<?php
include_once $_SERVER['DOCUMENT_ROOT'] . '/include/shared-manual.inc';
$TOC = array();
$TOC_DEPRECATED = array();
$PARENTS = array();
include_once dirname(__FILE__) ."/toc/ref.openssl.inc";
$setup = array (
  'home' => 
  array (
    0 => 'index.php',
    1 => 'PHP Manual',
  ),
  'head' => 
  array (
    0 => 'UTF-8',
    1 => 'zh',
  ),
  'this' => 
  array (
    0 => 'function.openssl-pkcs7-verify.php',
    1 => 'openssl_pkcs7_verify',
    2 => '校验一个已签名的 S/MIME 消息的签名',
  ),
  'up' => 
  array (
    0 => 'ref.openssl.php',
    1 => 'OpenSSL 函数',
  ),
  'prev' => 
  array (
    0 => 'function.openssl-pkcs7-sign.php',
    1 => 'openssl_pkcs7_sign',
  ),
  'next' => 
  array (
    0 => 'function.openssl-pkey-derive.php',
    1 => 'openssl_pkey_derive',
  ),
  'alternatives' => 
  array (
  ),
  'source' => 
  array (
    'lang' => 'zh',
    'path' => 'reference/openssl/functions/openssl-pkcs7-verify.xml',
  ),
  'history' => 
  array (
  ),
);
$setup["toc"] = $TOC;
$setup["toc_deprecated"] = $TOC_DEPRECATED;
$setup["parents"] = $PARENTS;
manual_setup($setup);

contributors($setup);

?>
<div id="function.openssl-pkcs7-verify" class="refentry">
 <div class="refnamediv">
  <h1 class="refname">openssl_pkcs7_verify</h1>
  <p class="verinfo">(PHP 4 &gt;= 4.0.6, PHP 5, PHP 7, PHP 8)</p><p class="refpurpose"><span class="refname">openssl_pkcs7_verify</span> &mdash; <span class="dc-title">校验一个已签名的 S/MIME 消息的签名</span></p>

 </div>
 
 <div class="refsect1 description" id="refsect1-function.openssl-pkcs7-verify-description">
  <h3 class="title">说明</h3>
  <div class="methodsynopsis dc-description">
   <span class="methodname"><strong>openssl_pkcs7_verify</strong></span>(<br>&nbsp;&nbsp;&nbsp;&nbsp;<span class="methodparam"><span class="type"><a href="language.types.string.php" class="type string">string</a></span> <code class="parameter">$input_filename</code></span>,<br>&nbsp;&nbsp;&nbsp;&nbsp;<span class="methodparam"><span class="type"><a href="language.types.integer.php" class="type int">int</a></span> <code class="parameter">$flags</code></span>,<br>&nbsp;&nbsp;&nbsp;&nbsp;<span class="methodparam"><span class="type"><span class="type"><a href="language.types.null.php" class="type null">?</a></span><span class="type"><a href="language.types.string.php" class="type string">string</a></span></span> <code class="parameter">$signers_certificates_filename</code><span class="initializer"> = <strong><code><a href="reserved.constants.php#constant.null">null</a></code></strong></span></span>,<br>&nbsp;&nbsp;&nbsp;&nbsp;<span class="methodparam"><span class="type"><a href="language.types.array.php" class="type array">array</a></span> <code class="parameter">$ca_info</code><span class="initializer"> = []</span></span>,<br>&nbsp;&nbsp;&nbsp;&nbsp;<span class="methodparam"><span class="type"><span class="type"><a href="language.types.null.php" class="type null">?</a></span><span class="type"><a href="language.types.string.php" class="type string">string</a></span></span> <code class="parameter">$untrusted_certificates_filename</code><span class="initializer"> = <strong><code><a href="reserved.constants.php#constant.null">null</a></code></strong></span></span>,<br>&nbsp;&nbsp;&nbsp;&nbsp;<span class="methodparam"><span class="type"><span class="type"><a href="language.types.null.php" class="type null">?</a></span><span class="type"><a href="language.types.string.php" class="type string">string</a></span></span> <code class="parameter">$content</code><span class="initializer"> = <strong><code><a href="reserved.constants.php#constant.null">null</a></code></strong></span></span>,<br>&nbsp;&nbsp;&nbsp;&nbsp;<span class="methodparam"><span class="type"><span class="type"><a href="language.types.null.php" class="type null">?</a></span><span class="type"><a href="language.types.string.php" class="type string">string</a></span></span> <code class="parameter">$output_filename</code><span class="initializer"> = <strong><code><a href="reserved.constants.php#constant.null">null</a></code></strong></span></span><br>): <span class="type"><span class="type"><a href="language.types.boolean.php" class="type bool">bool</a></span>|<span class="type"><a href="language.types.integer.php" class="type int">int</a></span></span></div>

