kaleb-himes
|
77dec16b3b
Supplemental fix in addition to #5470
|
2 years ago |
kaleb-himes
|
8efc8b0819
Fix up other test scripts using the same logic
|
2 years ago |
Lealem Amedie
|
40d9473e6a
Display SKIP instead of PASS when tests skipped for make check
|
2 years ago |
Daniel Pouzzner
|
368854b243
scripts/: refactor TLS version support tests to use -V, rather than -v (which makes frivolous connection attempts).
|
2 years ago |
Daniel Pouzzner
|
4d4145e6a0
add support for $NETWORK_UNSHARE_HELPER to the relevant scripts/.
|
2 years ago |
Daniel Pouzzner
|
abfc788389
script cleanup: use #!/bin/bash on all scripts that use "echo -e" (/bin/sh is sometimes a non-Bourne/non-POSIX shell, e.g. dash/ash, with no support for "echo -e"); fix whitespace.
|
2 years ago |
Daniel Pouzzner
|
c9a7393923
fixes for shell script errors detected by shellcheck --severity=error.
|
2 years ago |
Elms
|
12eddee104
scripts: fix tests for out of tree `distcheck`
|
3 years ago |
Daniel Pouzzner
|
eeefe043ec
scripts/: nix `timeout` wrappers in ocsp-stapling.test and ocsp-stapling2.test, for portability.
|
4 years ago |
Daniel Pouzzner
|
139b0431cb
ocsp-stapling*.test: prefix waited servers with "timeout 60" to avoid deadlock failure modes; grep output from "openssl s_client" in "test interop fail case" for expected error message ("self signed certificate in certificate chain").
|
4 years ago |
Daniel Pouzzner
|
94a3f86dcd
scripts/ocsp-stapling*.test: check if IPv6 is supported by the installed openssl and nc executables, and if not, don't attempt to wrestle the version. with no IPv6 support, and an --enable-ipv6 wolfssl build, skip the test entirely. also, restore a couple -b (bind-all-interfaces) flags to examples/server/server recipes in case that's useful.
|
4 years ago |
Daniel Pouzzner
|
7a5cbaa9bc
fix scripts/ocsp-stapling*.test to accommodate IPv6 examples/ client/server build.
|
4 years ago |
Sean Parkinson
|
60b0b0170b
TLS OCSP Stapling: MUST staple option
|
4 years ago |
Daniel Pouzzner
|
5ed2fe8092
scripts/: more race elimination/mitigation.
|
4 years ago |
Daniel Pouzzner
|
26901d1cd9
scripts/ocsp-stapling2.test: eliminate races.
|
4 years ago |
Daniel Pouzzner
|
b669f8eeb9
scripts/: tweak scripts/include.am to run ocsp tests before rather than after testsuite and unit.test; revert POSIXish scripts/*.test to use /bin/sh.
|
4 years ago |
Daniel Pouzzner
|
d8dc6be5b9
scripts/ocsp-stapling2.test: try using a static prechecked port for the servers on ready_file5 too.
|
4 years ago |
Daniel Pouzzner
|
51046d45d3
add bwrapping on all other scripts/*.test except those that make Internet connections, and remove test for setuid bit, as some systems are configured to not require setuid/CAP_NET_ADMIN for CLONE_NEWNET.
|
4 years ago |
Daniel Pouzzner
|
1e9971f64c
scripts/ocsp-stapling*.test: add bwrap attempt at top, to isolate network namespace.
|
4 years ago |
Daniel Pouzzner
|
8f25456f86
scripts/ocsp-stapling*.test, wolfssl/test.h: refactor scripts/ocsp-stapling*.test for orthogonality and robustness, with retries and early failure detection. also, reduce sleeps in ocsp-stapling-with-ca-as-responder.test to 0.1, matching sleeps in other 2 scripts. finally, in wolfssl/test.h, #ifdef SO_REUSEPORT do that when binding ports, and add optional rendering of errno strings for failed syscalls using err_sys_with_errno() when -DDEBUG_TEST_ERR_SYS_WITH_ERRNO.
|
4 years ago |
David Garske
|
6a984da53f
Fixes and Improvements to OCSP scripts. Fix for OCSP test with IPV6 enabled (use `-b` bind to any on server). Fix to use random port number for the `oscp-stapling.test` script. Reduce delay times in scripts.
|
4 years ago |
Jacob Barthelmeh
|
0a6b93fda2
add single quotes around -? in test scripts
|
4 years ago |
Eric Blankenhorn
|
b83804cb9d
Correct misspellings and typos from codespell tool
|
5 years ago |
Jacob Barthelmeh
|
e4132d32a4
add ocsp test for more code coverage
|
6 years ago |
Jacob Barthelmeh
|
6ac384793f
memory management with OCSP requests
|
6 years ago |
toddouska
|
fc64788092
Merge pull request #1795 from SparkiDev/tls13_no_tls12
|
6 years ago |
Sean Parkinson
|
487c60df78
Fixes to work when compiled with TLS 1.3 only
|
6 years ago |
Jacob Barthelmeh
|
46c04cafd3
change grep message for RSA key size with tests
|
6 years ago |
Jacob Barthelmeh
|
c3ab52ed44
key size check on ocsp-stapling2 test
|
6 years ago |
kaleb-himes
|
280de47d06
Use pzero solutions on servers and clients in addition to ocsp responders
|
6 years ago |