Add a crypto key parser for binary (DER) encoded X.509 certificates. The certificate is parsed and, if possible, the signature is verified.
An X.509 key can be added like this:
# keyctl padd crypto bar @s Signed-off-by: Rusty Russell
RSAPublicKey ::= SEQUENCE { modulus INTEGER ({ rsa_extract_mpi }), -- n publicExponent INTEGER ({ rsa_extract_mpi }) -- e }