Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | require serialization in asym tests | Paul Kehrer | 2015-06-27 | 4 | -164/+70 |
| | |||||
* | More branch coverage improvements. By virtue of reorganization and a new test | Alex Gaynor | 2015-06-27 | 1 | -0/+21 |
| | |||||
* | Fixed #2067 -- raise an error if a CSRbuilder doesn't hav a subject | Alex Gaynor | 2015-06-27 | 1 | -1/+11 |
| | |||||
* | Merge pull request #2071 from reaperhulk/wildcard-oh-no | Alex Gaynor | 2015-06-27 | 1 | -0/+31 |
|\ | | | | | handle wildcard DNSNames with IDNA. | ||||
| * | handle wildcard DNSNames with IDNA. | Paul Kehrer | 2015-06-26 | 1 | -0/+31 |
| | | | | | | | | fixes #2054 | ||||
* | | fix this test | Alex Gaynor | 2015-06-26 | 1 | -1/+1 |
| | | |||||
* | | Merge branch 'master' into param-ordering | Alex Gaynor | 2015-06-26 | 1 | -3/+31 |
|\| | |||||
| * | test notimplementederror for unsupported csr extensions in backends | Paul Kehrer | 2015-06-26 | 1 | -0/+14 |
| | | |||||
| * | add test for CSR builder setting subject twice | Paul Kehrer | 2015-06-26 | 1 | -3/+17 |
| | | |||||
* | | Make the parameter ordering in sign() consistent with other code | Alex Gaynor | 2015-06-26 | 1 | -16/+6 |
|/ | |||||
* | simplify x509 csr builder tests | Paul Kehrer | 2015-06-26 | 1 | -40/+0 |
| | |||||
* | Use SECP256R1 instead of SECT283K1 in CSR tests | Ian Cordasco | 2015-06-24 | 2 | -4/+4 |
| | |||||
* | Add test for unicode attributes in CSRs | Ian Cordasco | 2015-06-24 | 1 | -0/+32 |
| | | | | | This creates a CSR, converts it to bytes, and then loads it again to ensure that the unicode strings are parsed properly. | ||||
* | Skip tests when the EC curve is unsupported | Ian Cordasco | 2015-06-24 | 2 | -0/+3 |
| | |||||
* | Add tests to the CSR Builder for EC and DSA keys | Ian Cordasco | 2015-06-24 | 2 | -4/+108 |
| | | | | | | This skips certain tests on certain versions of differences in how X509_REQ_sign works on those versions. A separate pull request will address those differences. | ||||
* | Simplify test for unsupported extensions | Ian Cordasco | 2015-06-24 | 1 | -9/+1 |
| | |||||
* | Address review comments around add_extension method | Ian Cordasco | 2015-06-24 | 1 | -2/+3 |
| | | | | | | | | | - Fix typo in the docs (s/buidlder/builder/) - Remove default from the method declaration and docs - Replace ValueError with NotImpelementedError for unsupported X.509 extensions - Add TODO comment as requested by Alex - Fix test to pass critical=False since it no longer is a default value | ||||
* | Properly use RSA fixtures to generate private keys | Ian Cordasco | 2015-06-24 | 1 | -4/+10 |
| | |||||
* | Update CSR tests and implementation | Ian Cordasco | 2015-06-24 | 1 | -21/+5 |
| | | | | | | | | | | - Use keyword arguments for x509.BasicConstraints in tests (missed in b790edbdc8fb9a026353d6fb99994326197705c7). - Place X509_request garbage collection under assertion. - Assert that X509 extensions created are not null. - Don't copy the extensions list in CertificateSigningBuilder. They're never appended to, so copying isn't necessary. - Use RSA key fixtures instead of generating new ones on each test run | ||||
* | Fix new tests to pass text value to NameAttribute | Ian Cordasco | 2015-06-24 | 1 | -20/+20 |
| | |||||
* | Address code review regarding style and gc | Ian Cordasco | 2015-06-24 | 1 | -2/+2 |
| | | | | | | | | | - Use keyword arguments for x509.BasicConstraints in several places - Use SHA256 instead of SHA1 in documented examples - Give function variables meaningful names in _encode_asn1_str - Accept a x509.BasicConstraints object in _encode_basic_constraints - Properly garbage-collect some things - Raise a NotImplementedError instead of a ValueError | ||||
