Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | support unrecognized extensions in x509 | Paul Kehrer | 2015-12-30 | 1 | -1/+5 |
| | |||||
* | move two tests to the openssl backend tests where they belong | Paul Kehrer | 2015-12-26 | 1 | -51/+0 |
| | |||||
* | add invaliditydate class for crl entry extensions | Paul Kehrer | 2015-12-26 | 1 | -3/+3 |
| | |||||
* | switch CRLReason to use a class | Paul Kehrer | 2015-12-26 | 1 | -5/+5 |
| | |||||
* | start switching the CRL entry extensions to be full-fledged classes | Paul Kehrer | 2015-12-25 | 1 | -7/+6 |
| | | | | first up: CertificateIssuer | ||||
* | full indexing support + testsg | Alex Gaynor | 2015-12-24 | 1 | -3/+8 |
| | |||||
* | tests on indexing | Alex Gaynor | 2015-12-24 | 1 | -1/+12 |
| | |||||
* | address review comments | Paul Kehrer | 2015-12-23 | 1 | -8/+3 |
| | |||||
* | add test that fails if CRL references aren't properly retained | Paul Kehrer | 2015-12-23 | 1 | -0/+19 |
| | | | | | | If the X509_CRL reference is not properly retained then this test will return an openssl error or potentially a crash as it's reading freed memory to obtain the revocation_date and serial_number | ||||
* | CRLNumber needs to be a class for reasons. | Paul Kehrer | 2015-12-22 | 1 | -1/+1 |
| | |||||
* | add support for parsing AuthorityInfoAccess and IssuerAltName CRL exts | Paul Kehrer | 2015-12-22 | 1 | -3/+18 |
| | | | | Expand the CRL extensions test to check the value | ||||
* | support parsing CRL extensions in the OpenSSL backend | Paul Kehrer | 2015-12-21 | 1 | -5/+17 |
| | |||||
* | add test for byte matching | Paul Kehrer | 2015-12-21 | 1 | -0/+24 |
| | |||||
* | add a CRL public_bytes method | Paul Kehrer | 2015-12-20 | 1 | -0/+42 |
| | |||||
* | Merge pull request #2538 from reaperhulk/empty-crls-are-beautiful-too | Alex Gaynor | 2015-12-20 | 1 | -0/+8 |
|\ | | | | | support CRLs with no revoked certificates | ||||
| * | support CRLs with no revoked certificates | Paul Kehrer | 2015-12-20 | 1 | -0/+8 |
| | | |||||
* | | Dealing with the pedantry of pep8 | Nick Bastin | 2015-12-20 | 1 | -2/+0 |
| | | |||||
* | | Test for non-standard AIA support in CertificateBuilder | Nick Bastin | 2015-12-20 | 1 | -0/+32 |
|/ | |||||
* | Merge pull request #2530 from nbastin/20151214-oid-val | Paul Kehrer | 2015-12-18 | 1 | -27/+50 |
|\ | | | | | OID validation | ||||
| * | Avoid IndexError on too-short OIDs, add test for regression | Nick Bastin | 2015-12-17 | 1 | -0/+4 |
| | | |||||
| * | OID validation | Nick Bastin | 2015-12-14 | 1 | -27/+46 |
| | | |||||
* | | require not_valid_after >= not_valid_before | Paul Kehrer | 2015-12-13 | 1 | -0/+22 |
|/ | |||||
* | add some missing skips | Paul Kehrer | 2015-12-03 | 1 | -0/+2 |
| | |||||
* | expose tbs_certrequest_bytes and signature on CertificateSigningRequest | Paul Kehrer | 2015-12-03 | 1 | -0/+132 |
| | |||||
* | implement support for encoding name constraints | Paul Kehrer | 2015-12-02 | 1 | -0/+35 |
| | |||||
* | test name fix | Erik Trauschke | 2015-11-19 | 1 | -1/+1 |
| | |||||
* | add tbsCertList and signature interfaces to CRLs | Erik Trauschke | 2015-11-19 | 1 | -0/+38 |
| | |||||
* | rename tbs_certificate to tbs_certificate_bytes, add a comment | Paul Kehrer | 2015-11-03 | 1 | -9/+9 |
