Holds a certificate path to this module's path rules and reports the first certificate, from the leaf, that breaks one.
check is one of unusable, critical, weak-signature, malformed, not-ca, key-cert-sign, path-len, name-constraints or policy.
check
entries with der, leaf first and anchor last
der
allowCritical (extensions the caller evaluates itself), allowSha1, and policy (the section 6.1 inputs)
allowCritical
allowSha1
policy
null, or { check, index, why }
{ check, index, why }
Holds a certificate path to this module's path rules and reports the first certificate, from the leaf, that breaks one.
checkis one of unusable, critical, weak-signature, malformed, not-ca, key-cert-sign, path-len, name-constraints or policy.