* | Fixes PEP8 issue in tests. | Andre Caron | 2015-06-24 | 1 | -5/+0 |
| | |||||
* | Removes set_ prefix on CSR builder method. | Andre Caron | 2015-06-24 | 1 | -4/+4 |
| | |||||
* | Changes builder extension API. | Andre Caron | 2015-06-24 | 1 | -31/+14 |
| | |||||
* | Removes CSR builder version setter. | Andre Caron | 2015-06-24 | 1 | -23/+18 |
| | |||||
* | Adds method chaining to CSR builder. | Andre Caron | 2015-06-24 | 1 | -29/+30 |
| | |||||
* | Renames sign_509_request to create_x509_csr. | Andre Caron | 2015-06-24 | 1 | -0/+6 |
| | |||||
* | Adds CSR builder. | Andre Caron | 2015-06-24 | 1 | -0/+147 |
| | |||||
* | fix ec_cdata_to_evp_pkey bug | Paul Kehrer | 2015-06-22 | 1 | -0/+18 |
| | | | | | | We weren't actually returning the object and the tests weren't catching it because we didn't try to use the evp_pkey property in the tests. The added test confirms it actually works. | ||||
* | Remove our workarounds for pyasn.1 bugs, a new pyasn.1 is out! | Alex Gaynor | 2015-06-22 | 1 | -2/+2 |
| | |||||
* | add eq/ne support to NameConstraints | Paul Kehrer | 2015-06-21 | 1 | -0/+29 |
| | |||||
* | add nameconstraints classes | Paul Kehrer | 2015-06-21 | 1 | -0/+68 |
| | |||||
* | Merge pull request #2036 from major/master | Alex Gaynor | 2015-06-21 | 1 | -0/+33 |
|\ | | | | | Added a repr() method to x509._Certificate | ||||
| * | Added a repr() method to x509._Certificate | Major Hayden | 2015-06-21 | 1 | -0/+33 |
| | | |||||
* | | Refs #1947 -- add support for IAN to the OpenSSL backend | Alex Gaynor | 2015-06-20 | 1 | -0/+17 |
| | | |||||
* | | inhibit any policy extension support for the openssl backend | Paul Kehrer | 2015-06-17 | 1 | -0/+17 |
| | | |||||
* | | support OCSPNoCheck in the OpenSSL backend | Paul Kehrer | 2015-06-17 | 1 | -0/+17 |
|/ | |||||
* | Conditionally construct the repr of NameAttributes | Ian Cordasco | 2015-06-16 | 2 | -19/+43 |
| | |||||
* | Correct x509.NameAttribute test passing bytes | Ian Cordasco | 2015-06-16 | 2 | -171/+173 |
| | |||||
* | Enforce text type of NameAttribute.value | Ian Cordasco | 2015-06-16 | 1 | -0/+7 |
| | |||||
* | Merge pull request #2017 from reaperhulk/issuer-alternative-name | Alex Gaynor | 2015-06-13 | 1 | -0/+56 |
|\ | | | | | issuer alternative name support | ||||
| * | issuer alternative name support | Paul Kehrer | 2015-06-07 | 1 | -0/+56 |
| | | |||||
* | | Add ConcatKDF from NIST SP 800-56A | Simo Sorce | 2015-06-12 | 1 | -0/+251 |
| | | | | | | | | | | | | | | | | | | The implemention allows the use an HMAC function as per Revision 2 of the document. Conformance of the formatting of the OtherInfo argument is responsability of the calling application. Signed-off-by: Simo Sorce <simo@redhat.com> | ||||
* | | convert to cffi 1.0 precompile system | Paul Kehrer | 2015-06-07 | 4 | -58/+14 |
|/ | |||||
* | Merge pull request #1990 from tonyseek/key-uri | Paul Kehrer | 2015-06-03 | 2 | -0/+26 |
|\ | | | | | Add "get_provisioning_uri" utility for HOTP/TOTP. | ||||
| * | Remove a default argument and rename a private function. | Jiangge Zhang | 2015-06-03 | 2 | -3/+3 |
| | | |||||
| * | Follow the review advice: turn URI generator into methods. | Jiangge Zhang | 2015-06-03 | 2 | -9/+4 |
| | | |||||
| * | Add "generate_key_uri" utility for HOTP/TOTP. | Jiangge Zhang | 2015-05-26 | 2 | -0/+31 |
| | | |||||
* | | Merge pull request #1907 from simo5/ECDHKDFTests | Paul Kehrer | 2015-06-02 | 2 | -0/+73 |
|\ \ | | | | | | | Ecdh kdf tests | ||||
| * | | Modify ECDH Test vector loader for KDF vectors | Simo Sorce | 2015-05-06 | 2 | -0/+73 |
| | | | | | | | | | | | | | | | | | | Also add tests for the new vectors Signed-off-by: Simo Sorce <simo@redhat.com> |