Matt Caswell
|
da1c088f59
Copyright year updates
|
1 year ago |
Matt Caswell
|
a4e7264286
Generate some certificates with the certificatePolicies extension
|
1 year ago |
Lutz Jaenicke
|
61a9767691
X509: add tests for purpose code signing in verify application
|
2 years ago |
Matt Caswell
|
3269c8bd94
Add a new Name Constraints test cert
|
2 years ago |
Dr. David von Oheimb
|
80070e478a
test/certs/mkcert.sh: Correct description of geneealt parameters
|
3 years ago |
Dr. David von Oheimb
|
199df4a93f
check_sig_alg_match(): weaken sig nid comparison to allow RSA{,PSS} key verify RSA-PSS
|
3 years ago |
Richard Levitte
|
4333b89f50
Update copyright year
|
3 years ago |
Dr. David von Oheimb
|
9495cfbc22
make various test CA certs RFC 5280 compliant w.r.t. X509 extensions
|
3 years ago |
Tomas Mraz
|
cf61b97d5f
Generate a certificate with critical id-pkix-ocsp-nocheck extension
|
4 years ago |
Matt Caswell
|
33388b44b6
Update copyright year
|
4 years ago |
Kurt Roeckx
|
4d9e8c9554
Create a new embeddedSCTs1 that's signed using SHA256
|
4 years ago |
Matt Caswell
|
39d9ea5e50
Add Restricted PSS certificate and key
|
5 years ago |
Richard Levitte
|
909f1a2e51
Following the license change, modify the boilerplates in test/
|
6 years ago |
Matt Caswell
|
b0edda11cb
Update copyright year
|
6 years ago |
Matt Caswell
|
fe93b010e7
Update tests for TLS Ed448
|
6 years ago |
Josh Soref
|
46f4e1bec5
Many spelling fixes/typo's corrected.
|
7 years ago |
Rich Salz
|
624265c60e
Cleanup some copyright stuff
|
7 years ago |
Dr. Stephen Henson
|
bc88fc7928
Ed25519 support for mkcert.sh
|
7 years ago |
Dr. Stephen Henson
|
0c8736f42e
Add DSA support to mkcert.sh
|
7 years ago |
Dr. Stephen Henson
|
d83b7e1a58
Extend mkcert.sh to support nameConstraints generation and more complex
|
8 years ago |
Viktor Dukhovni
|
615dd78b72
Drop extraneous printf argument in mkcert.sh
|
8 years ago |
Dr. Stephen Henson
|
b58614d7f5
Fix generation of expired CA certificate.
|
8 years ago |
Richard Levitte
|
71c8cd2085
Make it possible to generate proxy certs with test/certs/mkcert.sh
|
8 years ago |
Rich Salz
|
a7be5759cf
RT3809: basicConstraints is critical
|
8 years ago |
Viktor Dukhovni
|
fbb82a60dc
Move peer chain security checks into x509_vfy.c
|
8 years ago |
Viktor Dukhovni
|
4d9e33acb2
Require intermediate CAs to have basicConstraints CA:true.
|
8 years ago |
Viktor Dukhovni
|
c0a445a9f2
Suppress DANE TLSA reflection when verification fails
|
8 years ago |
Viktor Dukhovni
|
33cc5dde47
Compat self-signed trust with reject-only aux data
|
8 years ago |
Viktor Dukhovni
|
8478351737
Scripts to generate verify test certs
|
8 years ago |