blob: a26b7ad06bc1464cba0e84f04ab55acd445451b6 [file] [log] [blame]
Paul Bakker37940d9f2009-07-10 22:38:58 +00001X509 Certificate information #1
palaviva07ecda2016-08-07 11:15:29 +03002depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02003x509_cert_info:"data_files/server1.crt":"cert. version \: 3\nserial number \: 01\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Server 1\nissued on \: 2011-02-12 14\:44\:06\nexpires on \: 2021-02-12 14\:44\:06\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\n"
Paul Bakker37940d9f2009-07-10 22:38:58 +00004
5X509 Certificate information #2
palaviva07ecda2016-08-07 11:15:29 +03006depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02007x509_cert_info:"data_files/server2.crt":"cert. version \: 3\nserial number \: 02\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2011-02-12 14\:44\:06\nexpires on \: 2021-02-12 14\:44\:06\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\n"
Paul Bakker37940d9f2009-07-10 22:38:58 +00008
Paul Bakkerc26a1892009-07-19 20:30:14 +00009X509 Certificate information #3
palaviva07ecda2016-08-07 11:15:29 +030010depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020011x509_cert_info:"data_files/test-ca.crt":"cert. version \: 3\nserial number \: 00\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nissued on \: 2011-02-12 14\:44\:00\nexpires on \: 2021-02-12 14\:44\:00\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\nbasic constraints \: CA=true\n"
Paul Bakker37940d9f2009-07-10 22:38:58 +000012
Paul Bakkerc26a1892009-07-19 20:30:14 +000013X509 Certificate information MD2 Digest
palaviva07ecda2016-08-07 11:15:29 +030014depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020015x509_cert_info:"data_files/cert_md2.crt":"cert. version \: 3\nserial number \: 09\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert MD2\nissued on \: 2009-07-12 10\:56\:59\nexpires on \: 2011-07-12 10\:56\:59\nsigned using \: RSA with MD2\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000016
17X509 Certificate information MD4 Digest
palaviva07ecda2016-08-07 11:15:29 +030018depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_MD4_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020019x509_cert_info:"data_files/cert_md4.crt":"cert. version \: 3\nserial number \: 05\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert MD4\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with MD4\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000020
21X509 Certificate information MD5 Digest
palaviva07ecda2016-08-07 11:15:29 +030022depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_MD5_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020023x509_cert_info:"data_files/cert_md5.crt":"cert. version \: 3\nserial number \: 06\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert MD5\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with MD5\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000024
25X509 Certificate information SHA1 Digest
palaviva07ecda2016-08-07 11:15:29 +030026depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020027x509_cert_info:"data_files/cert_sha1.crt":"cert. version \: 3\nserial number \: 07\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert SHA1\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000028
29X509 Certificate information SHA224 Digest
palaviva07ecda2016-08-07 11:15:29 +030030depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020031x509_cert_info:"data_files/cert_sha224.crt":"cert. version \: 3\nserial number \: 08\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert SHA224\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with SHA-224\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000032
33X509 Certificate information SHA256 Digest
palaviva07ecda2016-08-07 11:15:29 +030034depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020035x509_cert_info:"data_files/cert_sha256.crt":"cert. version \: 3\nserial number \: 09\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert SHA256\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with SHA-256\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000036
37X509 Certificate information SHA384 Digest
palaviva07ecda2016-08-07 11:15:29 +030038depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA512_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020039x509_cert_info:"data_files/cert_sha384.crt":"cert. version \: 3\nserial number \: 0A\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert SHA384\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with SHA-384\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000040
41X509 Certificate information SHA512 Digest
palaviva07ecda2016-08-07 11:15:29 +030042depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA512_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020043x509_cert_info:"data_files/cert_sha512.crt":"cert. version \: 3\nserial number \: 0B\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert SHA512\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with SHA-512\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000044
Manuel Pégourié-Gonnard59a75d52014-01-22 10:12:57 +010045X509 Certificate information RSA-PSS, SHA1 Digest
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020046depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard78117d52014-05-31 17:08:16 +020047x509_cert_info:"data_files/server9.crt":"cert. version \: 3\nserial number \: 16\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2014-01-20 13\:38\:16\nexpires on \: 2024-01-18 13\:38\:16\nsigned using \: RSASSA-PSS (SHA1, MGF1-SHA1, 0xEA)\nRSA key size \: 1024 bits\nbasic constraints \: CA=false\n"
Manuel Pégourié-Gonnarde76b7502014-01-23 19:15:29 +010048
49X509 Certificate information RSA-PSS, SHA224 Digest
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020050depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard78117d52014-05-31 17:08:16 +020051x509_cert_info:"data_files/server9-sha224.crt":"cert. version \: 3\nserial number \: 17\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2014-01-20 13\:57\:36\nexpires on \: 2024-01-18 13\:57\:36\nsigned using \: RSASSA-PSS (SHA224, MGF1-SHA224, 0xE2)\nRSA key size \: 1024 bits\nbasic constraints \: CA=false\n"
Manuel Pégourié-Gonnarde76b7502014-01-23 19:15:29 +010052
53X509 Certificate information RSA-PSS, SHA256 Digest
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020054depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard78117d52014-05-31 17:08:16 +020055x509_cert_info:"data_files/server9-sha256.crt":"cert. version \: 3\nserial number \: 18\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2014-01-20 13\:57\:45\nexpires on \: 2024-01-18 13\:57\:45\nsigned using \: RSASSA-PSS (SHA256, MGF1-SHA256, 0xDE)\nRSA key size \: 1024 bits\nbasic constraints \: CA=false\n"
Manuel Pégourié-Gonnarde76b7502014-01-23 19:15:29 +010056
57X509 Certificate information RSA-PSS, SHA384 Digest
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020058depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA512_C
Manuel Pégourié-Gonnard78117d52014-05-31 17:08:16 +020059x509_cert_info:"data_files/server9-sha384.crt":"cert. version \: 3\nserial number \: 19\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2014-01-20 13\:57\:58\nexpires on \: 2024-01-18 13\:57\:58\nsigned using \: RSASSA-PSS (SHA384, MGF1-SHA384, 0xCE)\nRSA key size \: 1024 bits\nbasic constraints \: CA=false\n"
Manuel Pégourié-Gonnarde76b7502014-01-23 19:15:29 +010060
61X509 Certificate information RSA-PSS, SHA512 Digest
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +020062depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA512_C
Manuel Pégourié-Gonnard78117d52014-05-31 17:08:16 +020063x509_cert_info:"data_files/server9-sha512.crt":"cert. version \: 3\nserial number \: 1A\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2014-01-20 13\:58\:12\nexpires on \: 2024-01-18 13\:58\:12\nsigned using \: RSASSA-PSS (SHA512, MGF1-SHA512, 0xBE)\nRSA key size \: 1024 bits\nbasic constraints \: CA=false\n"
Manuel Pégourié-Gonnard59a75d52014-01-22 10:12:57 +010064
Manuel Pégourié-Gonnard6d29ff22013-08-10 09:44:43 +020065X509 Certificate information EC, SHA1 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +020066depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020067x509_cert_info:"data_files/server5-sha1.crt":"cert. version \: 3\nserial number \: 12\nissuer name \: C=NL, O=PolarSSL, CN=Polarssl Test EC CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2013-09-24 16\:21\:27\nexpires on \: 2023-09-22 16\:21\:27\nsigned using \: ECDSA with SHA1\nEC key size \: 256 bits\nbasic constraints \: CA=false\n"
Manuel Pégourié-Gonnard6d29ff22013-08-10 09:44:43 +020068
69X509 Certificate information EC, SHA224 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +020070depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020071x509_cert_info:"data_files/server5-sha224.crt":"cert. version \: 3\nserial number \: 13\nissuer name \: C=NL, O=PolarSSL, CN=Polarssl Test EC CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2013-09-24 16\:21\:27\nexpires on \: 2023-09-22 16\:21\:27\nsigned using \: ECDSA with SHA224\nEC key size \: 256 bits\nbasic constraints \: CA=false\n"
Manuel Pégourié-Gonnard6d29ff22013-08-10 09:44:43 +020072
73X509 Certificate information EC, SHA256 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +020074depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020075x509_cert_info:"data_files/server5.crt":"cert. version \: 3\nserial number \: 09\nissuer name \: C=NL, O=PolarSSL, CN=Polarssl Test EC CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2013-09-24 15\:52\:04\nexpires on \: 2023-09-22 15\:52\:04\nsigned using \: ECDSA with SHA256\nEC key size \: 256 bits\nbasic constraints \: CA=false\n"
Manuel Pégourié-Gonnard6d29ff22013-08-10 09:44:43 +020076
77X509 Certificate information EC, SHA384 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +020078depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA512_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020079x509_cert_info:"data_files/server5-sha384.crt":"cert. version \: 3\nserial number \: 14\nissuer name \: C=NL, O=PolarSSL, CN=Polarssl Test EC CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2013-09-24 16\:21\:27\nexpires on \: 2023-09-22 16\:21\:27\nsigned using \: ECDSA with SHA384\nEC key size \: 256 bits\nbasic constraints \: CA=false\n"
Manuel Pégourié-Gonnard6d29ff22013-08-10 09:44:43 +020080
81X509 Certificate information EC, SHA512 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +020082depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA512_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +020083x509_cert_info:"data_files/server5-sha512.crt":"cert. version \: 3\nserial number \: 15\nissuer name \: C=NL, O=PolarSSL, CN=Polarssl Test EC CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2013-09-24 16\:21\:27\nexpires on \: 2023-09-22 16\:21\:27\nsigned using \: ECDSA with SHA512\nEC key size \: 256 bits\nbasic constraints \: CA=false\n"
Manuel Pégourié-Gonnard6d29ff22013-08-10 09:44:43 +020084
Manuel Pégourié-Gonnard919f8f52014-04-01 13:01:11 +020085X509 Certificate information, NS Cert Type
palaviva07ecda2016-08-07 11:15:29 +030086depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard919f8f52014-04-01 13:01:11 +020087x509_cert_info:"data_files/server1.cert_type.crt":"cert. version \: 3\nserial number \: 01\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Server 1\nissued on \: 2011-02-12 14\:44\:06\nexpires on \: 2021-02-12 14\:44\:06\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\ncert. type \: SSL Server\n"
88
Manuel Pégourié-Gonnard65c2ddc2014-04-01 14:12:11 +020089X509 Certificate information, Key Usage
palaviva07ecda2016-08-07 11:15:29 +030090depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard7b30cfc2014-04-01 18:00:07 +020091x509_cert_info:"data_files/server1.key_usage.crt":"cert. version \: 3\nserial number \: 01\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Server 1\nissued on \: 2011-02-12 14\:44\:06\nexpires on \: 2021-02-12 14\:44\:06\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\nkey usage \: Digital Signature, Non Repudiation, Key Encipherment\n"
Manuel Pégourié-Gonnard65c2ddc2014-04-01 14:12:11 +020092
Manuel Pégourié-Gonnard9a702252015-06-23 10:14:36 +020093X509 Certificate information, Key Usage with decipherOnly
palaviva07ecda2016-08-07 11:15:29 +030094depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard9a702252015-06-23 10:14:36 +020095x509_cert_info:"data_files/keyUsage.decipherOnly.crt":"cert. version \: 3\nserial number \: 9B\:13\:CE\:4C\:A5\:6F\:DE\:52\nissuer name \: C=GB, L=Cambridge, O=Default Company Ltd\nsubject name \: C=GB, L=Cambridge, O=Default Company Ltd\nissued on \: 2015-05-12 10\:36\:55\nexpires on \: 2018-05-11 10\:36\:55\nsigned using \: RSA with SHA1\nRSA key size \: 1024 bits\nbasic constraints \: CA=false\nkey usage \: Digital Signature, Non Repudiation, Key Encipherment, Decipher Only\n"
96
Manuel Pégourié-Gonnard65c2ddc2014-04-01 14:12:11 +020097X509 Certificate information, Subject Alt Name
palaviva07ecda2016-08-07 11:15:29 +030098depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard7b30cfc2014-04-01 18:00:07 +020099x509_cert_info:"data_files/cert_example_multi.crt":"cert. version \: 3\nserial number \: 11\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=www.example.com\nissued on \: 2012-05-10 13\:23\:41\nexpires on \: 2022-05-11 13\:23\:41\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\nsubject alt name \: example.com, example.net, *.example.org\n"
Manuel Pégourié-Gonnardbce2b302014-04-01 13:43:28 +0200100
Manuel Pégourié-Gonnard65c2ddc2014-04-01 14:12:11 +0200101X509 Certificate information, Subject Alt Name + Key Usage
palaviva07ecda2016-08-07 11:15:29 +0300102depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard7b30cfc2014-04-01 18:00:07 +0200103x509_cert_info:"data_files/cert_example_multi_nocn.crt":"cert. version \: 3\nserial number \: F7\:C6\:7F\:F8\:E9\:A9\:63\:F9\nissuer name \: C=NL\nsubject name \: C=NL\nissued on \: 2014-01-22 10\:04\:33\nexpires on \: 2024-01-22 10\:04\:33\nsigned using \: RSA with SHA1\nRSA key size \: 1024 bits\nbasic constraints \: CA=false\nsubject alt name \: www.shotokan-braunschweig.de, www.massimo-abate.eu\nkey usage \: Digital Signature, Non Repudiation, Key Encipherment\n"
Manuel Pégourié-Gonnard65c2ddc2014-04-01 14:12:11 +0200104
Manuel Pégourié-Gonnardf6f4ab42014-04-01 17:32:44 +0200105X509 Certificate information, Key Usage + Extended Key Usage
palaviva07ecda2016-08-07 11:15:29 +0300106depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard7b30cfc2014-04-01 18:00:07 +0200107x509_cert_info:"data_files/server1.ext_ku.crt":"cert. version \: 3\nserial number \: 21\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Server 1\nissued on \: 2014-04-01 14\:44\:43\nexpires on \: 2024-03-29 14\:44\:43\nsigned using \: RSA with SHA-256\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\nkey usage \: Digital Signature, Non Repudiation, Key Encipherment\next key usage \: TLS Web Server Authentication\n"
Manuel Pégourié-Gonnardf6f4ab42014-04-01 17:32:44 +0200108
Manuel Pégourié-Gonnard6d29ff22013-08-10 09:44:43 +0200109X509 Certificate information RSA signed by EC
palavivf180df92016-08-07 11:56:02 +0300110depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +0200111x509_cert_info:"data_files/server4.crt":"cert. version \: 3\nserial number \: 08\nissuer name \: C=NL, O=PolarSSL, CN=Polarssl Test EC CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2013-09-24 15\:52\:04\nexpires on \: 2023-09-22 15\:52\:04\nsigned using \: ECDSA with SHA256\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\n"
Manuel Pégourié-Gonnard6d29ff22013-08-10 09:44:43 +0200112
113X509 Certificate information EC signed by RSA
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200114depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP192R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +0200115x509_cert_info:"data_files/server3.crt":"cert. version \: 3\nserial number \: 0D\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2013-08-09 09\:17\:03\nexpires on \: 2023-08-07 09\:17\:03\nsigned using \: RSA with SHA1\nEC key size \: 192 bits\nbasic constraints \: CA=false\n"
Manuel Pégourié-Gonnard6d29ff22013-08-10 09:44:43 +0200116
Manuel Pégourié-Gonnard39ead3e2015-03-27 13:09:21 +0100117X509 Certificate information Bitstring in subject name
