Move allow_proxy_certs declaration to start of function.
authorDr. Stephen Henson <steve@openssl.org>
Sun, 10 Apr 2005 23:41:09 +0000 (23:41 +0000)
committerDr. Stephen Henson <steve@openssl.org>
Sun, 10 Apr 2005 23:41:09 +0000 (23:41 +0000)
crypto/x509/x509_vfy.c

index 3da2490..6fdc35a 100644 (file)
@@ -390,8 +390,8 @@ static int check_chain_extensions(X509_STORE_CTX *ctx)
        X509 *x;
        int (*cb)(int ok,X509_STORE_CTX *ctx);
        int proxy_path_length = 0;
-       cb=ctx->verify_cb;
        int allow_proxy_certs = !!(ctx->flags & X509_V_FLAG_ALLOW_PROXY_CERTS);
+       cb=ctx->verify_cb;
 
        /* must_be_ca can have 1 of 3 values:
           -1: we accept both CA and non-CA certificates, to allow direct