aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
| * | add many bindings we'll need to encode a certificate policies extensionPaul Kehrer2015-07-261-0/+21
| | |
* | | Merge pull request #2175 from reaperhulk/csr-better-err-msgAlex Gaynor2015-07-253-1/+19
|\ \ \ | |/ / |/| | handle RSA key too small and consume errors on CSR signature failure
| * | openssl error codes are clearly not considered part of the api contractPaul Kehrer2015-07-251-5/+2
| | |
| * | py3 fixin'Paul Kehrer2015-07-251-1/+1
| | |
| * | extra parensPaul Kehrer2015-07-251-5/+3
| | |
| * | == instead of inPaul Kehrer2015-07-251-2/+2
| | |
| * | handle RSA key too small and consume errors on CSR signature failurePaul Kehrer2015-07-253-1/+24
|/ /
* | Merge pull request #2174 from reaperhulk/remove-windows-link-typeAlex Gaynor2015-07-242-31/+9
|\ \ | | | | | | remove windows link type, update docs
| * | remove windows link type, update docsPaul Kehrer2015-07-242-31/+9
|/ /
* | Merge pull request #2171 from reaperhulk/refactor-gn-encodingAlex Gaynor2015-07-241-83/+88
|\ \ | | | | | | refactor general name encoding to its own function
| * | refactor general name encoding to its own functionPaul Kehrer2015-07-241-83/+88
| | |
* | | Merge pull request #2170 from reaperhulk/crl-encode-bindingsAlex Gaynor2015-07-241-0/+8
|\ \ \ | |/ / |/| | bindings for CRL encoding
| * | let's also add the binding to make a new GENERAL_SUBTREE stackPaul Kehrer2015-07-241-0/+1
| | |
| * | bindings for CRL encodingPaul Kehrer2015-07-241-0/+7
|/ /
* | Merge pull request #2169 from reaperhulk/encode-ekuAlex Gaynor2015-07-236-2/+59
|\ \ | | | | | | Support encoding ExtendedKeyUsage into certificate signing requests
| * | Support encoding ExtendedKeyUsage into certificate signing requestsPaul Kehrer2015-07-236-2/+59
|/ /
* | Merge pull request #2168 from reaperhulk/encode-kuAlex Gaynor2015-07-235-2/+109
|\ \ | | | | | | Support encoding KeyUsage into certificate signing requests
| * | Support encoding KeyUsage into certificate signing requestsPaul Kehrer2015-07-235-2/+109
| | |
* | | Merge pull request #2166 from reaperhulk/fix-multi-extension-bugAlex Gaynor2015-07-232-1/+26
|\| | | | | | | | when building a CSR adding > 1 extension would trigger a bug
| * | when building a CSR adding > 1 extension would trigger a bugPaul Kehrer2015-07-232-1/+26
|/ / | | | | | | | | | | We were checking sk_X509_EXTENSION_push for a value == 1, but in reality it returns the number of extensions on the stack. We now assert >= 1 and added a test.
| * Add test coverage for MultiBackend.sign_x509_certificateIan Cordasco2015-08-021-0/+8
| |
| * Use :doc: instead of :ref: for random-numbersIan Cordasco2015-08-022-4/+1
| |
| * Add sign_x509_certificate to MultiBackendIan Cordasco2015-08-022-0/+51
| | | | | | | | Add example of CertificateBuilder to the reference documentation
| * Add note to serial_number parameter about entropyIan Cordasco2015-08-024-15/+17
| | | | | | | | | | | | | | | | | | | | - Add reference to random-numbers.rst for easy intra-linking - Document critical parameter of CertificateBuilder.add_extension - Support InhibitAnyPolicy in the CertificateBuilder frontend but not in the backend - Slim down more tests - Fix up test that asserts the backend does not allow for unsupported extensions
| * Check for subject alternative name in testIan Cordasco2015-08-021-5/+18
| | | | | | | | Slim RSA key too small test
| * Update the docs to be more accurateIan Cordasco2015-08-021-3/+7
| |
| * Add some extra test coverageIan Cordasco2015-08-011-0/+19
| |
| * Slim tests by removing extra NameAttributesIan Cordasco2015-08-011-32/+0
| |
| * Minor pep8 and doc fixesIan Cordasco2015-08-012-3/+3
| |
| * Add _encode_asn1_int_gcIan Cordasco2015-08-011-1/+7
| | | | | | | | Ensure the certificate serial number is freed
| * Fix up parameter names in the docsIan Cordasco2015-08-011-4/+4
| |
| * Add check for an RSA Key being too smallIan Cordasco2015-08-013-15/+8
| | | | | | | | | | - Remove outdated/unnecessary/illegitimate TODOs - Fix up test for an RSA key that is too small
| * Document other two parameters from sign methodIan Cordasco2015-07-312-11/+32
| | | | | | | | | | | | | | - Remove incorrect CertificateBuilder doc-string - Check that serial numbers are non-negative and < 160 bits - Check that dates passed aren't earlier than the unix epoch - Remove version from CertificateBuilder.__init__ and version method
| * Add extra CertificateBuilder test using SHA512 and 512-bit RSA keyIan Cordasco2015-07-241-1/+49
| |
| * Check result of setting the serial numberIan Cordasco2015-07-242-2/+140
| | | | | | | | | | - Add checks for private key types - Add tests around new checks for types of private keys
| * Remove CertificateBuilder.versionIan Cordasco2015-07-244-46/+4
| | | | | | | | Default CertificateBuilder to Version.v3
| * Fix documentation referring to CertificateBuilder.set_versionIan Cordasco2015-07-211-1/+1
| |
| * Add tests to test_openssl backend for extra coverageIan Cordasco2015-07-202-0/+48
| |
| * Add another extension to our CertificateBuilder testIan Cordasco2015-07-201-0/+9
| |
| * Use correct exception class in openssl backendIan Cordasco2015-07-201-1/+1
| |
| * Add test coverage for x509.CertificateBuilderIan Cordasco2015-07-191-0/+133
| |
| * Remove unnecessary type checkIan Cordasco2015-07-191-2/+0
| |
| * Use explicit keyword args in the testsIan Cordasco2015-07-191-1/+1
| |
| * Handle SubjectAlternativeName extensions in the backendIan Cordasco2015-07-191-0/+2
| | | | | | | | They are handled in cryptography.x509 so they need to be handled here
| * Use test fixtures instead of generating private keysIan Cordasco2015-07-191-10/+2
| |
| * Construct extensions like a CSRIan Cordasco2015-07-191-6/+9
| | | | | | | | | | | | - Use _encode_basic_constraints appropriately - Create an appropriate object from the oid dotted string - Create the X509 Extension appropriately
| * Fix copy-paste errorsIan Cordasco2015-07-191-3/+3
| |
| * Fix x509.Name creation in CertificateBuilder testsIan Cordasco2015-07-181-10/+10
| |
| * Remove unnecessary helper functionsIan Cordasco2015-07-183-29/+10
| | | | | | | | | | - Update documented methods - Do not mute the CertificateBuilder object if no version is set
| * Make the CertificateBuilder interface more like the CSRBuilderIan Cordasco2015-07-182-44/+111
| |