diff options
author | Dr. David von Oheimb <David.von.Oheimb@siemens.com> | 2020-05-06 13:51:50 +0200 |
---|---|---|
committer | Dr. David von Oheimb <David.von.Oheimb@siemens.com> | 2020-05-15 20:20:08 +0200 |
commit | 6d382c74b375f1f8c44f04ec3de95ff781598a3b (patch) | |
tree | 4991b57879da3810fbf912c3d169232755380432 /doc/man1/openssl-cms.pod.in | |
parent | 60d5331350a5e557908eed0ba7420dba2ad3b79f (diff) |
Use OSSL_STORE for load_{,pub}key() and load_cert() in apps/lib/apps.c
This also adds the more flexible and general load_key_cert_crl()
as well as helper functions get_passwd(), cleanse(), and clear_free()
to be used also in apps/cmp.c etc.
Reviewed-by: Richard Levitte <levitte@openssl.org>
Reviewed-by: David von Oheimb <david.von.oheimb@siemens.com>
(Merged from https://github.com/openssl/openssl/pull/11755)
Diffstat (limited to 'doc/man1/openssl-cms.pod.in')
-rw-r--r-- | doc/man1/openssl-cms.pod.in | 14 |
1 files changed, 9 insertions, 5 deletions
diff --git a/doc/man1/openssl-cms.pod.in b/doc/man1/openssl-cms.pod.in index 4fbb7c0e16..375d358703 100644 --- a/doc/man1/openssl-cms.pod.in +++ b/doc/man1/openssl-cms.pod.in @@ -36,7 +36,7 @@ B<openssl> B<cms> [B<-inform> B<DER>|B<PEM>|B<SMIME>] [B<-outform> B<DER>|B<PEM>|B<SMIME>] [B<-rctform> B<DER>|B<PEM>|B<SMIME>] -[B<-keyform> B<DER>|B<PEM>|B<ENGINE>] +[B<-keyform> B<DER>|B<PEM>|B<P12>|B<ENGINE>] [B<-stream>] [B<-indef>] [B<-noindef>] @@ -82,7 +82,7 @@ B<openssl> B<cms> {- $OpenSSL::safe::opt_r_synopsis -} {- $OpenSSL::safe::opt_engine_synopsis -} {- $OpenSSL::safe::opt_provider_synopsis -} -[I<cert.pem> ...] +[I<recipient-cert> ...] =for openssl ifdef des-wrap engine @@ -235,9 +235,10 @@ The output format of the CMS structure (if one is being written); the default is B<SMIME>. See L<openssl(1)/Format Options> for details. -=item B<-keyform> B<DER>|B<PEM>|B<ENGINE> +=item B<-keyform> B<DER>|B<PEM>|B<P12>|B<ENGINE> The format of the private key file; the default is B<PEM>. +The only value with effect is B<ENGINE>; all others have become obsolete. See L<openssl(1)/Format Options> for details. =item B<-rctform> B<DER>|B<PEM>|B<SMIME> @@ -370,7 +371,7 @@ the MIME type multipart/signed is used. Allows additional certificates to be specified. When signing these will be included with the message. When verifying these will be searched for -the signers certificates. The certificates should be in PEM format. +the signers certificates. =item B<-certsout> I<file> @@ -493,7 +494,7 @@ Any verification errors cause the command to exit. {- $OpenSSL::safe::opt_provider_item -} -=item I<cert.pem> ... +=item I<recipient-cert> ... One or more certificates of message recipients: used when encrypting a message. @@ -766,6 +767,9 @@ was added in OpenSSL 1.0.2. The -no_alt_chains option was added in OpenSSL 1.0.2b. +All B<-keyform> values except B<ENGINE> have become obsolete in OpenSSL 3.0.0 +and have no effect. + =head1 COPYRIGHT Copyright 2008-2020 The OpenSSL Project Authors. All Rights Reserved. |