summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorNikos Mavrogiannopoulos <nmav@gnutls.org>2018-01-17 08:38:13 +0100
committerNikos Mavrogiannopoulos <nmav@gnutls.org>2018-01-17 08:38:13 +0100
commit2cb048cf9296bf08234054e9f0f8346b6697817b (patch)
tree38f20f184187dc9933a95214b9851af53bff9fdf
parenteaa4cf3676a7dd73e193286dde692eb38524d3ca (diff)
downloadgnutls-2cb048cf9296bf08234054e9f0f8346b6697817b.tar.gz
examples: use gnutls_certificate_set_x509_system_trust
Signed-off-by: Nikos Mavrogiannopoulos <nmav@gnutls.org>
-rw-r--r--doc/examples/ex-client-dtls.c6
-rw-r--r--doc/examples/ex-client-x509.c10
2 files changed, 5 insertions, 11 deletions
diff --git a/doc/examples/ex-client-dtls.c b/doc/examples/ex-client-dtls.c
index d154015395..0a5aef3204 100644
--- a/doc/examples/ex-client-dtls.c
+++ b/doc/examples/ex-client-dtls.c
@@ -21,7 +21,6 @@
#define CHECK(x) assert((x)>=0)
#define MAX_BUF 1024
-#define CAFILE "/etc/ssl/certs/ca-certificates.crt"
#define MSG "GET / HTTP/1.0\r\n\r\n"
extern int udp_connect(void);
@@ -46,9 +45,8 @@ int main(void)
/* X509 stuff */
CHECK(gnutls_certificate_allocate_credentials(&xcred));
- /* sets the trusted cas file */
- CHECK(gnutls_certificate_set_x509_trust_file(xcred, CAFILE,
- GNUTLS_X509_FMT_PEM));
+ /* sets the system trusted CAs for Internet PKI */
+ CHECK(gnutls_certificate_set_x509_system_trust(xcred));
/* Initialize TLS session */
CHECK(gnutls_init(&session, GNUTLS_CLIENT | GNUTLS_DATAGRAM));
diff --git a/doc/examples/ex-client-x509.c b/doc/examples/ex-client-x509.c
index 4fedce1e60..0dc23bff37 100644
--- a/doc/examples/ex-client-x509.c
+++ b/doc/examples/ex-client-x509.c
@@ -19,7 +19,6 @@
#define CHECK(x) assert((x)>=0)
#define MAX_BUF 1024
-#define CAFILE "/etc/ssl/certs/ca-certificates.crt"
#define MSG "GET / HTTP/1.0\r\n\r\n"
extern int tcp_connect(void);
@@ -46,10 +45,8 @@ int main(void)
/* X509 stuff */
CHECK(gnutls_certificate_allocate_credentials(&xcred));
- /* sets the trusted cas file
- */
- CHECK(gnutls_certificate_set_x509_trust_file(xcred, CAFILE,
- GNUTLS_X509_FMT_PEM));
+ /* sets the system trusted CAs for Internet PKI */
+ CHECK(gnutls_certificate_set_x509_system_trust(xcred));
/* If client holds a certificate it can be set using the following:
*
@@ -57,8 +54,7 @@ int main(void)
GNUTLS_X509_FMT_PEM);
*/
- /* Initialize TLS session
- */
+ /* Initialize TLS session */
CHECK(gnutls_init(&session, GNUTLS_CLIENT));
CHECK(gnutls_server_name_set(session, GNUTLS_NAME_DNS, "my_host_name",