palaviva07ecda2016-08-07 11:15:29 +0300118depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard39ead3e2015-03-27 13:09:21 +0100119x509_cert_info:"data_files/bitstring-in-dn.pem":"cert. version \: 3\nserial number \: 02\nissuer name \: CN=Test CA 01, ST=Ecnivorp, C=XX, emailAddress=tca@example.com, O=Test CA Authority\nsubject name \: C=XX, O=tca, ST=Ecnivorp, OU=TCA, CN=Client, emailAddress=client@example.com, serialNumber=7101012255, uniqueIdentifier=?7101012255\nissued on \: 2015-03-11 12\:06\:51\nexpires on \: 2025-03-08 12\:06\:51\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\nbasic constraints \: CA=false\nsubject alt name \: \next key usage \: TLS Web Client Authentication\n"
120
Paul Bakkerc27c4e22013-09-23 15:01:36 +0200121X509 certificate v1 with extension
palaviva07ecda2016-08-07 11:15:29 +0300122depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_X509_ALLOW_EXTENSIONS_NON_V3:MBEDTLS_SHA1_C
Paul Bakkerb6487da2014-04-17 16:04:33 +0200123x509_cert_info:"data_files/cert_v1_with_ext.crt":"cert. version \: 1\nserial number \: BD\:ED\:44\:C7\:D2\:3E\:C2\:A4\nissuer name \: C=XX, ST=XX, L=XX, O=XX, OU=XX, emailAddress=admin@identity-check.org, CN=identity-check.org\nsubject name \: C=XX, ST=XX, L=XX, O=XX, OU=XX, emailAddress=admin@identity-check.org, CN=identity-check.org\nissued on \: 2013-07-04 16\:17\:02\nexpires on \: 2014-07-04 16\:17\:02\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\nsubject alt name \: identity-check.org, www.identity-check.org\n"
Paul Bakkerc27c4e22013-09-23 15:01:36 +0200124
Paul Bakker37940d9f2009-07-10 22:38:58 +0000125X509 CRL information #1
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200126depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200127mbedtls_x509_crl_info:"data_files/crl_expired.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-20 10\:24\:19\nnext update \: 2011-02-20 11\:24\:19\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with SHA1\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +0000128
129X509 CRL Information MD2 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200130depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_MD2_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200131mbedtls_x509_crl_info:"data_files/crl_md2.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2009-07-19 19\:56\:37\nnext update \: 2009-09-17 19\:56\:37\nRevoked certificates\:\nserial number\: 01 revocation date\: 2009-02-09 21\:12\:36\nserial number\: 03 revocation date\: 2009-02-09 21\:12\:36\nsigned using \: RSA with MD2\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +0000132
133X509 CRL Information MD4 Digest
palaviva07ecda2016-08-07 11:15:29 +0300134depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_MD4_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200135mbedtls_x509_crl_info:"data_files/crl_md4.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with MD4\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +0000136
137X509 CRL Information MD5 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200138depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_MD5_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200139mbedtls_x509_crl_info:"data_files/crl_md5.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with MD5\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +0000140
141X509 CRL Information SHA1 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200142depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200143mbedtls_x509_crl_info:"data_files/crl_sha1.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with SHA1\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +0000144
145X509 CRL Information SHA224 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200146depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200147mbedtls_x509_crl_info:"data_files/crl_sha224.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with SHA-224\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +0000148
149X509 CRL Information SHA256 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200150depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200151mbedtls_x509_crl_info:"data_files/crl_sha256.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with SHA-256\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +0000152
153X509 CRL Information SHA384 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200154depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA512_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200155mbedtls_x509_crl_info:"data_files/crl_sha384.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with SHA-384\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +0000156
157X509 CRL Information SHA512 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200158depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA512_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200159mbedtls_x509_crl_info:"data_files/crl_sha512.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with SHA-512\n"
Paul Bakker37940d9f2009-07-10 22:38:58 +0000160
Manuel Pégourié-Gonnard8e42ff62014-01-24 15:56:20 +0100161X509 CRL information RSA-PSS, SHA1 Digest
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200162depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA1_C
163mbedtls_x509_crl_info:"data_files/crl-rsa-pss-sha1.pem":"CRL version \: 2\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2014-01-20 13\:46\:35\nnext update \: 2024-01-18 13\:46\:35\nRevoked certificates\:\nserial number\: 0A revocation date\: 2013-09-24 16\:28\:38\nserial number\: 16 revocation date\: 2014-01-20 13\:43\:05\nsigned using \: RSASSA-PSS (SHA1, MGF1-SHA1, 0xEA)\n"
Manuel Pégourié-Gonnard8e42ff62014-01-24 15:56:20 +0100164
165X509 CRL information RSA-PSS, SHA224 Digest
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200166depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA256_C
167mbedtls_x509_crl_info:"data_files/crl-rsa-pss-sha224.pem":"CRL version \: 2\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2014-01-20 13\:56\:06\nnext update \: 2024-01-18 13\:56\:06\nRevoked certificates\:\nserial number\: 0A revocation date\: 2013-09-24 16\:28\:38\nserial number\: 16 revocation date\: 2014-01-20 13\:43\:05\nsigned using \: RSASSA-PSS (SHA224, MGF1-SHA224, 0xE2)\n"
Manuel Pégourié-Gonnard8e42ff62014-01-24 15:56:20 +0100168
169X509 CRL information RSA-PSS, SHA256 Digest
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200170depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA256_C
171mbedtls_x509_crl_info:"data_files/crl-rsa-pss-sha256.pem":"CRL version \: 2\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2014-01-20 13\:56\:16\nnext update \: 2024-01-18 13\:56\:16\nRevoked certificates\:\nserial number\: 0A revocation date\: 2013-09-24 16\:28\:38\nserial number\: 16 revocation date\: 2014-01-20 13\:43\:05\nsigned using \: RSASSA-PSS (SHA256, MGF1-SHA256, 0xDE)\n"
Manuel Pégourié-Gonnard8e42ff62014-01-24 15:56:20 +0100172
173X509 CRL information RSA-PSS, SHA384 Digest
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200174depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA512_C
175mbedtls_x509_crl_info:"data_files/crl-rsa-pss-sha384.pem":"CRL version \: 2\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2014-01-20 13\:56\:28\nnext update \: 2024-01-18 13\:56\:28\nRevoked certificates\:\nserial number\: 0A revocation date\: 2013-09-24 16\:28\:38\nserial number\: 16 revocation date\: 2014-01-20 13\:43\:05\nsigned using \: RSASSA-PSS (SHA384, MGF1-SHA384, 0xCE)\n"
Manuel Pégourié-Gonnard8e42ff62014-01-24 15:56:20 +0100176
177X509 CRL information RSA-PSS, SHA512 Digest
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200178depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA512_C
179mbedtls_x509_crl_info:"data_files/crl-rsa-pss-sha512.pem":"CRL version \: 2\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2014-01-20 13\:56\:38\nnext update \: 2024-01-18 13\:56\:38\nRevoked certificates\:\nserial number\: 0A revocation date\: 2013-09-24 16\:28\:38\nserial number\: 16 revocation date\: 2014-01-20 13\:43\:05\nsigned using \: RSASSA-PSS (SHA512, MGF1-SHA512, 0xBE)\n"
Manuel Pégourié-Gonnard8e42ff62014-01-24 15:56:20 +0100180
Manuel Pégourié-Gonnard05b9dce2013-08-10 10:19:03 +0200181X509 CRL Information EC, SHA1 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200182depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_ECDSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200183mbedtls_x509_crl_info:"data_files/crl-ec-sha1.pem":"CRL version \: 2\nissuer name \: C=NL, O=PolarSSL, CN=Polarssl Test EC CA\nthis update \: 2013-09-24 16\:31\:08\nnext update \: 2023-09-22 16\:31\:08\nRevoked certificates\:\nserial number\: 0A revocation date\: 2013-09-24 16\:28\:38\nsigned using \: ECDSA with SHA1\n"
Manuel Pégourié-Gonnard05b9dce2013-08-10 10:19:03 +0200184
185X509 CRL Information EC, SHA224 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200186depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200187mbedtls_x509_crl_info:"data_files/crl-ec-sha224.pem":"CRL version \: 2\nissuer name \: C=NL, O=PolarSSL, CN=Polarssl Test EC CA\nthis update \: 2013-09-24 16\:31\:08\nnext update \: 2023-09-22 16\:31\:08\nRevoked certificates\:\nserial number\: 0A revocation date\: 2013-09-24 16\:28\:38\nsigned using \: ECDSA with SHA224\n"
Manuel Pégourié-Gonnard05b9dce2013-08-10 10:19:03 +0200188
189X509 CRL Information EC, SHA256 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200190depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200191mbedtls_x509_crl_info:"data_files/crl-ec-sha256.pem":"CRL version \: 2\nissuer name \: C=NL, O=PolarSSL, CN=Polarssl Test EC CA\nthis update \: 2013-09-24 16\:31\:08\nnext update \: 2023-09-22 16\:31\:08\nRevoked certificates\:\nserial number\: 0A revocation date\: 2013-09-24 16\:28\:38\nsigned using \: ECDSA with SHA256\n"
Manuel Pégourié-Gonnard05b9dce2013-08-10 10:19:03 +0200192
193X509 CRL Information EC, SHA384 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200194depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA512_C:MBEDTLS_ECDSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200195mbedtls_x509_crl_info:"data_files/crl-ec-sha384.pem":"CRL version \: 2\nissuer name \: C=NL, O=PolarSSL, CN=Polarssl Test EC CA\nthis update \: 2013-09-24 16\:31\:08\nnext update \: 2023-09-22 16\:31\:08\nRevoked certificates\:\nserial number\: 0A revocation date\: 2013-09-24 16\:28\:38\nsigned using \: ECDSA with SHA384\n"
Manuel Pégourié-Gonnard05b9dce2013-08-10 10:19:03 +0200196
197X509 CRL Information EC, SHA512 Digest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200198depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA512_C:MBEDTLS_ECDSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200199mbedtls_x509_crl_info:"data_files/crl-ec-sha512.pem":"CRL version \: 2\nissuer name \: C=NL, O=PolarSSL, CN=Polarssl Test EC CA\nthis update \: 2013-09-24 16\:31\:08\nnext update \: 2023-09-22 16\:31\:08\nRevoked certificates\:\nserial number\: 0A revocation date\: 2013-09-24 16\:28\:38\nsigned using \: ECDSA with SHA512\n"
Manuel Pégourié-Gonnard05b9dce2013-08-10 10:19:03 +0200200
Andres AGa39db392016-12-08 17:10:38 +0000201X509 CRL Malformed Input (trailing spaces at end of file)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200202depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_SHA512_C:MBEDTLS_ECDSA_C
Andres AGa39db392016-12-08 17:10:38 +0000203mbedtls_x509_crl_parse:"data_files/crl-malformed-trailing-spaces.pem":MBEDTLS_ERR_PEM_NO_HEADER_FOOTER_PRESENT
204
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100205X509 CSR Information RSA with MD4
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200206depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_MD4_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200207mbedtls_x509_csr_info:"data_files/server1.req.md4":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Server 1\nsigned using \: RSA with MD4\nRSA key size \: 2048 bits\n"
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100208
209X509 CSR Information RSA with MD5
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200210depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_MD5_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200211mbedtls_x509_csr_info:"data_files/server1.req.md5":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Server 1\nsigned using \: RSA with MD5\nRSA key size \: 2048 bits\n"
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100212
213X509 CSR Information RSA with SHA1
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200214depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200215mbedtls_x509_csr_info:"data_files/server1.req.sha1":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Server 1\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\n"
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100216
217X509 CSR Information RSA with SHA224
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200218depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200219mbedtls_x509_csr_info:"data_files/server1.req.sha224":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Server 1\nsigned using \: RSA with SHA-224\nRSA key size \: 2048 bits\n"
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100220
221X509 CSR Information RSA with SHA256
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200222depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200223mbedtls_x509_csr_info:"data_files/server1.req.sha256":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Server 1\nsigned using \: RSA with SHA-256\nRSA key size \: 2048 bits\n"
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100224
225X509 CSR Information RSA with SHA384
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200226depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA512_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200227mbedtls_x509_csr_info:"data_files/server1.req.sha384":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Server 1\nsigned using \: RSA with SHA-384\nRSA key size \: 2048 bits\n"
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100228
229X509 CSR Information RSA with SHA512
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200230depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA512_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200231mbedtls_x509_csr_info:"data_files/server1.req.sha512":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Server 1\nsigned using \: RSA with SHA-512\nRSA key size \: 2048 bits\n"
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100232
233X509 CSR Information EC with SHA1
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200234depends_on:MBEDTLS_ECDSA_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200235mbedtls_x509_csr_info:"data_files/server5.req.sha1":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nsigned using \: ECDSA with SHA1\nEC key size \: 256 bits\n"
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100236
237X509 CSR Information EC with SHA224
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200238depends_on:MBEDTLS_ECDSA_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200239mbedtls_x509_csr_info:"data_files/server5.req.sha224":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nsigned using \: ECDSA with SHA224\nEC key size \: 256 bits\n"
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100240
241X509 CSR Information EC with SHA256
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200242depends_on:MBEDTLS_ECDSA_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200243mbedtls_x509_csr_info:"data_files/server5.req.sha256":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nsigned using \: ECDSA with SHA256\nEC key size \: 256 bits\n"
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100244
245X509 CSR Information EC with SHA384
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200246depends_on:MBEDTLS_ECDSA_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA512_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200247mbedtls_x509_csr_info:"data_files/server5.req.sha384":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nsigned using \: ECDSA with SHA384\nEC key size \: 256 bits\n"
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100248
249X509 CSR Information EC with SHA512
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200250depends_on:MBEDTLS_ECDSA_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA512_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200251mbedtls_x509_csr_info:"data_files/server5.req.sha512":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nsigned using \: ECDSA with SHA512\nEC key size \: 256 bits\n"
