[Vm-dev] SqueakSSL + SAN certificates

Norbert Hartl norbert at hartl.name
Wed May 27 07:15:41 UTC 2015


I don't understand. You are returning a field of the cert so you are parsing it somehow natively. Where is the difficulty just to return to whole binary certificate data? 

Norbert


> Am 27.05.2015 um 03:23 schrieb Levente Uzonyi <leves at elte.hu>:
> 
> If it were possible, then there would be no need to add this.
> 
> Levente
> 
> On Wed, 27 May 2015, Norbert Hartl wrote:
> 
>> 
>> Sounds great! Is it possible to access to whole certificate data as well?
>> 
>> Norbert
>> 
>>> Am 26.05.2015 um 23:55 schrieb Levente Uzonyi <leves at elte.hu>:
>>> 
>>> Hi All,
>>> 
>>> I've implemented support for reading the domain names from the certificate's SAN extension[1] in SqueakSSL.
>>> The image side code is in the Inbox[2]. It is backwards compatible -- everything works as before without the VM changes.
>>> I've also uploaded the modified files[3][4] for the unix platform, and a diff[5] (which somehow doesn't include the changes of the .h file).
>>> 
>>> The VM support code for other platforms are to be done.
>>> 
>>> These changes fix the failing SqueakSSL test in the Trunk, so I suggest including the .mcz file in the 4.6 release.
>>> 
>>> Levente
>>> 
>>> [1] https://en.wikipedia.org/wiki/SubjectAltName
>>> [2] http://lists.squeakfoundation.org/pipermail/squeak-dev/2015-May/184581.html
>>> [3] http://leves.web.elte.hu/squeak/SqueakSSL/SqueakSSL.h
>>> [4] http://leves.web.elte.hu/squeak/SqueakSSL/sqUnixOpenSSL.c
>>> [5] http://leves.web.elte.hu/squeak/SqueakSSL/diff.txt
>> 
>> 



More information about the Vm-dev mailing list