Blame doc/man3/CTLOG_STORE_new.pod

Packit Service 084de1
=pod
Packit Service 084de1
Packit Service 084de1
=head1 NAME
Packit Service 084de1
Packit Service 084de1
CTLOG_STORE_new, CTLOG_STORE_free,
Packit Service 084de1
CTLOG_STORE_load_default_file, CTLOG_STORE_load_file -
Packit Service 084de1
Create and populate a Certificate Transparency log list
Packit Service 084de1
Packit Service 084de1
=head1 SYNOPSIS
Packit Service 084de1
Packit Service 084de1
 #include <openssl/ct.h>
Packit Service 084de1
Packit Service 084de1
 CTLOG_STORE *CTLOG_STORE_new(void);
Packit Service 084de1
 void CTLOG_STORE_free(CTLOG_STORE *store);
Packit Service 084de1
Packit Service 084de1
 int CTLOG_STORE_load_default_file(CTLOG_STORE *store);
Packit Service 084de1
 int CTLOG_STORE_load_file(CTLOG_STORE *store, const char *file);
Packit Service 084de1
Packit Service 084de1
=head1 DESCRIPTION
Packit Service 084de1
Packit Service 084de1
A CTLOG_STORE is a container for a list of CTLOGs (Certificate Transparency
Packit Service 084de1
logs). The list can be loaded from one or more files and then searched by LogID
Packit Service 084de1
(see RFC 6962, Section 3.2, for the definition of a LogID).
Packit Service 084de1
Packit Service 084de1
CTLOG_STORE_new() creates an empty list of CT logs. This is then populated
Packit Service 084de1
by CTLOG_STORE_load_default_file() or CTLOG_STORE_load_file().
Packit Service 084de1
CTLOG_STORE_load_default_file() loads from the default file, which is named
Packit Service 084de1
"ct_log_list.cnf" in OPENSSLDIR (see the output of L<version>). This can be
Packit Service 084de1
overridden using an environment variable named "CTLOG_FILE".
Packit Service 084de1
CTLOG_STORE_load_file() loads from a caller-specified file path instead.
Packit Service 084de1
Both of these functions append any loaded CT logs to the CTLOG_STORE.
Packit Service 084de1
Packit Service 084de1
The expected format of the file is:
Packit Service 084de1
Packit Service 084de1
 enabled_logs=foo,bar
Packit Service 084de1
Packit Service 084de1
 [foo]
Packit Service 084de1
 description = Log 1
Packit Service 084de1
 key = <base64-encoded DER SubjectPublicKeyInfo here>
Packit Service 084de1
Packit Service 084de1
 [bar]
Packit Service 084de1
 description = Log 2
Packit Service 084de1
 key = <base64-encoded DER SubjectPublicKeyInfo here>
Packit Service 084de1
Packit Service 084de1
Once a CTLOG_STORE is no longer required, it should be passed to
Packit Service 084de1
CTLOG_STORE_free(). This will delete all of the CTLOGs stored within, along
Packit Service 084de1
with the CTLOG_STORE itself.
Packit Service 084de1
Packit Service 084de1
=head1 NOTES
Packit Service 084de1
Packit Service 084de1
If there are any invalid CT logs in a file, they are skipped and the remaining
Packit Service 084de1
valid logs will still be added to the CTLOG_STORE. A CT log will be considered
Packit Service 084de1
invalid if it is missing a "key" or "description" field.
Packit Service 084de1
Packit Service 084de1
=head1 RETURN VALUES
Packit Service 084de1
Packit Service 084de1
Both B<CTLOG_STORE_load_default_file> and B<CTLOG_STORE_load_file> return 1 if
Packit Service 084de1
all CT logs in the file are successfully parsed and loaded, 0 otherwise.
Packit Service 084de1
Packit Service 084de1
=head1 SEE ALSO
Packit Service 084de1
Packit Service 084de1
L<ct(7)>,
Packit Service 084de1
L<CTLOG_STORE_get0_log_by_id(3)>,
Packit Service 084de1
L<SSL_CTX_set_ctlog_list_file(3)>
Packit Service 084de1
Packit Service 084de1
=head1 HISTORY
Packit Service 084de1
Packit Service 084de1
These functions were added in OpenSSL 1.1.0.
Packit Service 084de1
Packit Service 084de1
=head1 COPYRIGHT
Packit Service 084de1
Packit Service 084de1
Copyright 2016 The OpenSSL Project Authors. All Rights Reserved.
Packit Service 084de1
Packit Service 084de1
Licensed under the OpenSSL license (the "License").  You may not use
Packit Service 084de1
this file except in compliance with the License.  You can obtain a copy
Packit Service 084de1
in the file LICENSE in the source distribution or at
Packit Service 084de1
L<https://www.openssl.org/source/license.html>.
Packit Service 084de1
Packit Service 084de1
=cut