Manuel Pégourié-Gonnard2a8d7fd2014-01-24 17:34:26 +0100252
Manuel Pégourié-Gonnard39868ee2014-01-24 18:47:17 +0100253X509 CSR Information RSA-PSS with SHA1
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200254depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA1_C
255mbedtls_x509_csr_info:"data_files/server9.req.sha1":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nsigned using \: RSASSA-PSS (SHA1, MGF1-SHA1, 0x6A)\nRSA key size \: 1024 bits\n"
Manuel Pégourié-Gonnard39868ee2014-01-24 18:47:17 +0100256
257X509 CSR Information RSA-PSS with SHA224
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200258depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA256_C
259mbedtls_x509_csr_info:"data_files/server9.req.sha224":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nsigned using \: RSASSA-PSS (SHA224, MGF1-SHA224, 0x62)\nRSA key size \: 1024 bits\n"
Manuel Pégourié-Gonnard39868ee2014-01-24 18:47:17 +0100260
261X509 CSR Information RSA-PSS with SHA256
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200262depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA256_C
263mbedtls_x509_csr_info:"data_files/server9.req.sha256":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nsigned using \: RSASSA-PSS (SHA256, MGF1-SHA256, 0x5E)\nRSA key size \: 1024 bits\n"
Manuel Pégourié-Gonnard39868ee2014-01-24 18:47:17 +0100264
265X509 CSR Information RSA-PSS with SHA384
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200266depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA512_C
267mbedtls_x509_csr_info:"data_files/server9.req.sha384":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nsigned using \: RSASSA-PSS (SHA384, MGF1-SHA384, 0x4E)\nRSA key size \: 1024 bits\n"
Manuel Pégourié-Gonnard39868ee2014-01-24 18:47:17 +0100268
269X509 CSR Information RSA-PSS with SHA512
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200270depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA512_C
271mbedtls_x509_csr_info:"data_files/server9.req.sha512":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nsigned using \: RSASSA-PSS (SHA512, MGF1-SHA512, 0x3E)\nRSA key size \: 1024 bits\n"
Manuel Pégourié-Gonnard39868ee2014-01-24 18:47:17 +0100272
Manuel Pégourié-Gonnardb5f48ad2015-04-20 10:38:13 +0100273X509 Verify Information: empty
274x509_verify_info:0:"":""
275
276X509 Verify Information: one issue
Manuel Pégourié-Gonnarde6028c92015-04-20 12:19:02 +0100277x509_verify_info:MBEDTLS_X509_BADCERT_MISSING:"":"Certificate was missing\n"
Manuel Pégourié-Gonnardb5f48ad2015-04-20 10:38:13 +0100278
279X509 Verify Information: two issues
Manuel Pégourié-Gonnarde6028c92015-04-20 12:19:02 +0100280x509_verify_info:MBEDTLS_X509_BADCERT_EXPIRED | MBEDTLS_X509_BADCRL_EXPIRED:"":"The certificate validity has expired\nThe CRL is expired\n"
Manuel Pégourié-Gonnardb5f48ad2015-04-20 10:38:13 +0100281
282X509 Verify Information: two issues, one unknown
Manuel Pégourié-Gonnard95051642015-06-15 10:39:46 +0200283x509_verify_info:MBEDTLS_X509_BADCERT_OTHER | 0x80000000:"":"Other reason (can be used by verify callback)\nUnknown reason (this should not happen)\n"
Manuel Pégourié-Gonnardb5f48ad2015-04-20 10:38:13 +0100284
285X509 Verify Information: empty, with prefix
286x509_verify_info:0:" ! ":""
287
288X509 Verify Information: one issue, with prefix
Manuel Pégourié-Gonnarde6028c92015-04-20 12:19:02 +0100289x509_verify_info:MBEDTLS_X509_BADCERT_MISSING:" ! ":" ! Certificate was missing\n"
Manuel Pégourié-Gonnardb5f48ad2015-04-20 10:38:13 +0100290
291X509 Verify Information: two issues, with prefix
Manuel Pégourié-Gonnarde6028c92015-04-20 12:19:02 +0100292x509_verify_info:MBEDTLS_X509_BADCERT_EXPIRED | MBEDTLS_X509_BADCRL_EXPIRED:" ! ":" ! The certificate validity has expired\n ! The CRL is expired\n"
Manuel Pégourié-Gonnardb5f48ad2015-04-20 10:38:13 +0100293
Paul Bakker37940d9f2009-07-10 22:38:58 +0000294X509 Get Distinguished Name #1
palaviva07ecda2016-08-07 11:15:29 +0300295depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200296mbedtls_x509_dn_gets:"data_files/server1.crt":"subject":"C=NL, O=PolarSSL, CN=PolarSSL Server 1"
Paul Bakker37940d9f2009-07-10 22:38:58 +0000297
298X509 Get Distinguished Name #2
palaviva07ecda2016-08-07 11:15:29 +0300299depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200300mbedtls_x509_dn_gets:"data_files/server1.crt":"issuer":"C=NL, O=PolarSSL, CN=PolarSSL Test CA"
Paul Bakker37940d9f2009-07-10 22:38:58 +0000301
302X509 Get Distinguished Name #3
palaviva07ecda2016-08-07 11:15:29 +0300303depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200304mbedtls_x509_dn_gets:"data_files/server2.crt":"subject":"C=NL, O=PolarSSL, CN=localhost"
Paul Bakker37940d9f2009-07-10 22:38:58 +0000305
306X509 Get Distinguished Name #4
palaviva07ecda2016-08-07 11:15:29 +0300307depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200308mbedtls_x509_dn_gets:"data_files/server2.crt":"issuer":"C=NL, O=PolarSSL, CN=PolarSSL Test CA"
Paul Bakker37940d9f2009-07-10 22:38:58 +0000309
310X509 Time Expired #1
palaviva07ecda2016-08-07 11:15:29 +0300311depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_HAVE_TIME_DATE:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardc730ed32015-06-02 10:38:50 +0100312mbedtls_x509_time_is_past:"data_files/server1.crt":"valid_from":1
Paul Bakker37940d9f2009-07-10 22:38:58 +0000313
314X509 Time Expired #2
palaviva07ecda2016-08-07 11:15:29 +0300315depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_HAVE_TIME_DATE:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardc730ed32015-06-02 10:38:50 +0100316mbedtls_x509_time_is_past:"data_files/server1.crt":"valid_to":0
Paul Bakker37940d9f2009-07-10 22:38:58 +0000317
318X509 Time Expired #3
palaviva07ecda2016-08-07 11:15:29 +0300319depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_HAVE_TIME_DATE:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardc730ed32015-06-02 10:38:50 +0100320mbedtls_x509_time_is_past:"data_files/server2.crt":"valid_from":1
Paul Bakker37940d9f2009-07-10 22:38:58 +0000321
322X509 Time Expired #4
palaviva07ecda2016-08-07 11:15:29 +0300323depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_HAVE_TIME_DATE:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardc730ed32015-06-02 10:38:50 +0100324mbedtls_x509_time_is_past:"data_files/server2.crt":"valid_to":0
Paul Bakker37940d9f2009-07-10 22:38:58 +0000325
326X509 Time Expired #5
palaviva07ecda2016-08-07 11:15:29 +0300327depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_HAVE_TIME_DATE:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardc730ed32015-06-02 10:38:50 +0100328mbedtls_x509_time_is_past:"data_files/test-ca.crt":"valid_from":1
Paul Bakker37940d9f2009-07-10 22:38:58 +0000329
Manuel Pégourié-Gonnarde7f64a82013-08-09 10:59:25 +0200330X509 Time Expired #6
palaviva07ecda2016-08-07 11:15:29 +0300331depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_HAVE_TIME_DATE:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardc730ed32015-06-02 10:38:50 +0100332mbedtls_x509_time_is_past:"data_files/test-ca.crt":"valid_to":0
Paul Bakker37940d9f2009-07-10 22:38:58 +0000333
Manuel Pégourié-Gonnard6304f782014-03-10 12:26:11 +0100334X509 Time Future #1
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200335depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_HAVE_TIME_DATE:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardc730ed32015-06-02 10:38:50 +0100336mbedtls_x509_time_is_future:"data_files/server5.crt":"valid_from":0
Manuel Pégourié-Gonnard6304f782014-03-10 12:26:11 +0100337
338X509 Time Future #2
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200339depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_HAVE_TIME_DATE:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardc730ed32015-06-02 10:38:50 +0100340mbedtls_x509_time_is_future:"data_files/server5.crt":"valid_to":1
Manuel Pégourié-Gonnard6304f782014-03-10 12:26:11 +0100341
342X509 Time Future #3
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200343depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_HAVE_TIME_DATE:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardc730ed32015-06-02 10:38:50 +0100344mbedtls_x509_time_is_future:"data_files/server5-future.crt":"valid_from":1
Manuel Pégourié-Gonnard6304f782014-03-10 12:26:11 +0100345
346X509 Time Future #4
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200347depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_HAVE_TIME_DATE:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardc730ed32015-06-02 10:38:50 +0100348mbedtls_x509_time_is_future:"data_files/server5-future.crt":"valid_to":1
Manuel Pégourié-Gonnard6304f782014-03-10 12:26:11 +0100349
350X509 Time Future #5
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200351depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_HAVE_TIME_DATE:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardc730ed32015-06-02 10:38:50 +0100352mbedtls_x509_time_is_future:"data_files/test-ca2.crt":"valid_from":0
Manuel Pégourié-Gonnard6304f782014-03-10 12:26:11 +0100353
354X509 Time Future #6
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200355depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_HAVE_TIME_DATE:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardc730ed32015-06-02 10:38:50 +0100356mbedtls_x509_time_is_future:"data_files/test-ca2.crt":"valid_to":1
Manuel Pégourié-Gonnard6304f782014-03-10 12:26:11 +0100357
Manuel Pégourié-Gonnard95337652014-03-10 13:15:18 +0100358X509 Certificate verification #1 (Revoked Cert, Expired CRL, no CN)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200359depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200360x509_verify:"data_files/server1.crt":"data_files/test-ca.crt":"data_files/crl_expired.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED | MBEDTLS_X509_BADCRL_EXPIRED:"compat":"NULL"
Paul Bakker37940d9f2009-07-10 22:38:58 +0000361
Manuel Pégourié-Gonnard95337652014-03-10 13:15:18 +0100362X509 Certificate verification #1a (Revoked Cert, Future CRL, no CN)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200363depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200364x509_verify:"data_files/server6.crt":"data_files/test-ca2.crt":"data_files/crl-future.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED | MBEDTLS_X509_BADCRL_FUTURE:"compat":"NULL"
Manuel Pégourié-Gonnard95337652014-03-10 13:15:18 +0100365
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000366X509 Certificate verification #2 (Revoked Cert, Expired CRL)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200367depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200368x509_verify:"data_files/server1.crt":"data_files/test-ca.crt":"data_files/crl_expired.pem":"PolarSSL Server 1":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED | MBEDTLS_X509_BADCRL_EXPIRED:"compat":"NULL"
Paul Bakker37940d9f2009-07-10 22:38:58 +0000369
Manuel Pégourié-Gonnard95337652014-03-10 13:15:18 +0100370X509 Certificate verification #2a (Revoked Cert, Future CRL)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200371depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200372x509_verify:"data_files/server6.crt":"data_files/test-ca2.crt":"data_files/crl-future.pem":"localhost":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED | MBEDTLS_X509_BADCRL_FUTURE:"compat":"NULL"
Manuel Pégourié-Gonnard95337652014-03-10 13:15:18 +0100373
374X509 Certificate verification #3 (Revoked Cert, Future CRL, CN Mismatch)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200375depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200376x509_verify:"data_files/server1.crt":"data_files/test-ca.crt":"data_files/crl_expired.pem":"PolarSSL Wrong CN":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED | MBEDTLS_X509_BADCRL_EXPIRED | MBEDTLS_X509_BADCERT_CN_MISMATCH:"compat":"NULL"
Paul Bakker37940d9f2009-07-10 22:38:58 +0000377
Manuel Pégourié-Gonnard95337652014-03-10 13:15:18 +0100378X509 Certificate verification #3a (Revoked Cert, Expired CRL, CN Mismatch)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200379depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200380x509_verify:"data_files/server6.crt":"data_files/test-ca2.crt":"data_files/crl-future.pem":"Wrong CN":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED | MBEDTLS_X509_BADCRL_FUTURE | MBEDTLS_X509_BADCERT_CN_MISMATCH:"compat":"NULL"
Manuel Pégourié-Gonnard95337652014-03-10 13:15:18 +0100381
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000382X509 Certificate verification #4 (Valid Cert, Expired CRL)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200383depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200384x509_verify:"data_files/server2.crt":"data_files/test-ca.crt":"data_files/crl_expired.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCRL_EXPIRED:"compat":"NULL"
Paul Bakker37940d9f2009-07-10 22:38:58 +0000385
Manuel Pégourié-Gonnard95337652014-03-10 13:15:18 +0100386X509 Certificate verification #4a (Revoked Cert, Future CRL)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200387depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200388x509_verify:"data_files/server5.crt":"data_files/test-ca2.crt":"data_files/crl-future.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCRL_FUTURE:"compat":"NULL"
Manuel Pégourié-Gonnard95337652014-03-10 13:15:18 +0100389
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000390X509 Certificate verification #5 (Revoked Cert)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200391depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200392x509_verify:"data_files/server1.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED:"compat":"NULL"
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000393
394X509 Certificate verification #6 (Revoked Cert)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200395depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200396x509_verify:"data_files/server1.crt":"data_files/test-ca.crt":"data_files/crl.pem":"PolarSSL Server 1":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED:"compat":"NULL"
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000397
398X509 Certificate verification #7 (Revoked Cert, CN Mismatch)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200399depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200400x509_verify:"data_files/server1.crt":"data_files/test-ca.crt":"data_files/crl.pem":"PolarSSL Wrong CN":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED | MBEDTLS_X509_BADCERT_CN_MISMATCH:"compat":"NULL"
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000401
402X509 Certificate verification #8 (Valid Cert)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200403depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200404x509_verify:"data_files/server5.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha1.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard95337652014-03-10 13:15:18 +0100405
406X509 Certificate verification #8a (Expired Cert)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200407depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200408x509_verify:"data_files/server5-expired.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha1.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_EXPIRED:"compat":"NULL"
Manuel Pégourié-Gonnard95337652014-03-10 13:15:18 +0100409
410X509 Certificate verification #8b (Future Cert)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200411depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200412x509_verify:"data_files/server5-future.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha1.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_FUTURE:"compat":"NULL"
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000413
Manuel Pégourié-Gonnard29d60fb2017-06-05 10:20:32 +0200414X509 Certificate verification #8c (Expired Cert, longer chain)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200415depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Manuel Pégourié-Gonnard29d60fb2017-06-05 10:20:32 +0200416x509_verify:"data_files/server7-expired.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha1.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_EXPIRED:"compat":"NULL"
417
418X509 Certificate verification #8d (Future Cert, longer chain)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200419depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Manuel Pégourié-Gonnard29d60fb2017-06-05 10:20:32 +0200420x509_verify:"data_files/server7-future.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha1.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_FUTURE:"compat":"NULL"
