Verify the remote TLS certificates using the system-wide trusted CAs

This commit is contained in:
Florent Le Coz
2015-11-02 03:26:13 +01:00
parent 7e07a17420
commit f928f76272
4 changed files with 63 additions and 28 deletions
@@ -0,0 +1,22 @@
#ifndef BIBOUMI_CREDENTIALS_MANAGER_HPP
#define BIBOUMI_CREDENTIALS_MANAGER_HPP
#include <botan/botan.h>
#include <botan/tls_client.h>
class Basic_Credentials_Manager: public Botan::Credentials_Manager
{
public:
Basic_Credentials_Manager();
void verify_certificate_chain(const std::string& type,
const std::string& purported_hostname,
const std::vector<Botan::X509_Certificate>&) override final;
std::vector<Botan::Certificate_Store*> trusted_certificate_authorities(const std::string& type,
const std::string& context) override final;
private:
void load_certs();
Botan::Certificate_Store_In_Memory certificate_store;
};
#endif //BIBOUMI_CREDENTIALS_MANAGER_HPP