Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | add test that fails if CRL references aren't properly retained | Paul Kehrer | 2015-12-23 | 1 | -0/+19 | |
| | | | | | | If the X509_CRL reference is not properly retained then this test will return an openssl error or potentially a crash as it's reading freed memory to obtain the revocation_date and serial_number | |||||
* | missed a test for CRLNumber not being an integer, oops | Paul Kehrer | 2015-12-22 | 1 | -0/+4 | |
| | ||||||
* | CRLNumber needs to be a class for reasons. | Paul Kehrer | 2015-12-22 | 2 | -1/+16 | |
| | ||||||
* | add support for parsing AuthorityInfoAccess and IssuerAltName CRL exts | Paul Kehrer | 2015-12-22 | 1 | -3/+18 | |
| | | | | Expand the CRL extensions test to check the value | |||||
* | support parsing CRL extensions in the OpenSSL backend | Paul Kehrer | 2015-12-21 | 1 | -5/+17 | |
| | ||||||
* | add test for byte matching | Paul Kehrer | 2015-12-21 | 1 | -0/+24 | |
| | ||||||
* | add a CRL public_bytes method | Paul Kehrer | 2015-12-20 | 1 | -0/+42 | |
| | ||||||
* | Merge pull request #2538 from reaperhulk/empty-crls-are-beautiful-too | Alex Gaynor | 2015-12-20 | 1 | -0/+8 | |
|\ | | | | | support CRLs with no revoked certificates | |||||
| * | support CRLs with no revoked certificates | Paul Kehrer | 2015-12-20 | 1 | -0/+8 | |
| | | ||||||
* | | Merge pull request #2525 from nbastin/20151112-access-method | Paul Kehrer | 2015-12-20 | 2 | -3/+40 | |
|\ \ | |/ |/| | issue-2524 | |||||
| * | Dealing with the pedantry of pep8 | Nick Bastin | 2015-12-20 | 1 | -2/+0 | |
| | | ||||||
| * | Test for non-standard AIA support in CertificateBuilder | Nick Bastin | 2015-12-20 | 1 | -0/+32 | |
| | | ||||||
| * | Dangling pep8 fix | Nick Bastin | 2015-12-20 | 1 | -1/+1 | |
| | | ||||||
| * | PEP8 fixes | Nick Bastin | 2015-12-20 | 1 | -1/+0 | |
| | | ||||||
| * | Style cleanup, missing import | Nick Bastin | 2015-12-20 | 1 | -3/+6 | |
| | | ||||||
| * | Add test for arbitrary access_method | Nick Bastin | 2015-12-20 | 1 | -0/+4 | |
| | | ||||||
| * | Allow any OID for access_method, validate OIDs at creation time, fix tests. | Nick Bastin | 2015-12-20 | 1 | -1/+2 | |
| | | ||||||
* | | Change password callback to use userdata pointer | Christian Heimes | 2015-12-20 | 1 | -2/+15 | |
|/ | | | | | | | | | Instead of a closure the pem_password_cb now uses the void *userdata argument to exchange data with the callback function. It's a necessary step to port all callbacks to new static callbacks. See: #2477 Signed-off-by: Christian Heimes <christian@python.org> | |||||
* | Merge pull request #2535 from alex/encode-dss | Paul Kehrer | 2015-12-19 | 1 | -3/+3 | |
|\ | | | | | use the non-deprecated name for this function | |||||
| * | use the non-deprecated name for this function | Alex Gaynor | 2015-12-19 | 1 | -3/+3 | |
| | | ||||||
* | | Merge pull request #2530 from nbastin/20151214-oid-val | Paul Kehrer | 2015-12-18 | 2 | -36/+72 | |
|\ \ | |/ |/| | OID validation | |||||
| * | Avoid IndexError on too-short OIDs, add test for regression | Nick Bastin | 2015-12-17 | 1 | -0/+4 | |
| | | ||||||
| * | OID validation | Nick Bastin | 2015-12-14 | 2 | -36/+68 | |
| | | ||||||
* | | require not_valid_after >= not_valid_before | Paul Kehrer | 2015-12-13 | 1 | -0/+22 | |
|/ | ||||||
* | add some missing skips | Paul Kehrer | 2015-12-03 | 1 | -0/+2 | |
