Variable verifyIssuedDirectly
verifyIssuedDirectly: (
leafDer: any,
authorities: any,
opts: any,
) =>
| {
chain: { der: any; pem: any; sha1: any; x509: any }[];
check?: undefined;
index: number;
ok: boolean;
reason?: undefined;
}
| {
chain?: undefined;
check: any;
index?: undefined;
ok: boolean;
reason: any;
} = verifyIssuedDirectly
Type Declaration
-
- (
leafDer: any,
authorities: any,
opts: any,
):
| {
chain: { der: any; pem: any; sha1: any; x509: any }[];
check?: undefined;
index: number;
ok: boolean;
reason?: undefined;
}
| {
chain?: undefined;
check: any;
index?: undefined;
ok: boolean;
reason: any;
}
-
Parameters
- leafDer: any
- authorities: any
- opts: any
Returns
| {
chain: { der: any; pem: any; sha1: any; x509: any }[];
check?: undefined;
index: number;
ok: boolean;
reason?: undefined;
}
| {
chain?: undefined;
check: any;
index?: undefined;
ok: boolean;
reason: any;
}
{ ok: true, index } naming the authority, or
{ ok: false, check, reason }
Checks, synchronously, that a leaf is issued directly by one of the given authorities and that the two-certificate path holds the path rules.
Uses node's signature check, so an authority with a key OpenSSL cannot read (a post-quantum one) verifies nothing here;
verifyPathToAnchors()is the door for those.