Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
| | * | | add test to cover partial branch in load_kasvs_ecdh_vectors | Paul Kehrer | 2015-08-01 | 1 | -0/+4 | |
| | | | | | | | | | | | | | | | | The loop to find supported parameter sets is partially covered otherwise | |||||
| | * | | remove some more branching in the vector loaders | Paul Kehrer | 2015-08-01 | 1 | -7/+4 | |
| | | | | ||||||
| | * | | add a line for the ecdh vector loader to cover a missed branch | Paul Kehrer | 2015-08-01 | 1 | -0/+1 | |
| | |/ | ||||||
| * | | this is gonna be unicode now | Paul Kehrer | 2015-08-01 | 1 | -3/+3 | |
| | | | ||||||
| * | | move urandom engine test | Paul Kehrer | 2015-08-01 | 2 | -30/+27 | |
| |/ | | | | | | | | | | | | | | | | | | | This test was in the bindings dir, which is incorrect. We do not set the urandom engine to default unless the openssl backend is loaded. The reason the test wasn't failing (even in the random test case) is that the backends are loaded during pytest_generate_tests by a call to _available_backends. So no matter what order it occurred in the engine was already set to default. I discovered this when I tried to run the test_openssl.py bindings tests directly via pytest. Hooray global state. | |||||
| * | py3 fixin' | Paul Kehrer | 2015-07-25 | 1 | -1/+1 | |
| | | ||||||
| * | handle RSA key too small and consume errors on CSR signature failure | Paul Kehrer | 2015-07-25 | 1 | -0/+13 | |
| | | ||||||
| * | Support encoding ExtendedKeyUsage into certificate signing requests | Paul Kehrer | 2015-07-23 | 1 | -0/+23 | |
| | | ||||||
| * | Support encoding KeyUsage into certificate signing requests | Paul Kehrer | 2015-07-23 | 1 | -2/+64 | |
| | | ||||||
| * | when building a CSR adding > 1 extension would trigger a bug | Paul Kehrer | 2015-07-23 | 1 | -0/+25 | |
| | | | | | | | | | | | | We were checking sk_X509_EXTENSION_push for a value == 1, but in reality it returns the number of extensions on the stack. We now assert >= 1 and added a test. | |||||
* | | Add test coverage for MultiBackend.sign_x509_certificate | Ian Cordasco | 2015-08-02 | 1 | -0/+8 | |
| | | ||||||
* | | Add note to serial_number parameter about entropy | Ian Cordasco | 2015-08-02 | 1 | -11/+3 | |
| | | | | | | | | | | | | | | | | | | | | - Add reference to random-numbers.rst for easy intra-linking - Document critical parameter of CertificateBuilder.add_extension - Support InhibitAnyPolicy in the CertificateBuilder frontend but not in the backend - Slim down more tests - Fix up test that asserts the backend does not allow for unsupported extensions | |||||
* | | Check for subject alternative name in test | Ian Cordasco | 2015-08-02 | 1 | -5/+18 | |
| | | | | | | | | Slim RSA key too small test | |||||
* | | Add some extra test coverage | Ian Cordasco | 2015-08-01 | 1 | -0/+19 | |
| | | ||||||
* | | Slim tests by removing extra NameAttributes | Ian Cordasco | 2015-08-01 | 1 | -32/+0 | |
| | | ||||||
* | | Minor pep8 and doc fixes | Ian Cordasco | 2015-08-01 | 1 | -2/+2 | |
| | | ||||||
* | | Add check for an RSA Key being too small | Ian Cordasco | 2015-08-01 | 1 | -12/+3 | |
| | | | | | | | | | | - Remove outdated/unnecessary/illegitimate TODOs - Fix up test for an RSA key that is too small | |||||
* | | Add extra CertificateBuilder test using SHA512 and 512-bit RSA key | Ian Cordasco | 2015-07-24 | 1 | -1/+49 | |
| | | ||||||
* | | Check result of setting the serial number | Ian Cordasco | 2015-07-24 | 1 | -0/+126 | |
| | | | | | | | | | | - Add checks for private key types - Add tests around new checks for types of private keys | |||||
* | | Remove CertificateBuilder.version | Ian Cordasco | 2015-07-24 | 2 | -20/+2 | |
| | | | | | | | | Default CertificateBuilder to Version.v3 | |||||
* | | Add tests to test_openssl backend for extra coverage | Ian Cordasco | 2015-07-20 | 2 | -0/+48 | |