421
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000422X509 Certificate verification #9 (Not trusted Cert)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200423depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200424x509_verify:"data_files/server2.crt":"data_files/server1.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000425
426X509 Certificate verification #10 (Not trusted Cert, Expired CRL)
palaviva07ecda2016-08-07 11:15:29 +0300427depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200428x509_verify:"data_files/server2.crt":"data_files/server1.crt":"data_files/crl_expired.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Paul Bakker37940d9f2009-07-10 22:38:58 +0000429
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000430X509 Certificate verification #12 (Valid Cert MD4 Digest)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200431depends_on:MBEDTLS_MD4_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200432x509_verify:"data_files/cert_md4.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_BAD_MD:"compat":"NULL"
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000433
434X509 Certificate verification #13 (Valid Cert MD5 Digest)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200435depends_on:MBEDTLS_MD5_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200436x509_verify:"data_files/cert_md5.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_BAD_MD:"compat":"NULL"
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000437
Gilles Peskineef86ab22017-05-05 18:59:02 +0200438X509 Certificate verification #14 (Valid Cert SHA1 Digest explicitly allowed in profile)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200439depends_on:MBEDTLS_SHA1_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200440x509_verify:"data_files/cert_sha1.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000441
Gilles Peskine4fa6bed2017-05-11 16:41:25 +0200442X509 Certificate verification #14 (Valid Cert SHA1 Digest allowed in compile-time default profile)
Gilles Peskine5d2511c2017-05-12 13:16:40 +0200443depends_on:MBEDTLS_SHA1_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_TLS_DEFAULT_ALLOW_SHA1_IN_CERTIFICATES
Manuel Pégourié-Gonnarda54f6cc2017-08-09 10:41:42 +0200444x509_verify:"data_files/cert_sha1.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":0:0:"":"NULL"
Gilles Peskine4fa6bed2017-05-11 16:41:25 +0200445
Gilles Peskine2dc81a02017-05-05 19:00:39 +0200446X509 Certificate verification #14 (Valid Cert SHA1 Digest forbidden in default profile)
Gilles Peskinef11d33b2017-05-22 16:47:22 +0200447depends_on:MBEDTLS_SHA1_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:!MBEDTLS_TLS_DEFAULT_ALLOW_SHA1_IN_CERTIFICATES
Manuel Pégourié-Gonnarda54f6cc2017-08-09 10:41:42 +0200448x509_verify:"data_files/cert_sha1.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCRL_BAD_MD | MBEDTLS_X509_BADCERT_BAD_MD:"":"NULL"
Gilles Peskine2dc81a02017-05-05 19:00:39 +0200449
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000450X509 Certificate verification #15 (Valid Cert SHA224 Digest)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200451depends_on:MBEDTLS_SHA256_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200452x509_verify:"data_files/cert_sha224.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000453
454X509 Certificate verification #16 (Valid Cert SHA256 Digest)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200455depends_on:MBEDTLS_SHA256_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200456x509_verify:"data_files/cert_sha256.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000457
458X509 Certificate verification #17 (Valid Cert SHA384 Digest)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200459depends_on:MBEDTLS_SHA512_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200460x509_verify:"data_files/cert_sha384.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000461
462X509 Certificate verification #18 (Valid Cert SHA512 Digest)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200463depends_on:MBEDTLS_SHA512_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200464x509_verify:"data_files/cert_sha512.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000465
466X509 Certificate verification #19 (Valid Cert, denying callback)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200467depends_on:MBEDTLS_SHA512_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200468x509_verify:"data_files/cert_sha512.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_OTHER:"compat":"verify_none"
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000469
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200470X509 Certificate verification #19 (Not trusted Cert, allowing callback)
palaviva07ecda2016-08-07 11:15:29 +0300471depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200472x509_verify:"data_files/server2.crt":"data_files/server1.crt":"data_files/crl_expired.pem":"NULL":0:0:"compat":"verify_all"
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000473
Paul Bakkera5943852013-09-09 17:21:45 +0200474X509 Certificate verification #21 (domain matching wildcard certificate, case insensitive)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200475depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200476x509_verify:"data_files/cert_example_wildcard.crt":"data_files/test-ca.crt":"data_files/crl.pem":"mail.ExAmPlE.com":0:0:"compat":"NULL"
Paul Bakkera8cd2392012-02-11 16:09:32 +0000477
478X509 Certificate verification #22 (domain not matching wildcard certificate)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200479depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200480x509_verify:"data_files/cert_example_wildcard.crt":"data_files/test-ca.crt":"data_files/crl.pem":"mail.example.net":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_CN_MISMATCH:"compat":"NULL"
Paul Bakkera8cd2392012-02-11 16:09:32 +0000481
482X509 Certificate verification #23 (domain not matching wildcard certificate)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200483depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200484x509_verify:"data_files/cert_example_wildcard.crt":"data_files/test-ca.crt":"data_files/crl.pem":"example.com":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_CN_MISMATCH:"compat":"NULL"
Paul Bakkera8cd2392012-02-11 16:09:32 +0000485
Paul Bakker4d2c1242012-05-10 14:12:46 +0000486X509 Certificate verification #24 (domain matching CN of multi certificate)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200487depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200488x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"www.example.com":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_CN_MISMATCH:"compat":"NULL"
Paul Bakkera8cd2392012-02-11 16:09:32 +0000489
490X509 Certificate verification #25 (domain matching multi certificate)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200491depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200492x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"example.net":0:0:"compat":"NULL"
Paul Bakkera8cd2392012-02-11 16:09:32 +0000493
494X509 Certificate verification #26 (domain not matching multi certificate)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200495depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200496x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"www.example.net":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_CN_MISMATCH:"compat":"NULL"
Paul Bakkera8cd2392012-02-11 16:09:32 +0000497
498X509 Certificate verification #27 (domain not matching multi certificate)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200499depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200500x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"xample.net":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_CN_MISMATCH:"compat":"NULL"
Paul Bakkera8cd2392012-02-11 16:09:32 +0000501
502X509 Certificate verification #27 (domain not matching multi certificate)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200503depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200504x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"bexample.net":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_CN_MISMATCH:"compat":"NULL"
Paul Bakkera8cd2392012-02-11 16:09:32 +0000505
Paul Bakker57b12982012-02-11 17:38:38 +0000506X509 Certificate verification #28 (domain not matching wildcard in multi certificate)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200507depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200508x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"example.org":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_CN_MISMATCH:"compat":"NULL"
Paul Bakker57b12982012-02-11 17:38:38 +0000509
510X509 Certificate verification #29 (domain matching wildcard in multi certificate)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200511depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200512x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"mail.example.org":0:0:"compat":"NULL"
Paul Bakker57b12982012-02-11 17:38:38 +0000513
Paul Bakker91956622012-08-23 10:46:54 +0000514X509 Certificate verification #30 (domain matching multi certificate without CN)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200515depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200516x509_verify:"data_files/cert_example_multi_nocn.crt":"data_files/test-ca.crt":"data_files/crl.pem":"www.shotokan-braunschweig.de":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Paul Bakker91956622012-08-23 10:46:54 +0000517
518X509 Certificate verification #31 (domain not matching multi certificate without CN)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200519depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200520x509_verify:"data_files/cert_example_multi_nocn.crt":"data_files/test-ca.crt":"data_files/crl.pem":"www.example.net":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_CN_MISMATCH + MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Paul Bakker91956622012-08-23 10:46:54 +0000521
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200522X509 Certificate verification #32 (Valid, EC cert, RSA CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200523depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP192R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200524x509_verify:"data_files/server3.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard6009c3a2013-08-09 11:27:14 +0200525
526X509 Certificate verification #33 (Valid, RSA cert, EC CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200527depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Gilles Peskineef86ab22017-05-05 18:59:02 +0200528x509_verify:"data_files/server4.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard6009c3a2013-08-09 11:27:14 +0200529
530X509 Certificate verification #34 (Valid, EC cert, EC CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200531depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Gilles Peskineef86ab22017-05-05 18:59:02 +0200532x509_verify:"data_files/server5.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard6009c3a2013-08-09 11:27:14 +0200533
534X509 Certificate verification #35 (Revoked, EC CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200535depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Gilles Peskineef86ab22017-05-05 18:59:02 +0200536x509_verify:"data_files/server6.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED:"compat":"NULL"
Manuel Pégourié-Gonnard6009c3a2013-08-09 11:27:14 +0200537
Manuel Pégourié-Gonnardcc648d12013-09-24 18:57:09 +0200538X509 Certificate verification #36 (Valid, EC CA, SHA1 Digest)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200539depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200540x509_verify:"data_files/server5-sha1.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard6009c3a2013-08-09 11:27:14 +0200541
Manuel Pégourié-Gonnardcc648d12013-09-24 18:57:09 +0200542X509 Certificate verification #37 (Valid, EC CA, SHA224 Digest)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200543depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Gilles Peskineef86ab22017-05-05 18:59:02 +0200544x509_verify:"data_files/server5-sha224.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard6009c3a2013-08-09 11:27:14 +0200545
546X509 Certificate verification #38 (Valid, EC CA, SHA384 Digest)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200547depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_SHA512_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Gilles Peskineef86ab22017-05-05 18:59:02 +0200548x509_verify:"data_files/server5-sha384.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard6009c3a2013-08-09 11:27:14 +0200549
550X509 Certificate verification #39 (Valid, EC CA, SHA512 Digest)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200551depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_SHA512_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Gilles Peskineef86ab22017-05-05 18:59:02 +0200552x509_verify:"data_files/server5-sha512.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200553
554X509 Certificate verification #40 (Valid, depth 0, RSA, CA)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200555depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200556x509_verify:"data_files/test-ca.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200557
558X509 Certificate verification #41 (Valid, depth 0, EC, CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200559depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200560x509_verify:"data_files/test-ca2.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200561
562X509 Certificate verification #42 (Depth 0, not CA, RSA)
palaviva07ecda2016-08-07 11:15:29 +0300563depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200564x509_verify:"data_files/server2.crt":"data_files/server2.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200565
566X509 Certificate verification #43 (Depth 0, not CA, EC)
palaviva07ecda2016-08-07 11:15:29 +0300567depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200568x509_verify:"data_files/server5.crt":"data_files/server5.crt":"data_files/crl-ec-sha256.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200569
570X509 Certificate verification #44 (Corrupted signature, EC)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200571depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200572x509_verify:"data_files/server5-badsign.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200573
574X509 Certificate verification #45 (Corrupted signature, RSA)
palaviva07ecda2016-08-07 11:15:29 +0300575depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200576x509_verify:"data_files/server2-badsign.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200577
Manuel Pégourié-Gonnard4dfc04a2017-06-05 11:12:13 +0200578X509 Certificate verification #45b (Corrupted signature, intermediate CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200579depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard4dfc04a2017-06-05 11:12:13 +0200580x509_verify:"data_files/server7-badsign.crt":"data_files/test-ca2.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
581
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200582X509 Certificate verification #46 (Valid, depth 2, EC-RSA-EC)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200583depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200584x509_verify:"data_files/server7_int-ca.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200585
586X509 Certificate verification #47 (Untrusted, depth 2, EC-RSA-EC)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200587depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200588x509_verify:"data_files/server7_int-ca.crt":"data_files/test-ca.crt":"data_files/crl-ec-sha256.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200589
590X509 Certificate verification #48 (Missing intermediate CA, EC-RSA-EC)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200591depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200592x509_verify:"data_files/server7.crt":"data_files/test-ca.crt":"data_files/crl-ec-sha256.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200593
594X509 Certificate verification #49 (Valid, depth 2, RSA-EC-RSA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200595depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200596x509_verify:"data_files/server8_int-ca2.crt":"data_files/test-ca.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200597
