tree: d973c9dad49c16d0e0107c4e8e3963fc14878f0a [path history] [tgz]
  1. fillins/
  2. patches/
  3. testdata/
  4. asn1_util.cc
  5. asn1_util.h
  6. cert_error_id.cc
  7. cert_error_id.h
  8. cert_error_params.cc
  9. cert_error_params.h
  10. cert_errors.cc
  11. cert_errors.h
  12. cert_issuer_source.h
  13. cert_issuer_source_static.cc
  14. cert_issuer_source_static.h
  15. cert_issuer_source_static_unittest.cc
  16. cert_issuer_source_sync_unittest.h
  17. cert_status_flags.h
  18. cert_status_flags_list.h
  19. cert_verify_proc_blocklist.inc
  20. certificate_policies.cc
  21. certificate_policies.h
  22. certificate_policies_unittest.cc
  23. common_cert_errors.cc
  24. common_cert_errors.h
  25. crl.cc
  26. crl.h
  27. crl_unittest.cc
  28. encode_values.cc
  29. encode_values.h
  30. encode_values_unittest.cc
  31. extended_key_usage.cc
  32. extended_key_usage.h
  33. extended_key_usage_unittest.cc
  34. general_names.cc
  35. general_names.h
  36. general_names_unittest.cc
  37. input.cc
  38. input.h
  39. input_unittest.cc
  40. ip_util.cc
  41. ip_util.h
  42. ip_util_unittest.cc
  43. mock_signature_verify_cache.cc
  44. mock_signature_verify_cache.h
  45. name_constraints.cc
  46. name_constraints.h
  47. name_constraints_unittest.cc
  48. nist_pkits_unittest.cc
  49. nist_pkits_unittest.h
  50. ocsp.cc
  51. ocsp.h
  52. ocsp_revocation_status.h
  53. ocsp_unittest.cc
  54. ocsp_verify_result.cc
  55. ocsp_verify_result.h
  56. parse_certificate.cc
  57. parse_certificate.h
  58. parse_certificate_unittest.cc
  59. parse_name.cc
  60. parse_name.h
  61. parse_name_unittest.cc
  62. parse_values.cc
  63. parse_values.h
  64. parse_values_unittest.cc
  65. parsed_certificate.cc
  66. parsed_certificate.h
  67. parsed_certificate_unittest.cc
  68. parser.cc
  69. parser.h
  70. parser_unittest.cc
  71. path_builder.cc
  72. path_builder.h
  73. path_builder_pkits_unittest.cc
  74. path_builder_unittest.cc
  75. path_builder_verify_certificate_chain_unittest.cc
  76. pem.cc
  77. pem.h
  78. pem_unittest.cc
  79. README.md
  80. revocation_util.cc
  81. revocation_util.h
  82. signature_algorithm.cc
  83. signature_algorithm.h
  84. signature_algorithm_unittest.cc
  85. signature_verify_cache.h
  86. simple_path_builder_delegate.cc
  87. simple_path_builder_delegate.h
  88. simple_path_builder_delegate_unittest.cc
  89. string_util.cc
  90. string_util.h
  91. string_util_unittest.cc
  92. tag.cc
  93. tag.h
  94. test_helpers.cc
  95. test_helpers.h
  96. trust_store.cc
  97. trust_store.h
  98. trust_store_collection.cc
  99. trust_store_collection.h
  100. trust_store_collection_unittest.cc
  101. trust_store_in_memory.cc
  102. trust_store_in_memory.h
  103. verify_certificate_chain.cc
  104. verify_certificate_chain.h
  105. verify_certificate_chain_pkits_unittest.cc
  106. verify_certificate_chain_typed_unittest.h
  107. verify_certificate_chain_unittest.cc
  108. verify_name_match.cc
  109. verify_name_match.h
  110. verify_name_match_unittest.cc
  111. verify_signed_data.cc
  112. verify_signed_data.h
  113. verify_signed_data_unittest.cc
pki/README.md

BoringSSL pki - Web PKI Certificate path building and verification library

This directory and library should be considered experimental and should not be depended upon not to change without notice. You should not use this.

It contains chrome's certificate verifier core logic as used by chrome.

Current status:

  • Currently chrome uses this code via private API from within this directory.
  • At the moment there is no public API for these functions, as mentioned above if you make use of this you do so at your own risk and your code may be broken by API change at any time.
  • Public API will be forthcoming.