/pki/ |
A D | parsed_certificate_unittest.cc | 66 if (!cert) { in ParseCertificateFromFile() 70 return cert; in ParseCertificateFromFile() 85 ASSERT_TRUE(cert); in TEST() 101 ASSERT_TRUE(cert); in TEST() 165 ASSERT_TRUE(cert); in TEST() 179 ASSERT_TRUE(cert); in TEST() 240 ASSERT_TRUE(cert); in TEST() 258 ASSERT_TRUE(cert); in TEST() 275 ASSERT_TRUE(cert); in TEST() 294 ASSERT_TRUE(cert); in TEST() [all …]
|
A D | trust_store_in_memory.cc | 27 std::shared_ptr<const ParsedCertificate> cert) { in AddTrustAnchor() argument 32 std::shared_ptr<const ParsedCertificate> cert) { in AddTrustAnchorWithExpiration() argument 33 AddCertificate(std::move(cert), in AddTrustAnchorWithExpiration() 40 std::move(cert), in AddTrustAnchorWithConstraints() 63 issuers->push_back(it->second.cert); in SyncGetIssuersOf() 74 const Entry *entry = GetEntry(cert); in GetTrust() 79 return GetEntry(cert) != nullptr; in Contains() 90 entry.cert = std::move(cert); in AddCertificate() 98 const ParsedCertificate *cert) const { in GetEntry() 102 if (cert == it->second.cert.get() || in GetEntry() [all …]
|
A D | verify_certificate_chain.cc | 133 return cert.normalized_subject() == cert.normalized_issuer(); in IsSelfIssued() 1139 cert.tbs_certificate_tlv(), cert.signature_value(), in BasicCertificateProcessing() 1180 nc->IsPermittedCert(cert.normalized_subject(), cert.subject_alt_names(), in BasicCertificateProcessing() 1222 if (!IsSelfIssued(cert)) { in PrepareForNextCertificate() 1268 if (!IsSelfIssued(cert)) { in PrepareForNextCertificate() 1281 if (cert.has_basic_constraints() && cert.basic_constraints().has_path_len && in PrepareForNextCertificate() 1290 if (cert.has_key_usage() && in PrepareForNextCertificate() 1310 if (cert.has_basic_constraints() && cert.basic_constraints().is_ca) { in VerifyTargetCertIsNotCA() 1758 if (cert.normalized_subject() != cert.normalized_issuer()) { in VerifyCertificateIsSelfSigned() 1776 if (!VerifySignedData(*cert.signature_algorithm(), cert.tbs_certificate_tlv(), in VerifyCertificateIsSelfSigned() [all …]
|
A D | trust_store_in_memory.h | 46 void AddCertificate(std::shared_ptr<const ParsedCertificate> cert, 51 void AddTrustAnchor(std::shared_ptr<const ParsedCertificate> cert); 56 std::shared_ptr<const ParsedCertificate> cert); 61 std::shared_ptr<const ParsedCertificate> cert); 67 std::shared_ptr<const ParsedCertificate> cert); 77 std::shared_ptr<const ParsedCertificate> cert); 80 void SyncGetIssuersOf(const ParsedCertificate *cert, 82 CertificateTrust GetTrust(const ParsedCertificate *cert) override; 86 bool Contains(const ParsedCertificate *cert) const; 94 std::shared_ptr<const ParsedCertificate> cert; member [all …]
|
A D | verify_certificate_chain_unittest.cc | 56 auto cert = ReadCertFromFile( in TEST() local 58 ASSERT_TRUE(cert); in TEST() 61 EXPECT_FALSE(VerifyCertificateIsSelfSigned(*cert, /*cache=*/nullptr, in TEST() 67 EXPECT_FALSE(VerifyCertificateIsSelfSigned(*cert, &cache, &errors)); in TEST() 80 auto cert = ReadCertFromFile( in TEST() local 82 ASSERT_TRUE(cert); in TEST() 85 EXPECT_FALSE(VerifyCertificateIsSelfSigned(*cert, /*cache=*/nullptr, in TEST() 109 auto cert = ReadCertFromFile( in TEST() local 111 ASSERT_TRUE(cert); in TEST() 114 EXPECT_TRUE(VerifyCertificateIsSelfSigned(*cert, /*cache=*/nullptr, in TEST() [all …]
