get the X509 certificate chain sent by
returns a pointer to
forming the certificate chain of the peer. If called on the client side, the
stack also contains the peer's certificate; if called on the server side,
the peer's certificate must be obtained separately using
SSL_get_peer_certificate(3). If the peer did not present a
NULL is returned.
returns the peer chain as sent by the peer: it only consists of certificates
the peer has sent (in the order the peer has sent them) and it is not a
If the session is resumed, peers do not
send certificates, so a
NULL pointer is returned.
Applications can call
to determine whether a session is resumed.
The reference count of the
STACK_OF(X509) object is not
incremented. If the corresponding session is freed, the pointer must not be
used any longer.
The following return values can occur:
- No certificate was presented by the peer or no connection was established or the certificate chain is no longer available when a session is reused.
- Pointer to a
- The return value points to the certificate chain presented by the peer.
SSL_get_peer_cert_chain() first appeared
in SSLeay 0.8.0 and has been available since OpenBSD