SSL_get_peer_cert_chainSection: OpenSSL (3)
Index Return to Main Contents
NAMESSL_get_peer_cert_chain - get the X509 certificate chain of the peer
STACKOF(X509) *SSL_get_peer_cert_chain(const SSL *ssl);
DESCRIPTIONSSL_get_peer_cert_chain() returns a pointer to STACKOF(X509) certificates forming the certificate chain of the peer. If called on the client side, the stack also contains the peer's certificate; if called on the server side, the peer's certificate must be obtained separately using SSL_get_peer_certificate(3). If the peer did not present a certificate, NULL is returned.
NOTESThe peer certificate chain is not necessarily available after reusing a session, in which case a NULL pointer is returned.
RETURN VALUESThe following return values can occur:
- No certificate was presented by the peer or no connection was established or the certificate chain is no longer available when a session is reused.
- Pointer to a STACKOF(X509)
- The return value points to the certificate chain presented by the peer.
SEE ALSOssl(3), SSL_get_peer_certificate(3)