]> git.ipfire.org Git - thirdparty/gnutls.git/commitdiff
Reorder.
authorSimon Josefsson <simon@josefsson.org>
Thu, 1 Feb 2007 11:21:39 +0000 (11:21 +0000)
committerSimon Josefsson <simon@josefsson.org>
Thu, 1 Feb 2007 11:21:39 +0000 (11:21 +0000)
NEWS

diff --git a/NEWS b/NEWS
index 45dd7e2937b209744aba9583981b9264b9a4f403..fe689187435e6d84b81ab0d7c475ab9473964be2 100644 (file)
--- a/NEWS
+++ b/NEWS
@@ -5,6 +5,20 @@ See the end for copying conditions.
 
 * Version 1.7.3 (unreleased)
 
+** New option to certtool: --generate-proxy.
+This will generate a Proxy Certificate from an end entity certificate.
+You will need to specify the proxy certificate's private key with
+--load-privkey, the user certificate with --load-certificate and the
+private key used to sign the new proxy certificate with
+--load-ca-privkey.  Certtool will query for proxy path length and the
+policy language OID.  Currently only OIDs that have an empty policy
+are supported (which includes the two OIDs defined by RFC 3820).
+
+** Certtool --certificate-info now prints information for Proxy Certificates.
+Before the proxy extension was just printed as DER encoded data.
+
+** New APIs to set proxy subject names and get/set proxy cert extension.
+
 ** Fix parsing of pathLenConstraints in BasicConstraints with missing cA.
 
 ** Added self-test to test for regressions of pathLenConstraint bug.
@@ -22,20 +36,6 @@ Reported and tiny patch provided by Matthias Scheler <tron@NetBSD.org>.
 ** Fix import of ASCII armored OpenPGP keys.
 Patch by ludovic.courtes@laas.fr (Ludovic Courtès).
 
-** Certtool --certificate-info now prints information for Proxy Certificates.
-Before the proxy extension was just printed as DER encoded data.
-
-** New option to certtool: --generate-proxy.
-This will generate a Proxy Certificate from an end entity certificate.
-You will need to specify the proxy certificate's private key with
---load-privkey, the user certificate with --load-certificate and the
-private key used to sign the new proxy certificate with
---load-ca-privkey.  Certtool will query for proxy path length and the
-policy language OID.  Currently only OIDs that have an empty policy
-are supported (which includes the two OIDs defined by RFC 3820).
-
-** New APIs to set proxy subject names and get/set proxy cert extension.
-
 ** API and ABI modifications:
 gnutls_x509_crt_set_proxy_dn: ADD.
 gnutls_x509_crt_set_proxy: ADD.