|
A D | cert_issuer_source_static.cc | 23 std::shared_ptr<const ParsedCertificate> cert) { in AddCert() argument 25 BytesAsStringView(cert->normalized_subject()), std::move(cert))); in AddCert() 34 for (const auto& [key, cert] : intermediates_) { in Certs() 35 result.push_back(cert); in Certs() 40 void CertIssuerSourceStatic::SyncGetIssuersOf(const ParsedCertificate *cert, in SyncGetIssuersOf() argument 43 intermediates_.equal_range(BytesAsStringView(cert->normalized_issuer())); in SyncGetIssuersOf() 50 const ParsedCertificate *cert, std::unique_ptr<Request> *out_req) { in AsyncGetIssuersOf() argument
|
A D | certificate_unittest.cc | 27 std::unique_ptr<bssl::Certificate> cert( in TEST() local 29 EXPECT_FALSE(cert); in TEST() 31 cert = bssl::Certificate::FromPEM(bssl::ReadTestFileToString( in TEST() 33 EXPECT_TRUE(cert); in TEST() 57 std::unique_ptr<bssl::Certificate> cert( in TEST() local 59 EXPECT_TRUE(cert); in TEST() 61 bssl::Certificate::Validity validity = cert->GetValidity(); in TEST() 70 std::unique_ptr<bssl::Certificate> cert( in TEST() local 72 EXPECT_TRUE(cert); in TEST() 74 EXPECT_EQ(bssl::string_util::HexEncode(cert->GetSerialNumber()), in TEST()
|
A D | certificate.cc | 32 bssl::Span<const uint8_t>cert, std::string *out_diagnostic) { in ParseCertificateFromDer() argument 51 CRYPTO_BUFFER_new(cert.data(), cert.size(), nullptr)); in ParseCertificateFromDer() 65 std::shared_ptr<const bssl::ParsedCertificate> cert; member 82 internals->cert = std::move(result); in FromDER() 97 return internals_->cert->normalized_subject() == in IsSelfIssued() 98 internals_->cert->normalized_issuer(); in IsSelfIssued() 107 internals_->cert->tbs().validity_not_before, &validity.not_before); in GetValidity() 109 internals_->cert->tbs().validity_not_after, &validity.not_after); in GetValidity() 114 return internals_->cert->tbs().serial_number; in GetSerialNumber()
|
A D | path_builder.cc | 46 SHA256(cert->der_cert().data(), cert->der_cert().size(), digest); in FingerPrintParsedCertificate() 64 for (const auto &cert : certs) { in PathDebugString() local 68 s += " " + CertDebugString(cert.get()); in PathDebugString() 76 std::shared_ptr<const ParsedCertificate> cert; member 317 entry.cert = std::move(issuer); in AddIssuers() 320 cert(), entry.cert.get(), entry.trust); in AddIssuers() 422 s += " " + CertDebugString(node->cert()); in PathDebugString() 520 next_issuer_.cert = std::move(cert); in CertPathIter() 544 if (next_issuer_.cert) { in GetNextPath() 570 if (!next_issuer_.cert) { in GetNextPath() [all …]
|
A D | trust_store_collection.cc | 29 void TrustStoreCollection::SyncGetIssuersOf(const ParsedCertificate *cert, in SyncGetIssuersOf() argument 32 store->SyncGetIssuersOf(cert, issuers); in SyncGetIssuersOf() 36 CertificateTrust TrustStoreCollection::GetTrust(const ParsedCertificate *cert) { in GetTrust() argument 41 CertificateTrust cur_trust = store->GetTrust(cert); in GetTrust()
|
