From 31027c6183e3df927b08f0f0b7f84ae7420c3e88 Mon Sep 17 00:00:00 2001 From: John Dennis Date: Mon, 31 May 2010 07:40:17 -0400 Subject: use NSS for SSL operations --- ipaserver/install/certs.py | 24 ------------------------ 1 file changed, 24 deletions(-) (limited to 'ipaserver/install/certs.py') diff --git a/ipaserver/install/certs.py b/ipaserver/install/certs.py index 6fb012919..cf89c22f0 100644 --- a/ipaserver/install/certs.py +++ b/ipaserver/install/certs.py @@ -60,30 +60,6 @@ def ipa_self_signed(): else: return False -def client_auth_data_callback(ca_names, chosen_nickname, password, certdb): - cert = None - if chosen_nickname: - try: - cert = nss.find_cert_from_nickname(chosen_nickname, password) - priv_key = nss.find_key_by_any_cert(cert, password) - return cert, priv_key - except NSPRError, e: - logging.debug("client auth callback failed %s" % str(e)) - return False - else: - nicknames = nss.get_cert_nicknames(certdb, nss.SEC_CERT_NICKNAMES_USER) - for nickname in nicknames: - try: - cert = nss.find_cert_from_nickname(nickname, password) - if cert.check_valid_times(): - if cert.has_signer_in_ca_names(ca_names): - priv_key = nss.find_key_by_any_cert(cert, password) - return cert, priv_key - except NSPRError, e: - logging.debug("client auth callback failed %s" % str(e)) - return False - return False - def find_cert_from_txt(cert, start=0): """ Given a cert blob (str) which may or may not contian leading and -- cgit