Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
| * | | switch ReasonFlags bit string setting to use a dict mapping | Paul Kehrer | 2015-08-08 | 1 | -40/+18 | |
| | | | ||||||
| * | | support relativename encoding using X509_NAME | Paul Kehrer | 2015-08-08 | 1 | -3/+6 | |
| | | | | | | | | | | | | X509_NAME contains a STACK_OF(X509_NAME_ENTRY) which we duplicate | |||||
| * | | support CRLDistributionPoints in the CertificateBuilder | Paul Kehrer | 2015-08-08 | 2 | -0/+97 | |
| | | | ||||||
* | | | Provide a better error message here. | Alex Gaynor | 2015-08-08 | 1 | -1/+2 | |
|/ / | ||||||
* | | Merge pull request #2217 from reaperhulk/extensions-oids | Alex Gaynor | 2015-08-07 | 1 | -1/+47 | |
|\ \ | | | | | | | Add OIDs to extension types and add ExtensionType interface | |||||
| * | | add ExtensionType interface | Paul Kehrer | 2015-08-06 | 1 | -0/+22 | |
| | | | ||||||
| * | | add oid attribute to all extension types | Paul Kehrer | 2015-08-06 | 1 | -1/+25 | |
| | | | ||||||
* | | | Merge pull request #2222 from reaperhulk/memleak-partdeux | Alex Gaynor | 2015-08-06 | 1 | -0/+2 | |
|\ \ \ | | | | | | | | | X509_add_ext dupes the X509_EXTENSION when adding it. fix the leak | |||||
| * | | | X509_add_ext dupes the X509_EXTENSION when adding it. fix the leak | Paul Kehrer | 2015-08-06 | 1 | -0/+2 | |
| | | | | ||||||
* | | | | fix a memory leak in certificate creation during extension creation | Paul Kehrer | 2015-08-06 | 1 | -1/+1 | |
|/ / / | ||||||
* / / | rename sign_x509_certificate backend method to create_x509_certificate | Paul Kehrer | 2015-08-06 | 4 | -6/+6 | |
|/ / | ||||||
* | | add a few additional bindings for AuthorityKeyIdentifier in OpenSSL | Paul Kehrer | 2015-08-05 | 1 | -0/+2 | |
| | | ||||||
* | | Merge pull request #2206 from reaperhulk/refactor-encode-san | Alex Gaynor | 2015-08-05 | 1 | -7/+11 | |
|\ \ | | | | | | | refactor SAN encoding to separate out general names in openssl backend | |||||
| * | | we still need to gc in encode_subject_alt_name | Paul Kehrer | 2015-08-05 | 1 | -0/+3 | |
| | | | ||||||
| * | | refactor SAN encoding to separate out general names in openssl backend | Paul Kehrer | 2015-08-05 | 1 | -7/+8 | |
| | | | ||||||
* | | | more bindings for CRLDistributionPoints encoding | Paul Kehrer | 2015-08-05 | 2 | -2/+11 | |
|/ / | ||||||
* / | check that required fields are present in builder when signing | Paul Kehrer | 2015-08-04 | 1 | -0/+18 | |
|/ | ||||||
* | Merge pull request #2180 from reaperhulk/easy-conditional-fix | Donald Stufft | 2015-08-04 | 44 | -515/+432 | |
|\ | | | | | create a ConditionalLibrary and remove unsupported items | |||||
| * | change approach for pypy performance reasons | Paul Kehrer | 2015-08-04 | 1 | -12/+13 | |
| | | ||||||
| * | only copy the attrs we know should exist (courtesy dstufft) | Paul Kehrer | 2015-08-03 | 1 | -7/+9 | |
| | | ||||||
| * | remove commoncrypto CONDITIONAL_NAMES | Paul Kehrer | 2015-08-03 | 12 | -25/+0 | |
| | | ||||||
| * | remove openssl CONDITIONAL_NAMES | Paul Kehrer | 2015-08-03 | 30 | -489/+0 | |
| | | ||||||
| * | pass in the imports to make it a bit clearer what's going on | Paul Kehrer | 2015-08-03 | 1 | -3/+3 | |
| | | ||||||
| * | move the attr setting to the __init__ of _ConditionalLibrary | Paul Kehrer | 2015-08-03 | 1 | -12/+10 | |
| | | ||||||
| * | create a ConditionalLibrary and remove unsupported items | Paul Kehrer | 2015-08-01 | 2 | -1/+431 | |
| | | ||||||
* | | Merge pull request #2193 from reaperhulk/encode-aia | Alex Gaynor | 2015-08-03 | 3 | -0/+40 | |