598X509 Certificate verification #50 (Valid, multiple CAs)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200599depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200600x509_verify:"data_files/server2.crt":"data_files/test-ca_cat12.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnardb4e9ca92013-08-10 10:52:01 +0200601
602X509 Certificate verification #51 (Valid, multiple CAs, reverse order)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200603depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200604x509_verify:"data_files/server2.crt":"data_files/test-ca_cat21.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard6009c3a2013-08-09 11:27:14 +0200605
Manuel Pégourié-Gonnard99d4f192014-04-08 15:10:07 +0200606X509 Certificate verification #52 (CA keyUsage valid)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200607depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Gilles Peskineef86ab22017-05-05 18:59:02 +0200608x509_verify:"data_files/server5.crt":"data_files/test-ca2.ku-crt_crl.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard99d4f192014-04-08 15:10:07 +0200609
610X509 Certificate verification #53 (CA keyUsage missing cRLSign)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200611depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_X509_CHECK_KEY_USAGE:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Gilles Peskineef86ab22017-05-05 18:59:02 +0200612x509_verify:"data_files/server5.crt":"data_files/test-ca2.ku-crt.crt":"data_files/crl-ec-sha256.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCRL_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnard99d4f192014-04-08 15:10:07 +0200613
614X509 Certificate verification #54 (CA keyUsage missing cRLSign, no CRL)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200615depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_RSA_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200616x509_verify:"data_files/server5.crt":"data_files/test-ca2.ku-crt.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard99d4f192014-04-08 15:10:07 +0200617
618X509 Certificate verification #55 (CA keyUsage missing keyCertSign)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200619depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_X509_CHECK_KEY_USAGE:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Gilles Peskineef86ab22017-05-05 18:59:02 +0200620x509_verify:"data_files/server5.crt":"data_files/test-ca2.ku-crl.crt":"data_files/crl-ec-sha256.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnard99d4f192014-04-08 15:10:07 +0200621
Manuel Pégourié-Gonnardec4d2732014-04-29 14:06:23 +0200622X509 Certificate verification #56 (CA keyUsage plain wrong)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200623depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_X509_CHECK_KEY_USAGE:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Gilles Peskineef86ab22017-05-05 18:59:02 +0200624x509_verify:"data_files/server5.crt":"data_files/test-ca2.ku-ds.crt":"data_files/crl-ec-sha256.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnard99d4f192014-04-08 15:10:07 +0200625
Manuel Pégourié-Gonnard920e1cd2014-06-02 18:11:07 +0200626X509 Certificate verification #57 (Valid, RSASSA-PSS, SHA-1)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200627depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA1_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200628x509_verify:"data_files/server9.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard920e1cd2014-06-02 18:11:07 +0200629
630X509 Certificate verification #58 (Valid, RSASSA-PSS, SHA-224)
palaviva07ecda2016-08-07 11:15:29 +0300631depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200632x509_verify:"data_files/server9-sha224.crt":"data_files/test-ca.crt":"data_files/crl-rsa-pss-sha224.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard920e1cd2014-06-02 18:11:07 +0200633
634X509 Certificate verification #59 (Valid, RSASSA-PSS, SHA-256)
palaviva07ecda2016-08-07 11:15:29 +0300635depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200636x509_verify:"data_files/server9-sha256.crt":"data_files/test-ca.crt":"data_files/crl-rsa-pss-sha256.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard920e1cd2014-06-02 18:11:07 +0200637
638X509 Certificate verification #60 (Valid, RSASSA-PSS, SHA-384)
palaviva07ecda2016-08-07 11:15:29 +0300639depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA512_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200640x509_verify:"data_files/server9-sha384.crt":"data_files/test-ca.crt":"data_files/crl-rsa-pss-sha384.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard920e1cd2014-06-02 18:11:07 +0200641
642X509 Certificate verification #61 (Valid, RSASSA-PSS, SHA-512)
palaviva07ecda2016-08-07 11:15:29 +0300643depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA512_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200644x509_verify:"data_files/server9-sha512.crt":"data_files/test-ca.crt":"data_files/crl-rsa-pss-sha512.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard920e1cd2014-06-02 18:11:07 +0200645
Manuel Pégourié-Gonnard53882022014-06-05 17:53:52 +0200646X509 Certificate verification #62 (Revoked, RSASSA-PSS, SHA-1)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200647depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200648x509_verify:"data_files/server9.crt":"data_files/test-ca.crt":"data_files/crl-rsa-pss-sha1.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED:"compat":"NULL"
Manuel Pégourié-Gonnard53882022014-06-05 17:53:52 +0200649
650X509 Certificate verification #63 (Revoked, RSASSA-PSS, SHA-1, CRL badsign)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200651depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200652x509_verify:"data_files/server9.crt":"data_files/test-ca.crt":"data_files/crl-rsa-pss-sha1-badsign.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCRL_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnard53882022014-06-05 17:53:52 +0200653
654X509 Certificate verification #64 (Valid, RSASSA-PSS, SHA-1, not top)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200655depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200656x509_verify:"data_files/server9-with-ca.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard920e1cd2014-06-02 18:11:07 +0200657
Manuel Pégourié-Gonnard53882022014-06-05 17:53:52 +0200658X509 Certificate verification #65 (RSASSA-PSS, SHA1, bad cert signature)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200659depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200660x509_verify:"data_files/server9-badsign.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnard920e1cd2014-06-02 18:11:07 +0200661
Manuel Pégourié-Gonnard53882022014-06-05 17:53:52 +0200662X509 Certificate verification #66 (RSASSA-PSS, SHA1, no RSA CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200663depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA1_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200664x509_verify:"data_files/server9.crt":"data_files/test-ca2.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnard920e1cd2014-06-02 18:11:07 +0200665
Manuel Pégourié-Gonnardeacccb72014-06-05 18:00:08 +0200666X509 Certificate verification #67 (Valid, RSASSA-PSS, all defaults)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200667depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200668x509_verify:"data_files/server9-defaults.crt":"data_files/test-ca.crt":"data_files/crl-rsa-pss-sha1.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnardeacccb72014-06-05 18:00:08 +0200669
Manuel Pégourié-Gonnard5873b002014-06-06 18:04:09 +0200670X509 Certificate verification #68 (RSASSA-PSS, wrong salt_len)
palaviva07ecda2016-08-07 11:15:29 +0300671depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200672x509_verify:"data_files/server9-bad-saltlen.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnard5873b002014-06-06 18:04:09 +0200673
674X509 Certificate verification #69 (RSASSA-PSS, wrong mgf_hash)
palaviva07ecda2016-08-07 11:15:29 +0300675depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_X509_RSASSA_PSS_SUPPORT:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200676x509_verify:"data_files/server9-bad-mgfhash.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnard5873b002014-06-06 18:04:09 +0200677
Manuel Pégourié-Gonnardc4eff162014-06-19 12:18:08 +0200678X509 Certificate verification #70 (v1 trusted CA)
palaviva07ecda2016-08-07 11:15:29 +0300679depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200680x509_verify:"data_files/server1-v1.crt":"data_files/test-ca-v1.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnardc4eff162014-06-19 12:18:08 +0200681
682X509 Certificate verification #71 (v1 trusted CA, other)
palaviva07ecda2016-08-07 11:15:29 +0300683depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200684x509_verify:"data_files/server2-v1.crt":"data_files/server1-v1.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnardc4eff162014-06-19 12:18:08 +0200685
686X509 Certificate verification #72 (v1 chain)
palaviva07ecda2016-08-07 11:15:29 +0300687depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200688x509_verify:"data_files/server2-v1-chain.crt":"data_files/test-ca-v1.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnardc4eff162014-06-19 12:18:08 +0200689
Manuel Pégourié-Gonnardd249b7a2014-06-24 11:49:16 +0200690X509 Certificate verification #73 (selfsigned trusted without CA bit)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200691depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_RSA_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200692x509_verify:"data_files/server5-selfsigned.crt":"data_files/server5-selfsigned.crt":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnardd249b7a2014-06-24 11:49:16 +0200693
694X509 Certificate verification #74 (signed by selfsigned trusted without CA bit)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200695depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_RSA_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200696x509_verify:"data_files/server6-ss-child.crt":"data_files/server5-selfsigned.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"compat":"NULL"
Manuel Pégourié-Gonnardd249b7a2014-06-24 11:49:16 +0200697
Manuel Pégourié-Gonnard9c911da2014-10-17 12:23:49 +0200698X509 Certificate verification #75 (encoding mismatch)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200699depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Gilles Peskineef86ab22017-05-05 18:59:02 +0200700x509_verify:"data_files/enco-cert-utf8str.pem":"data_files/enco-ca-prstr.pem":"data_files/crl.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard9c911da2014-10-17 12:23:49 +0200701
Manuel Pégourié-Gonnard57a5d602014-11-19 14:04:09 +0100702X509 Certificate verification #76 (multiple CRLs, not revoked)
palaviva07ecda2016-08-07 11:15:29 +0300703depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200704x509_verify:"data_files/server5.crt":"data_files/test-ca_cat12.crt":"data_files/crl_cat_ec-rsa.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard57a5d602014-11-19 14:04:09 +0100705
706X509 Certificate verification #77 (multiple CRLs, revoked)
palaviva07ecda2016-08-07 11:15:29 +0300707depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200708x509_verify:"data_files/server6.crt":"data_files/test-ca_cat12.crt":"data_files/crl_cat_ec-rsa.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED:"compat":"NULL"
Manuel Pégourié-Gonnard57a5d602014-11-19 14:04:09 +0100709
710X509 Certificate verification #78 (multiple CRLs, revoked by second)
palaviva07ecda2016-08-07 11:15:29 +0300711depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200712x509_verify:"data_files/server6.crt":"data_files/test-ca_cat12.crt":"data_files/crl_cat_rsa-ec.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED:"compat":"NULL"
Manuel Pégourié-Gonnard57a5d602014-11-19 14:04:09 +0100713
714X509 Certificate verification #79 (multiple CRLs, revoked by future)
palaviva07ecda2016-08-07 11:15:29 +0300715depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200716x509_verify:"data_files/server6.crt":"data_files/test-ca_cat12.crt":"data_files/crl_cat_ecfut-rsa.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED|MBEDTLS_X509_BADCRL_FUTURE:"compat":"NULL"
Manuel Pégourié-Gonnard57a5d602014-11-19 14:04:09 +0100717
718X509 Certificate verification #80 (multiple CRLs, first future, revoked by second)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200719depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200720x509_verify:"data_files/server1.crt":"data_files/test-ca_cat12.crt":"data_files/crl_cat_ecfut-rsa.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_REVOKED:"compat":"NULL"
Manuel Pégourié-Gonnard57a5d602014-11-19 14:04:09 +0100721
722X509 Certificate verification #81 (multiple CRLs, none relevant)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200723depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200724x509_verify:"data_files/enco-cert-utf8str.pem":"data_files/enco-ca-prstr.pem":"data_files/crl_cat_rsa-ec.pem":"NULL":0:0:"compat":"NULL"
Manuel Pégourié-Gonnard57a5d602014-11-19 14:04:09 +0100725
Janos Follath12c868c2016-02-18 17:28:04 +0000726X509 Certificate verification #82 (Not yet valid CA and valid CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200727depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200728x509_verify:"data_files/server5.crt":"data_files/test-ca2_cat-future-present.crt":"data_files/crl-ec-sha1.pem":"NULL":0:0:"compat":"NULL"
Janos Follath12c868c2016-02-18 17:28:04 +0000729
730X509 Certificate verification #83 (valid CA and Not yet valid CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200731depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200732x509_verify:"data_files/server5.crt":"data_files/test-ca2_cat-present-future.crt":"data_files/crl-ec-sha1.pem":"NULL":0:0:"compat":"NULL"
Janos Follath12c868c2016-02-18 17:28:04 +0000733
Janos Follathdf4bca22016-02-19 15:57:17 +0000734X509 Certificate verification #84 (valid CA and Not yet valid CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200735depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200736x509_verify:"data_files/server5.crt":"data_files/test-ca2_cat-present-past.crt":"data_files/crl-ec-sha1.pem":"NULL":0:0:"compat":"NULL"
Janos Follathdf4bca22016-02-19 15:57:17 +0000737
738X509 Certificate verification #85 (Not yet valid CA and valid CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200739depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200740x509_verify:"data_files/server5.crt":"data_files/test-ca2_cat-past-present.crt":"data_files/crl-ec-sha1.pem":"NULL":0:0:"compat":"NULL"
Janos Follathdf4bca22016-02-19 15:57:17 +0000741
Andres AG9f430c12016-12-13 09:59:07 +0000742X509 Certificate verification #86 (Not yet valid CA and invalid CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200743depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200744x509_verify:"data_files/server5.crt":"data_files/test-ca2_cat-future-invalid.crt":"data_files/crl-ec-sha1.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_FUTURE:"compat":"NULL"
Andres AG9f430c12016-12-13 09:59:07 +0000745
746X509 Certificate verification #87 (Expired CA and invalid CA)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200747depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_SHA256_C
Gilles Peskineef86ab22017-05-05 18:59:02 +0200748x509_verify:"data_files/server5.crt":"data_files/test-ca2_cat-past-invalid.crt":"data_files/crl-ec-sha1.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_EXPIRED:"compat":"NULL"
Andres AG9f430c12016-12-13 09:59:07 +0000749
Manuel Pégourié-Gonnardb341dd52017-06-06 10:25:43 +0200750X509 Certificate verification #88 (Spurious cert in the chain)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200751depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Manuel Pégourié-Gonnardb341dd52017-06-06 10:25:43 +0200752x509_verify:"data_files/server7_spurious_int-ca.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha1.pem":"NULL":0:0:"compat":"NULL"
753
754X509 Certificate verification #89 (Spurious cert later in the chain)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200755depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Manuel Pégourié-Gonnardb341dd52017-06-06 10:25:43 +0200756x509_verify:"data_files/server10_int3_spurious_int-ca2.crt":"data_files/test-ca.crt":"data_files/crl-ec-sha1.pem":"NULL":0:0:"compat":"NULL"
