docs/cmdline: change to .md for cmdline docs
- switch all invidual files documenting command line options into .md,
as the documentation is now markdown-looking.
- made the parser treat 4-space indents as quotes
- switch to building the curl.1 manpage using the "mainpage.idx" file,
which lists the files to include to generate it, instead of using the
previous page-footer/headers. Also, those files are now also .md
ones, using the same format. I gave them underscore prefixes to make
them sort separately:
_NAME.md, _SYNOPSIS.md, _DESCRIPTION.md, _URL.md, _GLOBBING.md,
_VARIABLES.md, _OUTPUT.md, _PROTOCOLS.md, _PROGRESS.md, _VERSION.md,
_OPTIONS.md, _FILES.md, _ENVIRONMENT.md, _PROXYPREFIX.md,
_EXITCODES.md, _BUGS.md, _AUTHORS.md, _WWW.md, _SEEALSO.md
- updated test cases accordingly
Closes #12751
2024-01-21 01:18:43 +03:00
|
|
|
---
|
2023-01-02 15:51:48 +03:00
|
|
|
c: Copyright (C) Daniel Stenberg, <daniel@haxx.se>, et al.
|
2022-06-14 01:12:03 +03:00
|
|
|
SPDX-License-Identifier: curl
|
2016-11-16 01:44:58 +03:00
|
|
|
Long: pinnedpubkey
|
|
|
|
Arg: <hashes>
|
|
|
|
Help: FILE/HASHES Public key to verify peer against
|
|
|
|
Protocols: TLS
|
2020-07-13 15:15:04 +03:00
|
|
|
Category: tls
|
2021-09-28 12:50:07 +03:00
|
|
|
Added: 7.39.0
|
2022-10-18 11:39:43 +03:00
|
|
|
Multi: single
|
docs/cmdline: change to .md for cmdline docs
- switch all invidual files documenting command line options into .md,
as the documentation is now markdown-looking.
- made the parser treat 4-space indents as quotes
- switch to building the curl.1 manpage using the "mainpage.idx" file,
which lists the files to include to generate it, instead of using the
previous page-footer/headers. Also, those files are now also .md
ones, using the same format. I gave them underscore prefixes to make
them sort separately:
_NAME.md, _SYNOPSIS.md, _DESCRIPTION.md, _URL.md, _GLOBBING.md,
_VARIABLES.md, _OUTPUT.md, _PROTOCOLS.md, _PROGRESS.md, _VERSION.md,
_OPTIONS.md, _FILES.md, _ENVIRONMENT.md, _PROXYPREFIX.md,
_EXITCODES.md, _BUGS.md, _AUTHORS.md, _WWW.md, _SEEALSO.md
- updated test cases accordingly
Closes #12751
2024-01-21 01:18:43 +03:00
|
|
|
See-also:
|
|
|
|
- hostpubsha256
|
|
|
|
Example:
|
|
|
|
- --pinnedpubkey keyfile $URL
|
|
|
|
- --pinnedpubkey 'sha256//ce118b51897f4452dc' $URL
|
2016-11-16 01:44:58 +03:00
|
|
|
---
|
docs/cmdline: change to .md for cmdline docs
- switch all invidual files documenting command line options into .md,
as the documentation is now markdown-looking.
- made the parser treat 4-space indents as quotes
- switch to building the curl.1 manpage using the "mainpage.idx" file,
which lists the files to include to generate it, instead of using the
previous page-footer/headers. Also, those files are now also .md
ones, using the same format. I gave them underscore prefixes to make
them sort separately:
_NAME.md, _SYNOPSIS.md, _DESCRIPTION.md, _URL.md, _GLOBBING.md,
_VARIABLES.md, _OUTPUT.md, _PROTOCOLS.md, _PROGRESS.md, _VERSION.md,
_OPTIONS.md, _FILES.md, _ENVIRONMENT.md, _PROXYPREFIX.md,
_EXITCODES.md, _BUGS.md, _AUTHORS.md, _WWW.md, _SEEALSO.md
- updated test cases accordingly
Closes #12751
2024-01-21 01:18:43 +03:00
|
|
|
|
|
|
|
# `--pinnedpubkey`
|
|
|
|
|
2024-03-12 12:34:58 +03:00
|
|
|
Use the specified public key file (or hashes) to verify the peer. This can be
|
|
|
|
a path to a file which contains a single public key in PEM or DER format, or
|
|
|
|
any number of base64 encoded sha256 hashes preceded by 'sha256//' and
|
|
|
|
separated by ';'.
|
2016-11-16 01:44:58 +03:00
|
|
|
|
|
|
|
When negotiating a TLS or SSL connection, the server sends a certificate
|
|
|
|
indicating its identity. A public key is extracted from this certificate and
|
2023-09-08 15:32:29 +03:00
|
|
|
if it does not exactly match the public key provided to this option, curl
|
|
|
|
aborts the connection before sending or receiving any data.
|
2016-11-16 01:44:58 +03:00
|
|
|
|
2023-09-25 08:41:20 +03:00
|
|
|
This option is independent of option --insecure. If you use both options
|
|
|
|
together then the peer is still verified by public key.
|
|
|
|
|
2016-11-16 01:44:58 +03:00
|
|
|
PEM/DER support:
|
2021-07-04 00:11:00 +03:00
|
|
|
|
2023-09-25 08:41:20 +03:00
|
|
|
OpenSSL and GnuTLS (added in 7.39.0), wolfSSL (added in 7.43.0), mbedTLS
|
|
|
|
(added in 7.47.0), Secure Transport macOS 10.7+/iOS 10+ (7.54.1), Schannel
|
|
|
|
(7.58.1)
|
2021-07-04 00:11:00 +03:00
|
|
|
|
2016-11-16 01:44:58 +03:00
|
|
|
sha256 support:
|
2021-07-04 00:11:00 +03:00
|
|
|
|
2023-09-25 08:41:20 +03:00
|
|
|
OpenSSL, GnuTLS and wolfSSL (added in 7.44.0), mbedTLS (added in 7.47.0),
|
|
|
|
Secure Transport macOS 10.7+/iOS 10+ (7.54.1), Schannel (7.58.1)
|
2021-07-04 00:11:00 +03:00
|
|
|
|
2016-11-16 01:44:58 +03:00
|
|
|
Other SSL backends not supported.
|