Hi,
In message <[EMAIL PROTECTED]>,
`"Keisuke Nishida" <[EMAIL PROTECTED]>' wrote:
> X509_STORE *store = SSL_CTX_get_cert_store(ctx);
> X509_LOOKUP *lookup = X509_STORE_add_lookup(store, X509_LOOKUP_file());
> X509_load_crl_file(lookup, "ca.crl", X509_FILETYPE_PEM);
How about trying this?
X509_STORE_set_flags(store, X509_V_FLAG_CRL_CHECK);
If you want to check authority revocation lists, use
X509_V_FLAG_CRL_CHECK_ALL instead.
--
gotoyuzo
______________________________________________________________________
OpenSSL Project http://www.openssl.org
User Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]