  <p class="para rdfs-comment">
   <span class="function"><strong>openssl_pkcs7_verify()</strong></span>
   读取给定文件中的 S/MIME 消息并且检查数字签名。
  </p>
 </div>


 <div class="refsect1 parameters" id="refsect1-function.openssl-pkcs7-verify-parameters">
  <h3 class="title">参数</h3>
  <p class="para">
   <dl>
    
     <dt><code class="parameter">input_filename</code></dt>
     <dd>
      <p class="para">
       消息的路径。
      </p>
     </dd>
    
    
     <dt><code class="parameter">flags</code></dt>
     <dd>
      <p class="para">
       <code class="parameter">flags</code> 可以用来影响如何校验签名 - 参见
       <a href="openssl.pkcs7.flags.php" class="link">PKCS7 常量</a>
       获取更多信息。
      </p>
     </dd>
    
    
     <dt><code class="parameter">signers_certificates_filename</code></dt>
     <dd>
      <p class="para">
       如果已指定 <code class="parameter">signers_certificates_filename</code>
       输出文件，它应该是一个用以保存文件的字符串名称，签名消息的个人证书将以 <abbr title="Privacy-Enhanced Mail">PEM</abbr> 的格式保存起来。
      </p>
     </dd>
    
    
     <dt><code class="parameter">ca_info</code></dt>
     <dd>
      <p class="para">
       如果 <code class="parameter">ca_info</code> 被指定了，它应该保存关于受信任的CA证书的信息供在验证过程中使用 - 参见
       <a href="openssl.cert.verification.php" class="link">证书校验</a>
       获取关于该参数的更多信息。
      </p>
     </dd>
    
    
     <dt><code class="parameter">untrusted_certificates_filename</code></dt>
     <dd>
      <p class="para">
       如果 <code class="parameter">untrusted_certificates_filename</code> 被指定了，该文件包含了一堆会被作为不受信任的ca使用的证书。
      </p>
     </dd>
    
    
     <dt><code class="parameter">content</code></dt>
     <dd>
      <p class="para">
       你可以使用 <code class="parameter">content</code> 来指定带有已被验证数据的文件名，该文件内容已去掉了签名信息。
      </p>
     </dd>
    
    
     <dt><code class="parameter">output_filename</code></dt>
     <dd>
      <p class="para">

      </p>
     </dd>
     
   </dl>
  </p>
 </div>


 <div class="refsect1 returnvalues" id="refsect1-function.openssl-pkcs7-verify-returnvalues">
  <h3 class="title">返回值</h3>
  <p class="para">
   如果签名已被认证，返回 <strong><code><a href="reserved.constants.php#constant.true">true</a></code></strong>, 如果不正确 (消息已被篡改或者签名证书不可用) 则返回 <strong><code><a href="reserved.constants.php#constant.false">false</a></code></strong>,
   或者 - 错误时返回1.
  </p>
 </div>


 <div class="refsect1 changelog" id="refsect1-function.openssl-pkcs7-verify-changelog">
  <h3 class="title">更新日志</h3>
  <table class="doctable informaltable">
   
    <thead>
     <tr>
      <th>版本</th>
      <th>说明</th>
     </tr>

    </thead>

    <tbody class="tbody">
     <tr>
      <td>8.0.0</td>
      <td>
       <code class="parameter">signers_certificates_filename</code>、<code class="parameter">untrusted_certificates_filename</code>、<code class="parameter">content</code>
       和 <code class="parameter">output_filename</code> 现在可为 null。
      </td>
     </tr>

     <tr>
      <td>7.2.0</td>
      <td>
       新增 <code class="parameter">output_filename</code> 参数。
      </td>
     </tr>

    </tbody>
   
  </table>

 </div>


 <div class="refsect1 notes" id="refsect1-function.openssl-pkcs7-verify-notes">
  <h3 class="title">注释</h3>
  <blockquote class="note"><p><strong class="note">注意</strong>: 
   <span class="simpara">
    正如 RFC 2045 中指定的，<code class="parameter">input_filename</code> 参数最多不可超过 76 个字符串。
   </span>
  </p></blockquote>
 </div>


</div><?php manual_footer($setup); ?>