blob: 90496750182379a9013df7baf2d835c5fa5490da [file] [log] [blame]
Paul Bakker37ca75d2011-01-06 12:28:03 +00001/**
Jaeden Amero25facdd2018-01-23 15:36:58 +00002 * \file doc_x509.h
3 *
4 * \brief X.509 module documentation file.
5 */
6/*
Manuel Pégourié-Gonnard8119dad2015-08-06 10:59:26 +02007 *
Bence Szépkúti1e148272020-08-07 13:07:28 +02008 * Copyright The Mbed TLS Contributors
Manuel Pégourié-Gonnard37ff1402015-09-04 14:21:07 +02009 * SPDX-License-Identifier: Apache-2.0
10 *
11 * Licensed under the Apache License, Version 2.0 (the "License"); you may
12 * not use this file except in compliance with the License.
13 * You may obtain a copy of the License at
14 *
15 * http://www.apache.org/licenses/LICENSE-2.0
16 *
17 * Unless required by applicable law or agreed to in writing, software
18 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
19 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
20 * See the License for the specific language governing permissions and
21 * limitations under the License.
Paul Bakker37ca75d2011-01-06 12:28:03 +000022 */
23
24/**
25 * @addtogroup x509_module X.509 module
Paul Bakkerdcbfdcc2013-09-10 16:16:50 +020026 *
Simon Butcher5b331b92016-01-03 16:14:14 +000027 * The X.509 module provides X.509 support for reading, writing and verification
28 * of certificates.
29 * In summary:
30 * - X.509 certificate (CRT) reading (see \c mbedtls_x509_crt_parse(),
31 * \c mbedtls_x509_crt_parse_der(), \c mbedtls_x509_crt_parse_file()).
32 * - X.509 certificate revocation list (CRL) reading (see
33 * \c mbedtls_x509_crl_parse(), \c mbedtls_x509_crl_parse_der(),
34 * and \c mbedtls_x509_crl_parse_file()).
35 * - X.509 certificate signature verification (see \c
36 * mbedtls_x509_crt_verify() and \c mbedtls_x509_crt_verify_with_profile().
37 * - X.509 certificate writing and certificate request writing (see
38 * \c mbedtls_x509write_crt_der() and \c mbedtls_x509write_csr_der()).
Paul Bakker37ca75d2011-01-06 12:28:03 +000039 *
40 * This module can be used to build a certificate authority (CA) chain and
Paul Bakkerdcbfdcc2013-09-10 16:16:50 +020041 * verify its signature. It is also used to generate Certificate Signing
Simon Butcher5b331b92016-01-03 16:14:14 +000042 * Requests and X.509 certificates just as a CA would do.
Paul Bakker37ca75d2011-01-06 12:28:03 +000043 */