. , .
:
-
- . SS () TR ().
- SS (SS_C) (SS_S).
- TR (TR_C) (TR_S) .
- TR CA CA .
:
- openssl verify
SS_C SS_S , CAfile
- openssl verify
TR_C TR_S
,
Client/Server:
- : SS - TR
- SSL_CTX_set_default_verify_paths
: SS - TR
- SSL_CTX_load_verify_locations
SS CA: SS - TR
,
, .
SSL_CTX_set_default_verify_paths
, SSL_CTX_load_verify_locations
:
SSL_CTX_load_verify_locations
SS CA.
- TR -
- SS -
-
,
X509_STORE
SSL_CTX_load_verify_locations
:
SS CA, SS CA.
- SS CA: SS - TR
- ( , ): SS - TR
- SSL_CTX_set_default_verify_paths
+ SS CA: SS - TR
..