From cdd6c8c5785f44026d58b542431674598db18493 Mon Sep 17 00:00:00 2001 From: Richard Levitte Date: Mon, 20 Mar 2017 12:29:37 +0100 Subject: [PATCH] Fix docs for X509_CRL_get0_by_serial() and X509_CRL_get0_by_cert() They both return 2 when the revoked entry that's found has the reason removeFromCRL. Reviewed-by: Rich Salz (Merged from https://github.com/openssl/openssl/pull/2993) --- doc/man3/X509_CRL_get0_by_serial.pod | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/doc/man3/X509_CRL_get0_by_serial.pod b/doc/man3/X509_CRL_get0_by_serial.pod index d9d4360fe0..a704228eb9 100644 --- a/doc/man3/X509_CRL_get0_by_serial.pod +++ b/doc/man3/X509_CRL_get0_by_serial.pod @@ -70,7 +70,10 @@ in turn using sk_X509_REVOKED_value(). =head1 RETURN VALUES -X509_CRL_get0_by_serial(), X509_CRL_get0_by_cert(), +X509_CRL_get0_by_serial() and X509_CRL_get0_by_cert() return 0 for failure, +1 on success except if the revoked entry has the reason C (8), +in which case 2 is returned. + X509_REVOKED_set_serialNumber(), X509_REVOKED_set_revocationDate(), X509_CRL_add0_revoked() and X509_CRL_sort() return 1 for success and 0 for failure. -- 2.25.1