A D | cert_issuer_source_static.h | 39 void AddCert(std::shared_ptr<const ParsedCertificate> cert); 50 void SyncGetIssuersOf(const ParsedCertificate *cert, 52 void AsyncGetIssuersOf(const ParsedCertificate *cert,
|
A D | verify.cc | 67 CRYPTO_BUFFER_new(cert.data(), cert.size(), nullptr)); in InternalParseCertificate() 99 CBS cert; in FromDER() local 100 if (!CBS_get_asn1_element(&cbs, &cert, CBS_ASN1_SEQUENCE)) { in FromDER() 106 auto parsed_cert = InternalParseCertificate(cert, out_diagnostic); in FromDER() 121 for (const std::string_view &cert : der_roots) { in FromDER() local 141 for (const std::string_view &cert : der_certs) { in FromCerts() local 143 InternalParseCertificate(StringAsBytes(cert), out_diagnostic); in FromCerts() 283 for (const std::string_view &cert : opts.intermediates) { in CertificateVerifyInternal() local 286 InternalParseCertificate(StringAsBytes(cert), &diag_string); in CertificateVerifyInternal() 336 for (const auto &cert : path->certs) { in CertificateVerifyInternal() local [all …]
|
A D | trust_store_collection.h | 43 void SyncGetIssuersOf(const ParsedCertificate *cert, 45 CertificateTrust GetTrust(const ParsedCertificate *cert) override;
|
A D | cert_issuer_source.h | 62 virtual void SyncGetIssuersOf(const ParsedCertificate *cert, 72 virtual void AsyncGetIssuersOf(const ParsedCertificate *cert,
|
A D | crl_unittest.cc | 152 std::shared_ptr<const ParsedCertificate> cert = ParseCertificate(cert_data); in TEST_P() local 153 ASSERT_TRUE(cert); in TEST_P() 157 ParsedCertificateList certs = {cert, issuer_cert}; in TEST_P() 177 if (cert->GetExtension(der::Input(kCrlDistributionPointsOid), in TEST_P()
|
A D | ocsp_unittest.cc | 179 std::shared_ptr<const ParsedCertificate> cert = ParseCertificate(cert_data); in TEST_P() local 180 ASSERT_TRUE(cert); in TEST_P() 186 ASSERT_TRUE(CreateOCSPRequest(cert.get(), issuer.get(), &encoded_request)); in TEST_P() 221 std::shared_ptr<const ParsedCertificate> cert = ParseCertificate(cert_data); in TEST_P() local 222 ASSERT_TRUE(cert); in TEST_P() 228 CreateOCSPGetURL(cert.get(), issuer.get(), GetParam()); in TEST_P()
|
/pki/testdata/verify_certificate_chain_unittest/many-names/ |
A D | generate-chains.py | 21 def add_excluded_name_constraints(cert, num_dns, num_ip, num_dirnames, num_uri): argument 22 cert.get_extensions().set_property('nameConstraints', '@nameConstraints_info') 23 constraints = cert.config.get_section('nameConstraints_info') 33 dirname = cert.config.get_section(section_name) 41 cert, num_dns, num_ip, num_dirnames, num_uri): argument 43 constraints = cert.config.get_section('nameConstraints_info') 53 dirname = cert.config.get_section(section_name) 61 def add_sans(cert, num_dns, num_ip, num_dirnames, num_uri): argument 62 cert.get_extensions().set_property('subjectAltName', '@san_info') 63 sans = cert.config.get_section('san_info') [all …]
|
/pki/testdata/verify_signed_data_unittest/ |
A D | ecdsa-secp384r1-sha256.pem | 1 This test data was produced by creating a self-signed EC cert using OpenSSL, 9 openssl req -new -key ec_key.pem -x509 -nodes -days 365 -out cert.pem 13 openssl x509 -in cert.pem -pubkey -noout > pubkey.pem 18 openssl asn1parse -in cert.pem -out tbs -noout -strparse 4 24 openssl asn1parse -in cert.pem 26 openssl asn1parse -in cert.pem -out alg -noout -strparse 496 32 openssl asn1parse -in cert.pem 34 openssl asn1parse -in cert.pem -out sig -noout -strparse 508
