Bug 479393: Call CERT_SetUsePKIXForValidation(PR_TRUE) after

initializing NSS to make the old NSS cert validation APIs use the
new libpkix cert validation engine internally.  r=kaie.
This commit is contained in:
Wan-Teh Chang 2009-02-25 17:51:31 -08:00
Родитель 6ec60d390e
Коммит 5b8a7c550c
1 изменённых файлов: 5 добавлений и 0 удалений

Просмотреть файл

@ -1578,6 +1578,11 @@ nsNSSComponent::InitializeNSS(PRBool showWarningBox)
mNSSInitialized = PR_TRUE;
// Make the old cert validation APIs (CERT_VerifyCert and
// CERT_VerifyCertificate) use the new libpkix cert validation engine.
// Eventually PSM should switch to the new CERT_PKIXVerifyCert function.
CERT_SetUsePKIXForValidation(PR_TRUE);
::NSS_SetDomesticPolicy();
// SSL_EnableCipher(SSL_RSA_WITH_NULL_MD5, SSL_ALLOWED);
// SSL_EnableCipher(SSL_RSA_WITH_NULL_SHA, SSL_ALLOWED);