]> git.ipfire.org Git - thirdparty/openvpn.git/commit
mbedtls: improve error reporting in tls verify callback
authorSteffan Karger <steffan@karger.me>
Tue, 3 May 2016 20:14:38 +0000 (22:14 +0200)
committerGert Doering <gert@greenie.muc.de>
Thu, 5 May 2016 10:53:11 +0000 (12:53 +0200)
commit524999ab35c79f0d9732647756ad6e4d4e11d73d
tree03f314383af4c32294e2395969fe09af96158818
parent5c4acf3f7b2885270a9fb2d051a18759ab458c32
mbedtls: improve error reporting in tls verify callback

Instead of just printing the contents of the flags variable, try to
convert it to a human-readable error string and print that instead.

This will for example print "The certificate is signed with an
unacceptable key (eg bad curve, RSA too short).", instead of
"flags=10000".

Signed-off-by: Steffan Karger <steffan@karger.me>
Acked-by: Arne Schwabe <arne@rfc2549.org>
Acked-by: Gert Doering <gert@greenie.muc.de>
Message-Id: <1462306478-21059-1-git-send-email-steffan@karger.me>
URL: http://article.gmane.org/gmane.network.openvpn.devel/11594
Signed-off-by: Gert Doering <gert@greenie.muc.de>
Changes.rst
src/openvpn/ssl_verify_mbedtls.c