|
A D | rsa-pkcs1-sha256.pem | 1 This test data was produced by creating a self-signed EC cert using OpenSSL, 9 openssl req -new -key rsa_key.pem -x509 -nodes -days 365 -out cert.pem 13 openssl x509 -in cert.pem -pubkey -noout > pubkey.pem 18 openssl asn1parse -in cert.pem -out tbs -noout -strparse 4 24 openssl asn1parse -in cert.pem 26 openssl asn1parse -in cert.pem -out alg -noout -strparse 491 32 openssl asn1parse -in cert.pem 34 openssl asn1parse -in cert.pem -out sig -noout -strparse 506
|
A D | rsa2048-pkcs1-sha512.pem | 1 This test data was produced by creating a self-signed RSA cert using OpenSSL, 9 openssl req -new -key rsa_key.pem -x509 -nodes -days 365 -sha512 -out cert.pem 13 openssl x509 -in cert.pem -pubkey -noout > pubkey.pem 18 openssl asn1parse -in cert.pem -out tbs -noout -strparse 4 24 openssl asn1parse -in cert.pem 26 openssl asn1parse -in cert.pem -out alg -noout -strparse 589 32 openssl asn1parse -in cert.pem 34 openssl asn1parse -in cert.pem -out sig -noout -strparse 506
|
/pki/testdata/crl_unittest/ |
A D | generate_crl_test_data.py | 83 cert = crypto.X509() 84 cert.set_version(version) 85 cert.get_subject().CN = name 86 cert.set_pubkey(pkey) 87 cert.set_serial_number(NEXT_SERIAL) 93 cert.add_extensions( 96 cert.add_extensions( 99 cert.add_extensions( 106 cert.set_issuer(cert.get_subject()) 107 cert.sign(pkey, 'sha256') [all …]
|
/pki/testdata/ocsp_unittest/ |
A D | make_ocsp.py | 62 cert = crypto.X509() 63 cert.set_version(2) 64 cert.get_subject().CN = name 65 cert.set_pubkey(pkey) 66 cert.set_serial_number(NEXT_SERIAL) 71 cert.add_extensions( 75 cert.sign(signer[2], 'sha1') 77 cert.set_issuer(cert.get_subject()) 78 cert.sign(pkey, 'sha1') 84 return (asn1cert, cert, pkey, signer[0]) [all …]
|
/pki/testdata/verify_certificate_chain_unittest/intermediate-eku-c2pamanifest/ |
A D | make-chain.go | 46 …cert, err := x509.CreateCertificate(rand.Reader, &subject.template, &issuer.template, &subject.key… 55 err = pem.Encode(file, &pem.Block{Type: "CERTIFICATE", Bytes: cert}) 60 return cert 64 …cert, err := x509.CreateCertificate(rand.Reader, &subject.template, &issuer.template, &subject.key… 73 err = pem.Encode(file, &pem.Block{Type: "CERTIFICATE", Bytes: cert}) 78 return cert
|
/pki/testdata/verify_certificate_chain_unittest/intermediate-eku-c2patimestamping/ |
A D | make-chain.go | 46 …cert, err := x509.CreateCertificate(rand.Reader, &subject.template, &issuer.template, &subject.key… 55 err = pem.Encode(file, &pem.Block{Type: "CERTIFICATE", Bytes: cert}) 60 return cert 64 …cert, err := x509.CreateCertificate(rand.Reader, &subject.template, &issuer.template, &subject.key… 73 err = pem.Encode(file, &pem.Block{Type: "CERTIFICATE", Bytes: cert}) 78 return cert
|
/pki/testdata/cert_issuer_source_static_unittest/ |
A D | generate-certs.py | 51 def write_cert_to_file(cert, filename): argument 55 sys.argv[0], cert.get_cert_pem()),
|