Hi,

In message <[EMAIL PROTECTED]>,
 `"Keisuke Nishida" <[EMAIL PROTECTED]>' wrote:
>   X509_STORE *store = SSL_CTX_get_cert_store(ctx);
>   X509_LOOKUP *lookup = X509_STORE_add_lookup(store, X509_LOOKUP_file());
>   X509_load_crl_file(lookup, "ca.crl", X509_FILETYPE_PEM);

How about trying this?

    X509_STORE_set_flags(store, X509_V_FLAG_CRL_CHECK);

If you want to check authority revocation lists, use
X509_V_FLAG_CRL_CHECK_ALL instead.

-- 
gotoyuzo
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to