| | |||||
* | skip check | Paul Kehrer | 2015-11-03 | 1 | -0/+1 |
| | |||||
* | add support for Certificate signature and tbs_certificate | Paul Kehrer | 2015-11-03 | 1 | -1/+184 |
| | |||||
* | Merge pull request #2435 from reaperhulk/fix-2407 | Alex Gaynor | 2015-10-27 | 1 | -0/+41 |
|\ | | | | | encode countryName with PrintableString | ||||
| * | work on py3 | Paul Kehrer | 2015-10-27 | 1 | -2/+2 |
| | | |||||
| * | remove unneeded str | Paul Kehrer | 2015-10-27 | 1 | -2/+2 |
| | | |||||
| * | switch to using pyasn1_modules for the test | Paul Kehrer | 2015-10-27 | 1 | -12/+14 |
| | | |||||
| * | encode countryName with PrintableString | Paul Kehrer | 2015-10-20 | 1 | -0/+39 |
| | | | | | | | | | | | | | | This commit adds a dependency on asn1crypto for testing purposes to parse the certificate and confirm that countryName is encoded with PrintableString while other fields are UTF8String. This is a test only dep. | ||||
* | | support encoding certificate policies in CertificateBuilder | Paul Kehrer | 2015-10-24 | 1 | -0/+89 |
| | | |||||
* | | typo | Alex Gaynor | 2015-10-24 | 1 | -1/+1 |
| | | |||||
* | | Fixed #2444 -- added an __hash__ to x509 Names | Alex Gaynor | 2015-10-24 | 1 | -0/+17 |
| | | |||||
* | | fix some indentation | Paul Kehrer | 2015-10-21 | 1 | -2/+2 |
| | | |||||
* | | test fix | Erik Trauschke | 2015-10-21 | 1 | -0/+2 |
| | | |||||
* | | remove convenience functions for revoked extensions | Erik Trauschke | 2015-10-21 | 1 | -10/+11 |
| | | | | | | | | fix docs regarding CRL PEM format | ||||
* | | Merge branch 'crl_ossl_backend' of github.com:etrauschke/cryptography into ↵ | Erik Trauschke | 2015-10-20 | 1 | -0/+246 |
|\ \ | |/ |/| | | | crl_ossl_backend | ||||
| * | removing caching mechanism for x509 properties | Erik Trauschke | 2015-10-15 | 1 | -19/+18 |
| | | | | | | | | | | | | undo name change of CRLExtensionOID use custom parsing mechanism for certIssuer entry extension add new crl to vectors for testing invalid certIssuer entry ext | ||||
| * | use X509ExtensionParser for Revoked extensions | Erik Trauschke | 2015-10-14 | 1 | -17/+12 |
| | | | | | | | | | | | | remove revoked_certificates property from RevokedCertificate class CRLExtensions should actually be RevokedExtensions doctest cleanup for RevokedCertificate | ||||
| * | fix indentations | Erik Trauschke | 2015-10-13 | 1 | -0/+3 |
| | | | | | | | | | | | | | | | | change docs to indicate CRL objects are iterable fix docs for revoked certs make _decode_crl_reason more readable add __getitem__ method to CRL object remove double underscores | ||||
| * | use openssl assert | Erik Trauschke | 2015-09-28 | 1 | -2/+5 |
| | | | | | | | | | | | | change _build* to _decode* make CRLs into iterators various fixes | ||||
| * | OpenSSL backend code for CRLs | Erik Trauschke | 2015-09-24 | 1 | -0/+246 |
| | | |||||
* | | Fixed #2404 -- handle a certificate with an unknown public key | Alex Gaynor | 2015-10-10 | 1 | -0/+15 |
| | | |||||
* | | test build ca request with path_length None | vicente.fiebig | 2015-10-01 | 1 | -0/+24 |
|/ | |||||
* | Adds _name property to ObjectIdentifier | Brendan McCollam | 2015-09-06 | 1 | -0/+6 |
| |