757
Manuel Pégourié-Gonnardc10afdb2017-06-29 09:48:08 +0200758X509 Certificate verification #90 (EE with same name as trusted root)
759depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnarda54f6cc2017-08-09 10:41:42 +0200760x509_verify:"data_files/server5-ss-forgeca.crt":"data_files/test-int-ca3.crt":"data_files/crl-ec-sha1.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED:"":"NULL"
Manuel Pégourié-Gonnardc10afdb2017-06-29 09:48:08 +0200761
Manuel Pégourié-Gonnard2d825d42017-07-03 18:06:38 +0200762X509 Certificate verification #91 (same CA with good then bad key)
763depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C
764x509_verify:"data_files/server1.crt":"data_files/test-ca-good-alt.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"compat":"NULL"
765
766X509 Certificate verification #91 (same CA with bad then good key)
767depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C
768x509_verify:"data_files/server1.crt":"data_files/test-ca-alt-good.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"compat":"NULL"
769
Manuel Pégourié-Gonnarda6568252017-07-05 18:14:38 +0200770X509 Certificate verification #92 (bad name, allowing callback)
771depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Manuel Pégourié-Gonnarda54f6cc2017-08-09 10:41:42 +0200772x509_verify:"data_files/server5.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"globalhost":0:0:"":"verify_all"
Manuel Pégourié-Gonnarda6568252017-07-05 18:14:38 +0200773
Manuel Pégourié-Gonnard05e464d2018-03-05 11:55:38 +0100774X509 Certificate verification #93 (Suite B invalid, EC cert, RSA CA)
Ron Eldorc1539982018-02-06 18:47:17 +0200775depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_ECP_C:MBEDTLS_ECP_DP_SECP192R1_ENABLED:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C
776x509_verify:"data_files/server3.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_BAD_MD|MBEDTLS_X509_BADCERT_BAD_PK|MBEDTLS_X509_BADCERT_BAD_KEY|MBEDTLS_X509_BADCRL_BAD_MD|MBEDTLS_X509_BADCRL_BAD_PK:"suite_b":"NULL"
777
Manuel Pégourié-Gonnard05e464d2018-03-05 11:55:38 +0100778X509 Certificate verification #94 (Suite B invalid, RSA cert, EC CA)
Ron Eldorc1539982018-02-06 18:47:17 +0200779depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_ECP_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_PKCS1_V15:MBEDTLS_ECP_DP_SECP384R1_ENABLED
780x509_verify:"data_files/server4.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_BAD_PK:"suite_b":"NULL"
781
Manuel Pégourié-Gonnard05e464d2018-03-05 11:55:38 +0100782X509 Certificate verification #95 (Suite B Valid, EC cert, EC CA)
Ron Eldorc1539982018-02-06 18:47:17 +0200783depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECP_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
784x509_verify:"data_files/server5.crt":"data_files/test-ca2.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"suite_b":"NULL"
785
Manuel Pégourié-Gonnard05e464d2018-03-05 11:55:38 +0100786X509 Certificate verification #96 (next profile Invalid Cert SHA224 Digest)
Ron Eldorc1539982018-02-06 18:47:17 +0200787depends_on:MBEDTLS_SHA256_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
788x509_verify:"data_files/cert_sha224.crt":"data_files/test-ca.crt":"data_files/crl.pem":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_BAD_MD|MBEDTLS_X509_BADCRL_BAD_MD:"next":"NULL"
789
Manuel Pégourié-Gonnard05e464d2018-03-05 11:55:38 +0100790X509 Certificate verification #97 (next profile Valid Cert SHA256 Digest)
Ron Eldorc1539982018-02-06 18:47:17 +0200791depends_on:MBEDTLS_SHA256_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
792x509_verify:"data_files/cert_sha256.crt":"data_files/test-ca.crt":"data_files/crl-ec-sha256.pem":"NULL":0:0:"next":"NULL"
793
Manuel Pégourié-Gonnarda6568252017-07-05 18:14:38 +0200794X509 Certificate verification callback: bad name
795depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200796x509_verify_callback:"data_files/server5.crt":"data_files/test-ca2.crt":"globalhost":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"depth 1 - serial C1\:43\:E2\:7E\:62\:43\:CC\:E8 - subject C=NL, O=PolarSSL, CN=Polarssl Test EC CA - flags 0x00000000\ndepth 0 - serial 09 - subject C=NL, O=PolarSSL, CN=localhost - flags 0x00000004\n"
Manuel Pégourié-Gonnarda6568252017-07-05 18:14:38 +0200797
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200798X509 Certificate verification callback: trusted EE cert
799depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200800x509_verify_callback:"data_files/server5-selfsigned.crt":"data_files/server5-selfsigned.crt":"NULL":0:"depth 0 - serial 53\:A2\:CB\:4B\:12\:4E\:AD\:83\:7D\:A8\:94\:B2 - subject CN=selfsigned, OU=testing, O=PolarSSL, C=NL - flags 0x00000000\n"
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200801
Manuel Pégourié-Gonnardbc313012017-06-27 12:51:52 +0200802X509 Certificate verification callback: trusted EE cert, expired
803depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200804x509_verify_callback:"data_files/server5-ss-expired.crt":"data_files/server5-ss-expired.crt":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"depth 0 - serial D8\:64\:61\:05\:E3\:A3\:CD\:78 - subject C=UK, O=mbed TLS, OU=testsuite, CN=localhost - flags 0x00000001\n"
Manuel Pégourié-Gonnardbc313012017-06-27 12:51:52 +0200805
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200806X509 Certificate verification callback: simple
807depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200808x509_verify_callback:"data_files/server1.crt":"data_files/test-ca.crt":"NULL":0:"depth 1 - serial 00 - subject C=NL, O=PolarSSL, CN=PolarSSL Test CA - flags 0x00000000\ndepth 0 - serial 01 - subject C=NL, O=PolarSSL, CN=PolarSSL Server 1 - flags 0x00000000\n"
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200809
Manuel Pégourié-Gonnardbc313012017-06-27 12:51:52 +0200810X509 Certificate verification callback: simple, EE expired
811depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200812x509_verify_callback:"data_files/server5-expired.crt":"data_files/test-ca2.crt":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"depth 1 - serial C1\:43\:E2\:7E\:62\:43\:CC\:E8 - subject C=NL, O=PolarSSL, CN=Polarssl Test EC CA - flags 0x00000000\ndepth 0 - serial 1E - subject C=NL, O=PolarSSL, CN=localhost - flags 0x00000001\n"
Manuel Pégourié-Gonnardbc313012017-06-27 12:51:52 +0200813
814X509 Certificate verification callback: simple, root expired
815depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200816x509_verify_callback:"data_files/server5.crt":"data_files/test-ca2-expired.crt":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"depth 1 - serial 01 - subject C=NL, O=PolarSSL, CN=Polarssl Test EC CA - flags 0x00000001\ndepth 0 - serial 09 - subject C=NL, O=PolarSSL, CN=localhost - flags 0x00000000\n"
Manuel Pégourié-Gonnardbc313012017-06-27 12:51:52 +0200817
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200818X509 Certificate verification callback: two trusted roots
palaviva07ecda2016-08-07 11:15:29 +0300819depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200820x509_verify_callback:"data_files/server1.crt":"data_files/test-ca_cat12.crt":"NULL":0:"depth 1 - serial 00 - subject C=NL, O=PolarSSL, CN=PolarSSL Test CA - flags 0x00000000\ndepth 0 - serial 01 - subject C=NL, O=PolarSSL, CN=PolarSSL Server 1 - flags 0x00000000\n"
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200821
822X509 Certificate verification callback: two trusted roots, reversed order
palaviva07ecda2016-08-07 11:15:29 +0300823depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200824x509_verify_callback:"data_files/server1.crt":"data_files/test-ca_cat21.crt":"NULL":0:"depth 1 - serial 00 - subject C=NL, O=PolarSSL, CN=PolarSSL Test CA - flags 0x00000000\ndepth 0 - serial 01 - subject C=NL, O=PolarSSL, CN=PolarSSL Server 1 - flags 0x00000000\n"
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200825
826X509 Certificate verification callback: root included
palaviva07ecda2016-08-07 11:15:29 +0300827depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200828x509_verify_callback:"data_files/server1_ca.crt":"data_files/test-ca_cat21.crt":"NULL":0:"depth 1 - serial 00 - subject C=NL, O=PolarSSL, CN=PolarSSL Test CA - flags 0x00000000\ndepth 0 - serial 01 - subject C=NL, O=PolarSSL, CN=PolarSSL Server 1 - flags 0x00000000\n"
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200829
830X509 Certificate verification callback: intermediate ca
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200831depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200832x509_verify_callback:"data_files/server7_int-ca.crt":"data_files/test-ca_cat12.crt":"NULL":0:"depth 2 - serial C1\:43\:E2\:7E\:62\:43\:CC\:E8 - subject C=NL, O=PolarSSL, CN=Polarssl Test EC CA - flags 0x00000000\ndepth 1 - serial 0E - subject C=NL, O=PolarSSL, CN=PolarSSL Test Intermediate CA - flags 0x00000000\ndepth 0 - serial 10 - subject C=NL, O=PolarSSL, CN=localhost - flags 0x00000000\n"
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200833
834X509 Certificate verification callback: intermediate ca, root included
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200835depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200836x509_verify_callback:"data_files/server7_int-ca_ca2.crt":"data_files/test-ca_cat12.crt":"NULL":0:"depth 2 - serial C1\:43\:E2\:7E\:62\:43\:CC\:E8 - subject C=NL, O=PolarSSL, CN=Polarssl Test EC CA - flags 0x00000000\ndepth 1 - serial 0E - subject C=NL, O=PolarSSL, CN=PolarSSL Test Intermediate CA - flags 0x00000000\ndepth 0 - serial 10 - subject C=NL, O=PolarSSL, CN=localhost - flags 0x00000000\n"
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200837
Manuel Pégourié-Gonnardfdbdd722015-09-01 16:35:00 +0200838X509 Certificate verification callback: intermediate ca trusted
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200839depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200840x509_verify_callback:"data_files/server7_int-ca_ca2.crt":"data_files/test-int-ca.crt":"NULL":0:"depth 1 - serial 0E - subject C=NL, O=PolarSSL, CN=PolarSSL Test Intermediate CA - flags 0x00000000\ndepth 0 - serial 10 - subject C=NL, O=PolarSSL, CN=localhost - flags 0x00000000\n"
Manuel Pégourié-Gonnardfdbdd722015-09-01 16:35:00 +0200841
Manuel Pégourié-Gonnardbc313012017-06-27 12:51:52 +0200842X509 Certificate verification callback: intermediate ca, EE expired
843depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200844x509_verify_callback:"data_files/server7-expired.crt":"data_files/test-ca2.crt":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"depth 2 - serial C1\:43\:E2\:7E\:62\:43\:CC\:E8 - subject C=NL, O=PolarSSL, CN=Polarssl Test EC CA - flags 0x00000000\ndepth 1 - serial 0E - subject C=NL, O=PolarSSL, CN=PolarSSL Test Intermediate CA - flags 0x00000000\ndepth 0 - serial 10 - subject C=NL, O=PolarSSL, CN=localhost - flags 0x00000001\n"
Manuel Pégourié-Gonnardbc313012017-06-27 12:51:52 +0200845
846X509 Certificate verification callback: intermediate ca, int expired
847depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200848x509_verify_callback:"data_files/server7_int-ca-exp.crt":"data_files/test-ca2.crt":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"depth 2 - serial C1\:43\:E2\:7E\:62\:43\:CC\:E8 - subject C=NL, O=PolarSSL, CN=Polarssl Test EC CA - flags 0x00000000\ndepth 1 - serial 0E - subject C=NL, O=PolarSSL, CN=PolarSSL Test Intermediate CA - flags 0x00000001\ndepth 0 - serial 10 - subject C=NL, O=PolarSSL, CN=localhost - flags 0x00000000\n"
Manuel Pégourié-Gonnardbc313012017-06-27 12:51:52 +0200849
850X509 Certificate verification callback: intermediate ca, root expired
851depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200852x509_verify_callback:"data_files/server7_int-ca.crt":"data_files/test-ca2-expired.crt":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"depth 2 - serial 01 - subject C=NL, O=PolarSSL, CN=Polarssl Test EC CA - flags 0x00000001\ndepth 1 - serial 0E - subject C=NL, O=PolarSSL, CN=PolarSSL Test Intermediate CA - flags 0x00000000\ndepth 0 - serial 10 - subject C=NL, O=PolarSSL, CN=localhost - flags 0x00000000\n"
Manuel Pégourié-Gonnardbc313012017-06-27 12:51:52 +0200853
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200854X509 Certificate verification callback: two intermediates
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200855depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200856x509_verify_callback:"data_files/server10_int3_int-ca2.crt":"data_files/test-ca_cat21.crt":"NULL":0:"depth 3 - serial 00 - subject C=NL, O=PolarSSL, CN=PolarSSL Test CA - flags 0x00000000\ndepth 2 - serial 0F - subject C=NL, O=PolarSSL, CN=PolarSSL Test Intermediate EC CA - flags 0x00000000\ndepth 1 - serial 4D - subject C=UK, O=mbed TLS, CN=mbed TLS Test intermediate CA 3 - flags 0x00000000\ndepth 0 - serial 4B - subject CN=localhost - flags 0x00000000\n"
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200857
858X509 Certificate verification callback: two intermediates, root included
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200859depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200860x509_verify_callback:"data_files/server10_int3_int-ca2_ca.crt":"data_files/test-ca_cat21.crt":"NULL":0:"depth 3 - serial 00 - subject C=NL, O=PolarSSL, CN=PolarSSL Test CA - flags 0x00000000\ndepth 2 - serial 0F - subject C=NL, O=PolarSSL, CN=PolarSSL Test Intermediate EC CA - flags 0x00000000\ndepth 1 - serial 4D - subject C=UK, O=mbed TLS, CN=mbed TLS Test intermediate CA 3 - flags 0x00000000\ndepth 0 - serial 4B - subject CN=localhost - flags 0x00000000\n"
Manuel Pégourié-Gonnard560fea32015-09-01 11:59:24 +0200861
Manuel Pégourié-Gonnardfdbdd722015-09-01 16:35:00 +0200862X509 Certificate verification callback: two intermediates, top int trusted
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200863depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200864x509_verify_callback:"data_files/server10_int3_int-ca2.crt":"data_files/test-int-ca2.crt":"NULL":0:"depth 2 - serial 0F - subject C=NL, O=PolarSSL, CN=PolarSSL Test Intermediate EC CA - flags 0x00000000\ndepth 1 - serial 4D - subject C=UK, O=mbed TLS, CN=mbed TLS Test intermediate CA 3 - flags 0x00000000\ndepth 0 - serial 4B - subject CN=localhost - flags 0x00000000\n"
Manuel Pégourié-Gonnardfdbdd722015-09-01 16:35:00 +0200865
866X509 Certificate verification callback: two intermediates, low int trusted
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200867depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA256_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200868x509_verify_callback:"data_files/server10_int3_int-ca2_ca.crt":"data_files/test-int-ca3.crt":"NULL":0:"depth 1 - serial 4D - subject C=UK, O=mbed TLS, CN=mbed TLS Test intermediate CA 3 - flags 0x00000000\ndepth 0 - serial 4B - subject CN=localhost - flags 0x00000000\n"
Manuel Pégourié-Gonnardfdbdd722015-09-01 16:35:00 +0200869
Manuel Pégourié-Gonnard9bc860c2017-07-14 11:32:38 +0200870X509 Certificate verification callback: no intermediate, bad signature
871depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200872x509_verify_callback:"data_files/server5-badsign.crt":"data_files/test-ca2.crt":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"depth 0 - serial 09 - subject C=NL, O=PolarSSL, CN=localhost - flags 0x00000008\n"
Manuel Pégourié-Gonnard9bc860c2017-07-14 11:32:38 +0200873
874X509 Certificate verification callback: one intermediate, bad signature
875depends_on:MBEDTLS_PEM_PARSE_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnardbe2f0b52017-08-21 11:00:22 +0200876x509_verify_callback:"data_files/server7-badsign.crt":"data_files/test-ca2.crt":"NULL":MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"depth 2 - serial C1\:43\:E2\:7E\:62\:43\:CC\:E8 - subject C=NL, O=PolarSSL, CN=Polarssl Test EC CA - flags 0x00000000\ndepth 1 - serial 0E - subject C=NL, O=PolarSSL, CN=PolarSSL Test Intermediate CA - flags 0x00000000\ndepth 0 - serial 10 - subject C=NL, O=PolarSSL, CN=localhost - flags 0x00000008\n"
Manuel Pégourié-Gonnard9bc860c2017-07-14 11:32:38 +0200877
Paul Bakker37940d9f2009-07-10 22:38:58 +0000878X509 Parse Selftest
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +0200879depends_on:MBEDTLS_SHA1_C:MBEDTLS_PEM_PARSE_C:MBEDTLS_CERTS_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Paul Bakker37940d9f2009-07-10 22:38:58 +0000880x509_selftest:
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000881