|\ \ | | | | | | | Support AuthorityInformationAccess in CertificateBuilder | |||||
| * | | add support for AIA to CertificateBuilder and OpenSSL backend | Paul Kehrer | 2015-08-03 | 2 | -1/+11 | |
| | | | ||||||
| * | | encode authority information access | Paul Kehrer | 2015-08-03 | 2 | -0/+30 | |
| | | | ||||||
* | | | Fixes #2199 -- allow SSH keys to have spaces in their comments | Alex Gaynor | 2015-08-03 | 1 | -2/+2 | |
| | | | ||||||
* | | | support keyusage and extendedkeyusage in certificatebuilder | Paul Kehrer | 2015-08-03 | 2 | -0/+8 | |
|/ / | ||||||
* | | reorder CertificateBuilder sign arguments | Paul Kehrer | 2015-08-03 | 1 | -1/+1 | |
| | | ||||||
* | | Add sign_x509_certificate to X509Backend interface | Ian Cordasco | 2015-08-03 | 1 | -0/+6 | |
| | | | | | | | | Add note about CertificateBuilder to the changelog | |||||
* | | Merge remote-tracking branch 'upstream/master' into cert-builder | Ian Cordasco | 2015-08-03 | 9 | -204/+276 | |
|\ \ | ||||||
| * \ | Merge pull request #2187 from reaperhulk/csr-decode-all-exts | Alex Gaynor | 2015-08-01 | 1 | -23/+21 | |
| |\ \ | | | | | | | | | allow certificate and CSR to both parse the same set of extensions | |||||
| | * | | allow certificate and CSR to both parse the same set of extensions | Paul Kehrer | 2015-08-01 | 1 | -23/+21 | |
| | | | | ||||||
| * | | | Merge pull request #2186 from reaperhulk/handle-corrupt-extensions | Alex Gaynor | 2015-08-01 | 1 | -1/+7 | |
| |\ \ \ | | | | | | | | | | | Handle invalid x509 extension payloads | |||||
| | * | | | corrupt -> invalid | Paul Kehrer | 2015-08-01 | 1 | -1/+2 | |
| | | | | | ||||||
| | * | | | check if the extension decoded to internal openssl repr | Paul Kehrer | 2015-08-01 | 1 | -1/+6 | |
| | |/ / | | | | | | | | | | | | | ...and if not, raise an error (plus consume the error stack) | |||||
| * | | | Merge pull request #2184 from reaperhulk/remove-more-branches | Alex Gaynor | 2015-08-01 | 3 | -10/+18 | |
| |\ \ \ | | |/ / | |/| | | Branch coverage to 100% | |||||
| | * | | Remove elifs and replace with else + assert | Paul Kehrer | 2015-08-01 | 3 | -10/+18 | |
| | |/ | | | | | | | | | | This is kind of ugly, but resolves many partial branch coverage issues. | |||||
| * / | simplify x509 extension decoding | Paul Kehrer | 2015-08-01 | 1 | -73/+28 | |
| |/ | ||||||
| * | Merge pull request #2177 from reaperhulk/cp-bindings | Alex Gaynor | 2015-07-27 | 1 | -0/+21 | |
| |\ | | | | | | | add many bindings we'll need to encode a certificate policies extension | |||||
| | * | add many bindings we'll need to encode a certificate policies extension | Paul Kehrer | 2015-07-26 | 1 | -0/+21 | |
| | | | ||||||
| * | | openssl error codes are clearly not considered part of the api contract | Paul Kehrer | 2015-07-25 | 1 | -5/+2 | |
| | | | ||||||
| * | | extra parens | Paul Kehrer | 2015-07-25 | 1 | -5/+3 | |
| | | | ||||||
| * | | == instead of in | Paul Kehrer | 2015-07-25 | 1 | -2/+2 | |
| | | | ||||||
| * | | handle RSA key too small and consume errors on CSR signature failure | Paul Kehrer | 2015-07-25 | 2 | -1/+11 | |
| |/ | ||||||
| * | remove windows link type, update docs | Paul Kehrer | 2015-07-24 | 1 | -14/+1 | |
| | | ||||||
| * | Merge pull request #2171 from reaperhulk/refactor-gn-encoding | Alex Gaynor | 2015-07-24 | 1 | -83/+88 | |
| |\ | | | | | | | refactor general name encoding to its own function | |||||
| | * | refactor general name encoding to its own function | Paul Kehrer | 2015-07-24 | 1 | -83/+88 | |
| | | |