert *ctx,
|
int mbedtls_x509write_crt_set_subject_alternative_name(mbedtls_x509write_cert *ctx,
|
||||||
const mbedtls_x509_san_list *san_list)
|
const mbedtls_x509_san_list *san_list)
|
||||||
{
|
{
|
||||||
|
|||||||
@@ -925,7 +925,7 @@ usage:
|
|||||||
|
|
||||||
if (ret != 0) {
|
if (ret != 0) {
|
||||||
mbedtls_printf(
|
mbedtls_printf(
|
||||||
" failed\n ! mbedtls_x509write_csr_set_subject_alternative_name returned %d",
|
" failed\n ! mbedtls_x509write_crt_set_subject_alternative_name returned %d",
|
||||||
ret);
|
ret);
|
||||||
goto exit;
|
goto exit;
|
||||||
}
|
}
|
||||||
|
|||||||
Reference in New Issue
Block a user