882X509 Certificate ASN1 (Incorrect first tag)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200883x509parse_crt:"":"":MBEDTLS_ERR_X509_INVALID_FORMAT
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000884
885X509 Certificate ASN1 (Correct first tag, data length does not match)
Janos Follathe154f952016-02-17 14:24:28 +0000886x509parse_crt:"300000":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000887
888X509 Certificate ASN1 (Correct first tag, no more data)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200889x509parse_crt:"3000":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000890
Paul Bakkerfae618f2011-10-12 11:53:52 +0000891X509 Certificate ASN1 (Correct first tag, length data incorrect)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200892x509parse_crt:"30023085":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_INVALID_LENGTH
Paul Bakkerfae618f2011-10-12 11:53:52 +0000893
Paul Bakkerc26a1892009-07-19 20:30:14 +0000894X509 Certificate ASN1 (Correct first tag, length data incomplete)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200895x509parse_crt:"30023083":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerc26a1892009-07-19 20:30:14 +0000896
897X509 Certificate ASN1 (Correct first tag, length data incomplete)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200898x509parse_crt:"30023081":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerc26a1892009-07-19 20:30:14 +0000899
900X509 Certificate ASN1 (Correct first tag, length data incomplete)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200901x509parse_crt:"3003308200":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerc26a1892009-07-19 20:30:14 +0000902
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000903X509 Certificate ASN1 (Correct first tag, second tag no TBSCertificate)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200904x509parse_crt:"300100":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000905
906X509 Certificate ASN1 (TBSCertificate, no version tag, serial missing)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200907x509parse_crt:"3003300100":"":MBEDTLS_ERR_X509_INVALID_SERIAL + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000908
909X509 Certificate ASN1 (TBSCertificate, invalid version tag)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200910x509parse_crt:"30053003a00101":"":MBEDTLS_ERR_X509_INVALID_VERSION + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000911
912X509 Certificate ASN1 (TBSCertificate, valid version tag, no length)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200913x509parse_crt:"30053003a00102":"":MBEDTLS_ERR_X509_INVALID_VERSION + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000914
915X509 Certificate ASN1 (TBSCertificate, valid version tag, invalid length)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200916x509parse_crt:"30163014a012021000000000000000000000000000000000":"":MBEDTLS_ERR_X509_INVALID_VERSION + MBEDTLS_ERR_ASN1_INVALID_LENGTH
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000917
918X509 Certificate ASN1 (TBSCertificate, valid version tag, no serial)
Manuel Pégourié-Gonnarde670f902015-10-30 09:23:19 +0100919x509parse_crt:"30073005a003020104":"":MBEDTLS_ERR_X509_INVALID_SERIAL + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000920
921X509 Certificate ASN1 (TBSCertificate, invalid length version tag)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200922x509parse_crt:"30083006a00402010400":"":MBEDTLS_ERR_X509_INVALID_VERSION + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000923
924X509 Certificate ASN1 (TBSCertificate, incorrect serial tag)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200925x509parse_crt:"30083006a00302010400":"":MBEDTLS_ERR_X509_INVALID_SERIAL + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000926
927X509 Certificate ASN1 (TBSCertificate, incorrect serial length)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200928x509parse_crt:"30083006a00302010482":"":MBEDTLS_ERR_X509_INVALID_SERIAL + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000929
930X509 Certificate ASN1 (TBSCertificate, correct serial, no alg)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200931x509parse_crt:"300d300ba0030201048204deadbeef":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000932
933X509 Certificate ASN1 (TBSCertificate, correct serial, no alg oid)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200934x509parse_crt:"300e300ca0030201048204deadbeef00":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000935
Paul Bakker345fb492009-07-20 21:26:07 +0000936X509 Certificate ASN1 (TBSCertificate, alg oid no data in sequence)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200937x509parse_crt:"300f300da0030201048204deadbeef3000":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakker345fb492009-07-20 21:26:07 +0000938
939X509 Certificate ASN1 (TBSCertificate, alg with params)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200940x509parse_crt:"30163014a0030201048204deadbeef30070604cafed00d01":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000941
Paul Bakker345fb492009-07-20 21:26:07 +0000942X509 Certificate ASN1 (TBSCertificate, correct alg data, no params unknown version)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200943x509parse_crt:"30153013a0030201048204deadbeef30060604cafed00d":"":MBEDTLS_ERR_X509_UNKNOWN_VERSION
Paul Bakker345fb492009-07-20 21:26:07 +0000944
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000945X509 Certificate ASN1 (TBSCertificate, correct alg data, unknown version)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200946x509parse_crt:"30173015a0030201048204deadbeef30080604cafed00d0500":"":MBEDTLS_ERR_X509_UNKNOWN_VERSION
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000947
Paul Bakker345fb492009-07-20 21:26:07 +0000948X509 Certificate ASN1 (TBSCertificate, correct alg data, length mismatch)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200949x509parse_crt:"30183016a0030201048204deadbeef30090604cafed00d050000":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Paul Bakker345fb492009-07-20 21:26:07 +0000950
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000951X509 Certificate ASN1 (TBSCertificate, correct alg, unknown alg_id)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200952x509parse_crt:"30173015a0030201028204deadbeef30080604cafed00d0500":"":MBEDTLS_ERR_X509_UNKNOWN_SIG_ALG + MBEDTLS_ERR_OID_NOT_FOUND
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000953
954X509 Certificate ASN1 (TBSCertificate, correct alg, specific alg_id)
palaviva07ecda2016-08-07 11:15:29 +0300955depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200956x509parse_crt:"301c301aa0030201028204deadbeef300d06092a864886f70d0101020500":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000957
958X509 Certificate ASN1 (TBSCertificate, correct alg, unknown specific alg_id)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200959x509parse_crt:"301c301aa0030201028204deadbeef300d06092a864886f70d0101010500":"":MBEDTLS_ERR_X509_UNKNOWN_SIG_ALG + MBEDTLS_ERR_OID_NOT_FOUND
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000960
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +0200961X509 Certificate ASN1 (TBSCertificate, correct alg, bad RSASSA-PSS params)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200962depends_on:MBEDTLS_X509_RSASSA_PSS_SUPPORT
963x509parse_crt:"30193017A003020102020118300D06092A864886F70D01010A3100":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +0200964
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000965X509 Certificate ASN1 (TBSCertificate, issuer no set data)
palaviva07ecda2016-08-07 11:15:29 +0300966depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200967x509parse_crt:"301e301ca0030201028204deadbeef300d06092a864886f70d01010205003000":"":MBEDTLS_ERR_X509_INVALID_NAME + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000968
969X509 Certificate ASN1 (TBSCertificate, issuer no inner seq data)
palaviva07ecda2016-08-07 11:15:29 +0300970depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200971x509parse_crt:"3020301ea0030201028204deadbeef300d06092a864886f70d010102050030023100":"":MBEDTLS_ERR_X509_INVALID_NAME + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000972
973X509 Certificate ASN1 (TBSCertificate, issuer no inner set data)
palaviva07ecda2016-08-07 11:15:29 +0300974depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200975x509parse_crt:"30223020a0030201028204deadbeef300d06092a864886f70d0101020500300431023000":"":MBEDTLS_ERR_X509_INVALID_NAME + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000976
977X509 Certificate ASN1 (TBSCertificate, issuer two inner set datas)
palaviva07ecda2016-08-07 11:15:29 +0300978depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200979x509parse_crt:"30243022a0030201028204deadbeef300d06092a864886f70d01010205003006310430003000":"":MBEDTLS_ERR_X509_INVALID_NAME + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000980
981X509 Certificate ASN1 (TBSCertificate, issuer no oid data)
palaviva07ecda2016-08-07 11:15:29 +0300982depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200983x509parse_crt:"30243022a0030201028204deadbeef300d06092a864886f70d01010205003006310430020600":"":MBEDTLS_ERR_X509_INVALID_NAME + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000984
985X509 Certificate ASN1 (TBSCertificate, issuer invalid tag)
palaviva07ecda2016-08-07 11:15:29 +0300986depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200987x509parse_crt:"302a3028a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600060454657374":"":MBEDTLS_ERR_X509_INVALID_NAME + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000988
Paul Bakker345fb492009-07-20 21:26:07 +0000989X509 Certificate ASN1 (TBSCertificate, issuer, no string data)
palaviva07ecda2016-08-07 11:15:29 +0300990depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200991x509parse_crt:"30253023a0030201028204deadbeef300d06092a864886f70d0101020500300731053003060013":"":MBEDTLS_ERR_X509_INVALID_NAME + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakker345fb492009-07-20 21:26:07 +0000992
Paul Bakker400ff6f2011-02-20 10:40:16 +0000993X509 Certificate ASN1 (TBSCertificate, issuer, no full following string)
palaviva07ecda2016-08-07 11:15:29 +0300994depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200995x509parse_crt:"302b3029a0030201028204deadbeef300d06092a864886f70d0101020500300d310b3009060013045465737400":"":MBEDTLS_ERR_X509_INVALID_NAME+MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakker345fb492009-07-20 21:26:07 +0000996
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000997X509 Certificate ASN1 (TBSCertificate, valid issuer, no validity)
palaviva07ecda2016-08-07 11:15:29 +0300998depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +0200999x509parse_crt:"302a3028a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374":"":MBEDTLS_ERR_X509_INVALID_DATE + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001000
1001X509 Certificate ASN1 (TBSCertificate, too much date data)
palaviva07ecda2016-08-07 11:15:29 +03001002depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001003x509parse_crt:"30493047a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301d170c303930313031303030303030170c30393132333132333539353900":"":MBEDTLS_ERR_X509_INVALID_DATE + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001004
Paul Bakker345fb492009-07-20 21:26:07 +00001005X509 Certificate ASN1 (TBSCertificate, invalid from date)
palaviva07ecda2016-08-07 11:15:29 +03001006depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001007x509parse_crt:"30483046a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303000000000170c303931323331323300000000":"":MBEDTLS_ERR_X509_INVALID_DATE
Paul Bakker345fb492009-07-20 21:26:07 +00001008
1009X509 Certificate ASN1 (TBSCertificate, invalid to date)
palaviva07ecda2016-08-07 11:15:29 +03001010depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001011x509parse_crt:"30483046a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323300000000":"":MBEDTLS_ERR_X509_INVALID_DATE
Paul Bakker345fb492009-07-20 21:26:07 +00001012
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001013X509 Certificate ASN1 (TBSCertificate, valid validity, no subject)
palaviva07ecda2016-08-07 11:15:29 +03001014depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001015x509parse_crt:"30493047a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c30393132333132333539353930":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001016
1017X509 Certificate ASN1 (TBSCertificate, valid subject, no pubkeyinfo)
palaviva07ecda2016-08-07 11:15:29 +03001018depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001019x509parse_crt:"30563054a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374":"":MBEDTLS_ERR_PK_KEY_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001020
Paul Bakker345fb492009-07-20 21:26:07 +00001021X509 Certificate ASN1 (TBSCertificate, pubkey, no alg)
palaviva07ecda2016-08-07 11:15:29 +03001022depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001023x509parse_crt:"30583056a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a300806001304546573743000":"":MBEDTLS_ERR_PK_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakker345fb492009-07-20 21:26:07 +00001024
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001025X509 Certificate ASN1 (TBSCertificate, valid subject, unknown pk alg)
palaviva07ecda2016-08-07 11:15:29 +03001026depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001027x509parse_crt:"30673065a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374300f300d06092A864886F70D0101000500":"":MBEDTLS_ERR_PK_UNKNOWN_PK_ALG
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001028
1029X509 Certificate ASN1 (TBSCertificate, pubkey, no bitstring)
palaviva07ecda2016-08-07 11:15:29 +03001030depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001031x509parse_crt:"30673065a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374300f300d06092A864886F70D0101010500":"":MBEDTLS_ERR_PK_INVALID_PUBKEY + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001032
1033X509 Certificate ASN1 (TBSCertificate, pubkey, no bitstring data)
palaviva07ecda2016-08-07 11:15:29 +03001034depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001035x509parse_crt:"30693067a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a300806001304546573743011300d06092A864886F70D01010105000300":"":MBEDTLS_ERR_PK_INVALID_PUBKEY + MBEDTLS_ERR_ASN1_INVALID_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001036
1037X509 Certificate ASN1 (TBSCertificate, pubkey, invalid bitstring start)
palaviva07ecda2016-08-07 11:15:29 +03001038depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001039x509parse_crt:"306a3068a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a300806001304546573743012300d06092A864886F70D0101010500030101":"":MBEDTLS_ERR_PK_INVALID_PUBKEY + MBEDTLS_ERR_ASN1_INVALID_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001040
1041X509 Certificate ASN1 (TBSCertificate, pubkey, invalid internal bitstring length)
palaviva07ecda2016-08-07 11:15:29 +03001042depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001043x509parse_crt:"306d306ba0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a300806001304546573743015300d06092A864886F70D0101010500030400300000":"":MBEDTLS_ERR_PK_INVALID_PUBKEY + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001044
Paul Bakker345fb492009-07-20 21:26:07 +00001045X509 Certificate ASN1 (TBSCertificate, pubkey, invalid internal bitstring tag)
palaviva07ecda2016-08-07 11:15:29 +03001046depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001047x509parse_crt:"306d306ba0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a300806001304546573743015300d06092A864886F70D0101010500030400310000":"":MBEDTLS_ERR_PK_INVALID_PUBKEY + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakker345fb492009-07-20 21:26:07 +00001048
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001049X509 Certificate ASN1 (TBSCertificate, pubkey, invalid mbedtls_mpi)
palaviva07ecda2016-08-07 11:15:29 +03001050depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001051x509parse_crt:"30743072a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374301c300d06092A864886F70D0101010500030b0030080202ffff0302ffff":"":MBEDTLS_ERR_PK_INVALID_PUBKEY + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001052
Paul Bakker345fb492009-07-20 21:26:07 +00001053X509 Certificate ASN1 (TBSCertificate, pubkey, total length mismatch)