| | ||||||
* | expose tbs_certrequest_bytes and signature on CertificateSigningRequest | Paul Kehrer | 2015-12-03 | 1 | -0/+132 | |
| | ||||||
* | implement support for encoding name constraints | Paul Kehrer | 2015-12-02 | 1 | -0/+35 | |
| | ||||||
* | Add support for 160 bit ARC4 keys | Ehren Kret | 2015-11-28 | 1 | -0/+1 | |
| | ||||||
* | test name fix | Erik Trauschke | 2015-11-19 | 1 | -1/+1 | |
| | ||||||
* | add tbsCertList and signature interfaces to CRLs | Erik Trauschke | 2015-11-19 | 1 | -0/+38 | |
| | ||||||
* | rename tbs_certificate to tbs_certificate_bytes, add a comment | Paul Kehrer | 2015-11-03 | 1 | -9/+9 | |
| | ||||||
* | skip check | Paul Kehrer | 2015-11-03 | 1 | -0/+1 | |
| | ||||||
* | add support for Certificate signature and tbs_certificate | Paul Kehrer | 2015-11-03 | 1 | -1/+184 | |
| | ||||||
* | Swapping modified x509 test with modified ec test | Peter Hamilton | 2015-10-30 | 2 | -14/+4 | |
| | ||||||
* | Fixing fixture import order | Peter Hamilton | 2015-10-30 | 1 | -1/+1 | |
| | ||||||
* | Adding test usage for elliptic curve fixtures | Peter Hamilton | 2015-10-30 | 1 | -2/+3 | |
| | | | | This change enables test coverage for the elliptic curve fixtures by adding elliptic curve fixtures to an x509 test case. | |||||
* | Adding elliptic curve test fixtures | Peter Hamilton | 2015-10-29 | 1 | -0/+296 | |
| | | | | This change adds pre-generated elliptic curve keys to be used in elliptic curve tests. | |||||
* | Error cleanly if the public and private keys to an ECDH key exchange are on ↵ | Alex Gaynor | 2015-10-28 | 1 | -1/+27 | |
| | | | | different curves | |||||
* | add ellipticcurvepublicnumbers repr | Paul Kehrer | 2015-10-28 | 1 | -0/+5 | |
| | ||||||
* | Merge pull request #2447 from reaperhulk/encode-decode-point | Alex Gaynor | 2015-10-27 | 1 | -0/+67 | |
|\ | | | | | add support for encoding/decoding elliptic curve points | |||||
| * | address review feedback | Paul Kehrer | 2015-10-28 | 1 | -7/+0 | |
| | | ||||||
| * | modify approach to use EllipticCurvePublicNumbers methods | Paul Kehrer | 2015-10-27 | 2 | -73/+76 | |
| | | ||||||
| * | remove support for null points, improve docs | Paul Kehrer | 2015-10-27 | 1 | -2/+4 | |
| | | ||||||
| * | add support for encoding/decoding elliptic curve points | Paul Kehrer | 2015-10-26 | 1 | -2/+71 | |
| | | | | | | | | Based on the work of @ronf in #2346. | |||||
* | | Merge pull request #2435 from reaperhulk/fix-2407 | Alex Gaynor | 2015-10-27 | 1 | -0/+41 | |
|\ \ | |/ |/| | encode countryName with PrintableString | |||||
| * | work on py3 | Paul Kehrer | 2015-10-27 | 1 | -2/+2 | |
| | | ||||||
| * | remove unneeded str | Paul Kehrer | 2015-10-27 | 1 | -2/+2 | |
| | | ||||||
| * | switch to using pyasn1_modules for the test | Paul Kehrer | 2015-10-27 | 1 | -12/+14 | |
| | | ||||||
| * | encode countryName with PrintableString | Paul Kehrer | 2015-10-20 | 1 | -0/+39 | |
| | | | | | | | | | | | | | | This commit adds a dependency on asn1crypto for testing purposes to parse the certificate and confirm that countryName is encoded with PrintableString while other fields are UTF8String. This is a test only dep. | |||||
* | | Merge pull request #2220 from reaperhulk/encode-cp | Alex Gaynor | 2015-10-24 | 1 | -0/+89 | |
|\ \ | | | | | | | support encoding certificate policies in CertificateBuilder |