[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Accepting an expired Certificate.



Sender: Buck Calabro <kc2hiz@xxxxxxxxx>

Eduard,

This is just a guess because I am not familiar with GSKit (yet.)  Can
you use gsk_attribute_set_enum() to set  GSK_SESSION_TYPE (402) for
GSK_CLIENT_AUTH_TYPE (401) to be GSK_CLIENT_AUTH_PASSTHRU (505)?  'All
received certificates are validated. If validation is successful or
validation fails because the certificate is expired or does not have a
trusted root, the secure session will start.'

It looks like that will do what you need.
http://publib.boulder.ibm.com/infocenter/iseries/v5r3/topic/apis/gsk_attribute_set_enum.htm

If this helps, please cross-post the answer to the other lists for
their archives.
  --buck

-----------------------------------------------------------------------
This is the FTPAPI mailing list.  To unsubsribe from the list send mail
to majordomo@xxxxxxxxxxxxx with the body: unsubscribe ftpapi mymailaddr
-----------------------------------------------------------------------