verify

suspend fun verify(secTrust: <Error class: unknown class>, host: String): <Error class: unknown class>(source)

Verify CT compliance for a server trust object.

Combines manual embedded-SCT verification with OS-level TLS/OCSP checking:

  1. Checks host exclusion via CTConfiguration.hostMatcher

  2. Extracts DER certificates from the SecTrustRef

  3. Verifies embedded SCTs via CertificateTransparencyVerifier

  4. Falls back to OS-level CT compliance via SecTrustCtChecker

Return

VerificationResult indicating CT compliance

Parameters

secTrust

The SecTrust from the TLS handshake

host

The hostname being connected to (for include/exclude checks)