Matt Caswell
|
83c81eebed
Add some test brainpool certificates
|
6 年之前 |
Viktor Dukhovni
|
d02d80b2e8
Limit scope of CN name constraints
|
6 年之前 |
Dr. Stephen Henson
|
9bf45ba4ca
Add certificates with PSS signatures
|
7 年之前 |
Dr. Stephen Henson
|
d83b7e1a58
Extend mkcert.sh to support nameConstraints generation and more complex
|
8 年之前 |
Dr. Stephen Henson
|
b58614d7f5
Fix generation of expired CA certificate.
|
8 年之前 |
Richard Levitte
|
71c8cd2085
Make it possible to generate proxy certs with test/certs/mkcert.sh
|
8 年之前 |
Viktor Dukhovni
|
fbb82a60dc
Move peer chain security checks into x509_vfy.c
|
8 年之前 |
Viktor Dukhovni
|
4d9e33acb2
Require intermediate CAs to have basicConstraints CA:true.
|
8 年之前 |
Viktor Dukhovni
|
1d85277235
Add tests for non-ca trusted roots and intermediates
|
8 年之前 |
Viktor Dukhovni
|
33cc5dde47
Compat self-signed trust with reject-only aux data
|
8 年之前 |
Viktor Dukhovni
|
0daccd4dc1
Check chain extensions also for trusted certificates
|
8 年之前 |
Viktor Dukhovni
|
8478351737
Scripts to generate verify test certs
|
8 年之前 |