cert-validator: Use a separate method for online revocation checking

This avoids having to repeat offline checks after basic trust chain
validation.
This commit is contained in:
Tobias Brunner
2022-10-03 10:48:46 +02:00
parent 1968615590
commit 1f870ae189
7 changed files with 67 additions and 30 deletions
@@ -110,8 +110,7 @@ static bool check_addrblock(private_addrblock_validator_t *this,
METHOD(cert_validator_t, validate, bool,
private_addrblock_validator_t *this, certificate_t *subject,
certificate_t *issuer, bool online, u_int pathlen, bool anchor,
auth_cfg_t *auth)
certificate_t *issuer, u_int pathlen, bool anchor, auth_cfg_t *auth)
{
if (subject->get_type(subject) == CERT_X509 &&
issuer->get_type(issuer) == CERT_X509)