Mercurial > hg > nginx-quic
annotate src/core/ngx_sha1.h @ 5989:ec01b1d1fff1
Mail: client SSL certificates support.
The "ssl_verify_client", "ssl_verify_depth", "ssl_client_certificate",
"ssl_trusted_certificate", and "ssl_crl" directives introduced to control
SSL client certificate verification in mail proxy module.
If there is a certificate, detail of the certificate are passed to
the auth_http script configured via Auth-SSL-Verify, Auth-SSL-Subject,
Auth-SSL-Issuer, Auth-SSL-Serial, Auth-SSL-Fingerprint headers. If
the auth_http_pass_client_cert directive is set, client certificate
in PEM format will be passed in the Auth-SSL-Cert header (urlencoded).
If there is no required certificate provided during an SSL handshake
or certificate verification fails then a protocol-specific error is
returned after the SSL handshake and the connection is closed.
Based on previous work by Sven Peter, Franck Levionnois and Filipe Da Silva.
author | Maxim Dounin <mdounin@mdounin.ru> |
---|---|
date | Wed, 25 Feb 2015 17:48:05 +0300 |
parents | d620f497c50f |
children | 1064ea81ed3a |
rev | line source |
---|---|
1573 | 1 |
2 /* | |
3 * Copyright (C) Igor Sysoev | |
4412 | 4 * Copyright (C) Nginx, Inc. |
1573 | 5 */ |
6 | |
7 | |
8 #ifndef _NGX_SHA1_H_INCLUDED_ | |
9 #define _NGX_SHA1_H_INCLUDED_ | |
10 | |
11 | |
12 #include <ngx_config.h> | |
13 #include <ngx_core.h> | |
14 | |
15 | |
16 #if (NGX_HAVE_OPENSSL_SHA1_H) | |
17 #include <openssl/sha.h> | |
18 #else | |
19 #include <sha.h> | |
20 #endif | |
21 | |
22 | |
23 typedef SHA_CTX ngx_sha1_t; | |
24 | |
25 | |
1598 | 26 #define ngx_sha1_init SHA1_Init |
27 #define ngx_sha1_update SHA1_Update | |
28 #define ngx_sha1_final SHA1_Final | |
1573 | 29 |
30 | |
31 #endif /* _NGX_SHA1_H_INCLUDED_ */ |