aboutsummaryrefslogtreecommitdiffstats
path: root/tests
Commit message (Collapse)AuthorAgeFilesLines
...
* | | Fixes #2199 -- allow SSH keys to have spaces in their commentsAlex Gaynor2015-08-031-6/+4
| | |
* | | support keyusage and extendedkeyusage in certificatebuilderPaul Kehrer2015-08-031-0/+89
|/ /
* | missed onePaul Kehrer2015-08-031-1/+1
| |
* | reorder CertificateBuilder sign argumentsPaul Kehrer2015-08-031-7/+7
| |
* | Merge remote-tracking branch 'upstream/master' into cert-builderIan Cordasco2015-08-036-39/+176
|\ \
| * \ Merge pull request #2186 from reaperhulk/handle-corrupt-extensionsAlex Gaynor2015-08-011-0/+15
| |\ \ | | | | | | | | Handle invalid x509 extension payloads
| | * | corrupt -> invalidPaul Kehrer2015-08-011-1/+1
| | | |
| | * | check if the extension decoded to internal openssl reprPaul Kehrer2015-08-011-0/+15
| | | | | | | | | | | | | | | | ...and if not, raise an error (plus consume the error stack)
| * | | Merge pull request #2184 from reaperhulk/remove-more-branchesAlex Gaynor2015-08-012-7/+9
| |\ \ \ | | |/ / | |/| | Branch coverage to 100%
| | * | add test to cover partial branch in load_kasvs_ecdh_vectorsPaul Kehrer2015-08-011-0/+4
| | | | | | | | | | | | | | | | The loop to find supported parameter sets is partially covered otherwise
| | * | remove some more branching in the vector loadersPaul Kehrer2015-08-011-7/+4
| | | |
| | * | add a line for the ecdh vector loader to cover a missed branchPaul Kehrer2015-08-011-0/+1
| | |/
| * | this is gonna be unicode nowPaul Kehrer2015-08-011-3/+3
| | |
| * | move urandom engine testPaul Kehrer2015-08-012-30/+27
| |/ | | | | | | | | | | | | | | | | | | This test was in the bindings dir, which is incorrect. We do not set the urandom engine to default unless the openssl backend is loaded. The reason the test wasn't failing (even in the random test case) is that the backends are loaded during pytest_generate_tests by a call to _available_backends. So no matter what order it occurred in the engine was already set to default. I discovered this when I tried to run the test_openssl.py bindings tests directly via pytest. Hooray global state.
| * py3 fixin'Paul Kehrer2015-07-251-1/+1
| |
| * handle RSA key too small and consume errors on CSR signature failurePaul Kehrer2015-07-251-0/+13
| |
| * Support encoding ExtendedKeyUsage into certificate signing requestsPaul Kehrer2015-07-231-0/+23
| |
| * Support encoding KeyUsage into certificate signing requestsPaul Kehrer2015-07-231-2/+64
| |
| * when building a CSR adding > 1 extension would trigger a bugPaul Kehrer2015-07-231-0/+25
| | | | | | | | | | | | We were checking sk_X509_EXTENSION_push for a value == 1, but in reality it returns the number of extensions on the stack. We now assert >= 1 and added a test.
* | Add test coverage for MultiBackend.sign_x509_certificateIan Cordasco2015-08-021-0/+8
| |
* | Add note to serial_number parameter about entropyIan Cordasco2015-08-021-11/+3
| | | | | | | | | | | | | | | | | | | | - Add reference to random-numbers.rst for easy intra-linking - Document critical parameter of CertificateBuilder.add_extension - Support InhibitAnyPolicy in the CertificateBuilder frontend but not in the backend - Slim down more tests - Fix up test that asserts the backend does not allow for unsupported extensions
* | Check for subject alternative name in testIan Cordasco2015-08-021-5/+18
| | | | | | | | Slim RSA key too small test
* | Add some extra test coverageIan Cordasco2015-08-011-0/+19
| |
* | Slim tests by removing extra NameAttributesIan Cordasco2015-08-011-32/+0
| |
* | Minor pep8 and doc fixesIan Cordasco2015-08-011-2/+2
| |
* | Add check for an RSA Key being too smallIan Cordasco2015-08-011-12/+3
| | | | | | | | | | - Remove outdated/unnecessary/illegitimate TODOs - Fix up test for an RSA key that is too small
* | Add extra CertificateBuilder test using SHA512 and 512-bit RSA keyIan Cordasco2015-07-241-1/+49
| |
* | Check result of setting the serial numberIan Cordasco2015-07-241-0/+126
| | | | | | | | | | - Add checks for private key types - Add tests around new checks for types of private keys
* | Remove CertificateBuilder.versionIan Cordasco2015-07-242-20/+2
| | | | | | | | Default CertificateBuilder to Version.v3
* | Add tests to test_openssl backend for extra coverageIan Cordasco2015-07-202-0/+48
| |
* | Add another extension to our CertificateBuilder testIan Cordasco2015-07-201-0/+9
| |
* | Add test coverage for x509.CertificateBuilderIan Cordasco2015-07-191-0/+133
| |
* | Use explicit keyword args in the testsIan Cordasco2015-07-191-1/+1
| |
* | Use test fixtures instead of generating private keysIan Cordasco2015-07-191-10/+2
| |
* | Fix x509.Name creation in CertificateBuilder testsIan Cordasco2015-07-181-10/+10
| |
* | Make the CertificateBuilder interface more like the CSRBuilderIan Cordasco2015-07-181-17/+19
| |
* | Adds certificate builder.Andre Caron2015-07-181-0/+50
|/
* encode uriPaul Kehrer2015-07-131-5/+23
|
* Merge pull request #2149 from reaperhulk/better-uriAlex Gaynor2015-07-131-0/+32
|\ | | | | expand UniformResourceIdentifier to parse and internally IDNA encode
| * expand UniformResourceIdentiier to parse and internally IDNA encodePaul Kehrer2015-07-121-0/+32
| |
* | support rfc822Name general name encodingPaul Kehrer2015-07-121-1/+7
|/
* Merge pull request #2141 from reaperhulk/better-rfc822nameAlex Gaynor2015-07-121-0/+18
|\ | | | | expand RFC822Name to validate and (internally) IDNA encode
| * expand RFC822Name to validate and (internally) IDNA encodePaul Kehrer2015-07-121-0/+18
| | | | | | | | This will be used in the CSR builder
* | Merge pull request #2145 from alex/numbers-hashPaul Kehrer2015-07-121-0/+16
|\ \ | | | | | | Fixed #2143 -- added __hash__ to RSA{Public,Private}Numbers
| * | Fixed #2143 -- added __hash__ to RSA{Public,Private}NumbersAlex Gaynor2015-07-121-0/+16
| | |
* | | Don't try to load backends if the test doesn't need itAlex Gaynor2015-07-121-3/+3
|/ /
* | Merge pull request #2095 from reaperhulk/nc-the-hard-part-reduxAlex Gaynor2015-07-121-0/+54
|\ \ | |/ |/| name constraints - support IP addresses with netmask
| * simplify and handle /32 and /128Paul Kehrer2015-07-101-0/+19
| |
| * name constraints - support IP addresses with netmaskPaul Kehrer2015-07-101-0/+35
| |
* | raise a nice error if bad ASN.1 is providedPaul Kehrer2015-07-111-0/+19
| |