| | | ||||||
* | | Add another extension to our CertificateBuilder test | Ian Cordasco | 2015-07-20 | 1 | -0/+9 | |
| | | ||||||
* | | Add test coverage for x509.CertificateBuilder | Ian Cordasco | 2015-07-19 | 1 | -0/+133 | |
| | | ||||||
* | | Use explicit keyword args in the tests | Ian Cordasco | 2015-07-19 | 1 | -1/+1 | |
| | | ||||||
* | | Use test fixtures instead of generating private keys | Ian Cordasco | 2015-07-19 | 1 | -10/+2 | |
| | | ||||||
* | | Fix x509.Name creation in CertificateBuilder tests | Ian Cordasco | 2015-07-18 | 1 | -10/+10 | |
| | | ||||||
* | | Make the CertificateBuilder interface more like the CSRBuilder | Ian Cordasco | 2015-07-18 | 1 | -17/+19 | |
| | | ||||||
* | | Adds certificate builder. | Andre Caron | 2015-07-18 | 1 | -0/+50 | |
|/ | ||||||
* | encode uri | Paul Kehrer | 2015-07-13 | 1 | -5/+23 | |
| | ||||||
* | Merge pull request #2149 from reaperhulk/better-uri | Alex Gaynor | 2015-07-13 | 1 | -0/+32 | |
|\ | | | | | expand UniformResourceIdentifier to parse and internally IDNA encode | |||||
| * | expand UniformResourceIdentiier to parse and internally IDNA encode | Paul Kehrer | 2015-07-12 | 1 | -0/+32 | |
| | | ||||||
* | | support rfc822Name general name encoding | Paul Kehrer | 2015-07-12 | 1 | -1/+7 | |
|/ | ||||||
* | Merge pull request #2141 from reaperhulk/better-rfc822name | Alex Gaynor | 2015-07-12 | 1 | -0/+18 | |
|\ | | | | | expand RFC822Name to validate and (internally) IDNA encode | |||||
| * | expand RFC822Name to validate and (internally) IDNA encode | Paul Kehrer | 2015-07-12 | 1 | -0/+18 | |
| | | | | | | | | This will be used in the CSR builder | |||||
* | | Merge pull request #2145 from alex/numbers-hash | Paul Kehrer | 2015-07-12 | 1 | -0/+16 | |
|\ \ | | | | | | | Fixed #2143 -- added __hash__ to RSA{Public,Private}Numbers | |||||
| * | | Fixed #2143 -- added __hash__ to RSA{Public,Private}Numbers | Alex Gaynor | 2015-07-12 | 1 | -0/+16 | |
| | | | ||||||
* | | | Don't try to load backends if the test doesn't need it | Alex Gaynor | 2015-07-12 | 1 | -3/+3 | |
|/ / | ||||||
* | | Merge pull request #2095 from reaperhulk/nc-the-hard-part-redux | Alex Gaynor | 2015-07-12 | 1 | -0/+54 | |
|\ \ | |/ |/| | name constraints - support IP addresses with netmask | |||||
| * | simplify and handle /32 and /128 | Paul Kehrer | 2015-07-10 | 1 | -0/+19 | |
| | | ||||||
| * | name constraints - support IP addresses with netmask | Paul Kehrer | 2015-07-10 | 1 | -0/+35 | |
| | | ||||||
* | | raise a nice error if bad ASN.1 is provided | Paul Kehrer | 2015-07-11 | 1 | -0/+19 | |
| | | ||||||
* | | support for OtherName encoding for general names | Paul Kehrer | 2015-07-11 | 1 | -0/+8 | |
| | | ||||||
* | | support IPAddress encoding for general names | Paul Kehrer | 2015-07-11 | 1 | -0/+5 | |
| | | ||||||
* | | Merge pull request #2134 from reaperhulk/encode-dirname | Alex Gaynor | 2015-07-11 | 1 | -0/+12 | |
|\ \ | |/ |/| | support DirectoryName encoding for general names | |||||
| * | support DirectoryName encoding for general names | Paul Kehrer | 2015-07-10 | 1 | -0/+12 | |
| | | ||||||
* | | Merge pull request #2129 from alex/hash-csr | Paul Kehrer | 2015-07-09 | 1 | -0/+20 | |
|\ \ | |/ |/| | Fixed #2127 -- added __hash__ to CSR | |||||
| * | Fixed #2127 -- added __hash__ to CSR | Alex Gaynor | 2015-07-08 | 1 | -0/+20 | |
| | | ||||||
* | | Merge pull request #2108 from mail-in-a-box/master | Paul Kehrer | 2015-07-08 | 1 | -0/+72 | |
|\ \ | |/ |/| | support othername in general names | |||||
| * | special-case GeneralNames.get_values_for_type to return OtherName instances ↵ | Joshua Tauberer | 2015-07-06 | 1 | -5/+4 | |
| | | | | | | | | directly rather than their value properties; tests updated | |||||
| * | additional tests and doc spelling error fix for OtherName | Joshua Tauberer | 2015-07-06 | 1 | -0/+49 | |
| | |