Manual Page Search Parameters

EVP_PKEY_GET_DEFAULT_DIGEST_NID(3) Library Functions Manual EVP_PKEY_GET_DEFAULT_DIGEST_NID(3)

EVP_PKEY_get_default_digest_nidget default signature digest

#include <openssl/evp.h>

int
EVP_PKEY_get_default_digest_nid(EVP_PKEY *pkey, int *pnid);

The () function sets *pnid to the default message digest NID for the public key signature operations associated with pkey.

Some signature algorithms, for example EVP_PKEY_ED25519, do not use a digest during signing. In this case, *pnid is set to NID_undef.

Support for the following public key algorithms is built into the library:

EVP_PKEY_base_id(3) *pnid return value
mandatory
mandatory
mandatory
mandatory
variable mandatory
advisory
advisory

The EVP_PKEY_get_default_digest_nid() function returns 1 if the message digest is advisory (that is other digests can be used) and 2 if it is mandatory (other digests cannot be used). It returns 0 or a negative value for failure. In particular, a return value of -2 indicates the operation is not supported by the public key algorithm.

EVP_PKEY_asn1_set_ctrl(3), EVP_PKEY_CTX_ctrl(3), EVP_PKEY_CTX_new(3), EVP_PKEY_new(3), EVP_PKEY_sign(3), EVP_PKEY_verify(3), EVP_PKEY_verify_recover(3)

EVP_PKEY_get_default_digest_nid() first appeared in OpenSSL 1.0.0 and has been available since OpenBSD 4.9.

September 13, 2023 current