gnutls_certificate_set_x509_trust_mem — API function


#include <gnutls/gnutls.h>
int gnutls_certificate_set_x509_trust_mem( gnutls_certificate_credentials_t res,
  const gnutls_datum_t * ca,
  gnutls_x509_crt_fmt_t type);


gnutls_certificate_credentials_t res

is a gnutls_certificate_credentials_t structure.

const gnutls_datum_t * ca

is a list of trusted CAs or a DER certificate

gnutls_x509_crt_fmt_t type

is DER or PEM


This function adds the trusted CAs in order to verify client or server certificates. In case of a client this is not required to be called if the certificates are not verified using gnutls_certificate_verify_peers2(). This function may be called multiple times.

In case of a server the CAs set here will be sent to the client if a certificate request is sent. This can be disabled using gnutls_certificate_send_x509_rdn_sequence().


the number of certificates processed or a negative error code on error.


Report bugs to <>.

General guidelines for reporting bugs:

GnuTLS home page:


The full documentation for gnutls is maintained as a Texinfo manual. If the info and gnutls programs are properly installed at your site, the command

info gnutls

should give you access to the complete manual. As an alternative you may obtain the manual from:


Copyright © 2001-2013 Free Software Foundation, Inc..

Copying and distribution of this file, with or without modification, are permitted in any medium without royalty provided the copyright notice and this notice are preserved.