palaviva07ecda2016-08-07 11:15:29 +03001054depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001055x509parse_crt:"30753073a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374301d300d06092A864886F70D0101010500030b0030080202ffff0202ffff00":"":MBEDTLS_ERR_PK_INVALID_PUBKEY + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Paul Bakker345fb492009-07-20 21:26:07 +00001056
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001057X509 Certificate ASN1 (TBSCertificate, pubkey, check failed)
palaviva07ecda2016-08-07 11:15:29 +03001058depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001059x509parse_crt:"30743072a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374301c300d06092A864886F70D0101010500030b0030080202ffff0202ffff":"":MBEDTLS_ERR_PK_INVALID_PUBKEY
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001060
1061X509 Certificate ASN1 (TBSCertificate, pubkey, check failed, expanded length notation)
palaviva07ecda2016-08-07 11:15:29 +03001062depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001063x509parse_crt:"308183308180a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210fffffffffffffffffffffffffffffffe0202ffff":"":MBEDTLS_ERR_PK_INVALID_PUBKEY
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001064
1065X509 Certificate ASN1 (TBSCertificate v3, Optional UIDs, Extensions not present)
palaviva07ecda2016-08-07 11:15:29 +03001066depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001067x509parse_crt:"308183308180a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001068
1069X509 Certificate ASN1 (TBSCertificate v3, issuerID wrong tag)
palaviva07ecda2016-08-07 11:15:29 +03001070depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001071x509parse_crt:"308184308181a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff00":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001072
1073X509 Certificate ASN1 (TBSCertificate v3, UIDs, no ext)
palaviva07ecda2016-08-07 11:15:29 +03001074depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001075x509parse_crt:"308189308186a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bb":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001076
Paul Bakker345fb492009-07-20 21:26:07 +00001077X509 Certificate ASN1 (TBSCertificate v3, UIDs, invalid length)
palaviva07ecda2016-08-07 11:15:29 +03001078depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001079x509parse_crt:"308189308186a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa185aaa201bb":"":MBEDTLS_ERR_ASN1_INVALID_LENGTH
Paul Bakker345fb492009-07-20 21:26:07 +00001080
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001081X509 Certificate ASN1 (TBSCertificate v3, ext empty)
palaviva07ecda2016-08-07 11:15:29 +03001082depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001083x509parse_crt:"30818b308188a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba300":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001084
1085X509 Certificate ASN1 (TBSCertificate v3, ext length mismatch)
palaviva07ecda2016-08-07 11:15:29 +03001086depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001087x509parse_crt:"30818e30818ba0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba303300000":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001088
1089X509 Certificate ASN1 (TBSCertificate v3, first ext invalid)
palaviva07ecda2016-08-07 11:15:29 +03001090depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001091x509parse_crt:"30818f30818ca0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba30330023000":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001092
Paul Bakkere4ff4132009-07-27 20:22:10 +00001093X509 Certificate ASN1 (TBSCertificate v3, first ext invalid tag)
palaviva07ecda2016-08-07 11:15:29 +03001094depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001095x509parse_crt:"30819030818da0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba3043002310000":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkere4ff4132009-07-27 20:22:10 +00001096
Paul Bakkerc6ce8382009-07-27 21:34:45 +00001097X509 Certificate ASN1 (TBSCertificate v3, ext BasicContraint tag, bool len missing)
palaviva07ecda2016-08-07 11:15:29 +03001098depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001099x509parse_crt:"308198308195a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba30c300a30060603551d1301010100":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerc6ce8382009-07-27 21:34:45 +00001100
1101X509 Certificate ASN1 (TBSCertificate v3, ext BasicContraint tag, data missing)
palaviva07ecda2016-08-07 11:15:29 +03001102depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001103x509parse_crt:"308198308195a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba30c300a30080603551d1301010100":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerc6ce8382009-07-27 21:34:45 +00001104
1105X509 Certificate ASN1 (TBSCertificate v3, ext BasicContraint tag, no octet present)
palaviva07ecda2016-08-07 11:15:29 +03001106depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001107x509parse_crt:"308198308195a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba30d300b30090603551d1301010100":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkere4ff4132009-07-27 20:22:10 +00001108
1109X509 Certificate ASN1 (TBSCertificate v3, ext BasicContraint tag, octet data missing)
palaviva07ecda2016-08-07 11:15:29 +03001110depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001111x509parse_crt:"30819c308199a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba311300f300d0603551d130101010403300100":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkere4ff4132009-07-27 20:22:10 +00001112
1113X509 Certificate ASN1 (TBSCertificate v3, ext BasicContraint tag, no pathlen)
palaviva07ecda2016-08-07 11:15:29 +03001114depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001115x509parse_crt:"30819f30819ca0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba314301230100603551d130101010406300402010102":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkere4ff4132009-07-27 20:22:10 +00001116
1117X509 Certificate ASN1 (TBSCertificate v3, ext BasicContraint tag, octet len mismatch)
palaviva07ecda2016-08-07 11:15:29 +03001118depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001119x509parse_crt:"3081a230819fa0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba317301530130603551d130101010409300702010102010100":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkere4ff4132009-07-27 20:22:10 +00001120
Manuel Pégourié-Gonnard0369a522014-11-11 22:17:26 +01001121X509 Certificate ASN1 (ExtKeyUsage, bad second tag)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001122depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001123x509parse_crt:"3081de3081dba003020102020900ebdbcd14105e1839300906072a8648ce3d0401300f310d300b0603550403130454657374301e170d3134313131313230353935345a170d3234313130383230353935345a300f310d300b06035504031304546573743059301306072a8648ce3d020106082a8648ce3d0301070342000437cc56d976091e5a723ec7592dff206eee7cf9069174d0ad14b5f768225962924ee500d82311ffea2fd2345d5d16bd8a88c26b770d55cd8a2a0efa01c8b4edffa321301f301d0603551d250416301406082b0601050507030107082b06010505070302":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnard0369a522014-11-11 22:17:26 +01001124
Manuel Pégourié-Gonnardb1340602014-11-11 23:11:16 +01001125X509 Certificate ASN1 (SubjectAltName repeated)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001126depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001127x509parse_crt:"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":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS
Manuel Pégourié-Gonnardb1340602014-11-11 23:11:16 +01001128
Manuel Pégourié-Gonnard8a5e3d42014-11-12 17:47:28 +01001129X509 Certificate ASN1 (ExtKeyUsage repeated)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001130depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001131x509parse_crt:"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":"":MBEDTLS_ERR_X509_INVALID_EXTENSIONS
Manuel Pégourié-Gonnard8a5e3d42014-11-12 17:47:28 +01001132
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001133X509 Certificate ASN1 (correct pubkey, no sig_alg)
palaviva07ecda2016-08-07 11:15:29 +03001134depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001135x509parse_crt:"308183308180a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001136
1137X509 Certificate ASN1 (sig_alg mismatch)
palaviva07ecda2016-08-07 11:15:29 +03001138depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001139x509parse_crt:"308192308180a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0102020500":"":MBEDTLS_ERR_X509_SIG_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001140
1141X509 Certificate ASN1 (sig_alg, no sig)
palaviva07ecda2016-08-07 11:15:29 +03001142depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001143x509parse_crt:"308192308180a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500":"":MBEDTLS_ERR_X509_INVALID_SIGNATURE + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001144
1145X509 Certificate ASN1 (signature, invalid sig data)
palaviva07ecda2016-08-07 11:15:29 +03001146depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001147x509parse_crt:"308195308180a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030100":"":MBEDTLS_ERR_X509_INVALID_SIGNATURE + MBEDTLS_ERR_ASN1_INVALID_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001148
1149X509 Certificate ASN1 (signature, data left)
palaviva07ecda2016-08-07 11:15:29 +03001150depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001151x509parse_crt:"308197308180a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff00":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001152
1153X509 Certificate ASN1 (correct)
palaviva07ecda2016-08-07 11:15:29 +03001154depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001155x509parse_crt:"308196308180a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: ?\?=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerb2c38f52009-07-19 19:36:15 +00001156
Paul Bakker91200182010-02-18 21:26:15 +00001157X509 Certificate ASN1 (GeneralizedTime instead of UTCTime)
palaviva07ecda2016-08-07 11:15:29 +03001158depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001159x509parse_crt:"308198308182a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301e180e3230313030313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: ?\?=Test\nsubject name \: ?\?=Test\nissued on \: 2010-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakker91200182010-02-18 21:26:15 +00001160
Paul Bakkerc26a1892009-07-19 20:30:14 +00001161X509 Certificate ASN1 (Name with X520 CN)
palaviva07ecda2016-08-07 11:15:29 +03001162depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001163x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b0603550403130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: CN=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +00001164
1165X509 Certificate ASN1 (Name with X520 C)
palaviva07ecda2016-08-07 11:15:29 +03001166depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001167x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b0603550406130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: C=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +00001168
1169X509 Certificate ASN1 (Name with X520 L)
palaviva07ecda2016-08-07 11:15:29 +03001170depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001171x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b0603550407130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: L=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +00001172
1173X509 Certificate ASN1 (Name with X520 ST)
palaviva07ecda2016-08-07 11:15:29 +03001174depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001175x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b0603550408130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: ST=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +00001176
1177X509 Certificate ASN1 (Name with X520 O)
palaviva07ecda2016-08-07 11:15:29 +03001178depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001179x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b060355040a130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: O=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +00001180
1181X509 Certificate ASN1 (Name with X520 OU)
palaviva07ecda2016-08-07 11:15:29 +03001182depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001183x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b060355040b130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: OU=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +00001184
1185X509 Certificate ASN1 (Name with unknown X520 part)
palaviva07ecda2016-08-07 11:15:29 +03001186depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001187x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b06035504de130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: ?\?=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +00001188
Manuel Pégourié-Gonnard555fbf82015-02-04 17:11:55 +00001189X509 Certificate ASN1 (Name with composite RDN)
palaviva07ecda2016-08-07 11:15:29 +03001190depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard555fbf82015-02-04 17:11:55 +00001191x509parse_crt:"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":"cert. version \: 3\nserial number \: 4C\:20\:E3\:BD\nissuer name \: C=US, ST=CA, O=Internet Widgits Pty Ltd, CN=Frankencert CA\nsubject name \: C=US, ST=Washington, ??=US, ??=Delaware, O=Authorize.Net LLC, ??=Private Organization, serialNumber=4369191 + CN=www.authorize.net, L=San Francisco\nissued on \: 2013-08-02 15\:14\:37\nexpires on \: 2015-08-17 05\:54\:31\nsigned using \: RSA with SHA1\nRSA key size \: 1024 bits\n":0
1192
Paul Bakkerc26a1892009-07-19 20:30:14 +00001193X509 Certificate ASN1 (Name with PKCS9 email)
palaviva07ecda2016-08-07 11:15:29 +03001194depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001195x509parse_crt:"30819f308189a0030201008204deadbeef300d06092a864886f70d010102050030153113301106092a864886f70d010901130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: emailAddress=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +00001196
1197X509 Certificate ASN1 (Name with unknown PKCS9 part)
palaviva07ecda2016-08-07 11:15:29 +03001198depends_on:MBEDTLS_RSA_C:MBEDTLS_MD2_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001199x509parse_crt:"30819f308189a0030201008204deadbeef300d06092a864886f70d010102050030153113301106092a864886f70d0109ab130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: ?\?=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +00001200
Manuel Pégourié-Gonnarda3c86c32013-07-10 16:54:29 +02001201X509 Certificate ASN1 (ECDSA signature, RSA key)
palavivf180df92016-08-07 11:56:02 +03001202depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C:MBEDTLS_ECDSA_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001203x509parse_crt:"3081E630819E020103300906072A8648CE3D0401300F310D300B0603550403130454657374301E170D3133303731303039343631385A170D3233303730383039343631385A300F310D300B0603550403130454657374304C300D06092A864886F70D0101010500033B003038023100E8F546061D3B49BC2F6B7524B7EA4D73A8D5293EE8C64D9407B70B5D16BAEBC32B8205591EAB4E1EB57E9241883701250203010001300906072A8648CE3D0401033800303502186E18209AFBED14A0D9A796EFCAD68891E3CCD5F75815C833021900E92B4FD460B1994693243B9FFAD54729DE865381BDA41D25":"cert. version \: 1\nserial number \: 03\nissuer name \: CN=Test\nsubject name \: CN=Test\nissued on \: 2013-07-10 09\:46\:18\nexpires on \: 2023-07-08 09\:46\:18\nsigned using \: ECDSA with SHA1\nRSA key size \: 384 bits\n":0
Manuel Pégourié-Gonnard72ef0b72013-07-10 12:20:54 +02001204
Manuel Pégourié-Gonnarda3c86c32013-07-10 16:54:29 +02001205X509 Certificate ASN1 (ECDSA signature, EC key)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001206depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP192R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001207x509parse_crt:"3081EB3081A3020900F41534662EC7E912300906072A8648CE3D0401300F310D300B0603550403130454657374301E170D3133303731303039343031395A170D3233303730383039343031395A300F310D300B06035504031304546573743049301306072A8648CE3D020106082A8648CE3D030101033200042137969FABD4E370624A0E1A33E379CAB950CCE00EF8C3C3E2ADAEB7271C8F07659D65D3D777DCF21614363AE4B6E617300906072A8648CE3D04010338003035021858CC0F957946FE6A303D92885A456AA74C743C7B708CBD37021900FE293CAC21AF352D16B82EB8EA54E9410B3ABAADD9F05DD6":"cert. version \: 1\nserial number \: F4\:15\:34\:66\:2E\:C7\:E9\:12\nissuer name \: CN=Test\nsubject name \: CN=Test\nissued on \: 2013-07-10 09\:40\:19\nexpires on \: 2023-07-08 09\:40\:19\nsigned using \: ECDSA with SHA1\nEC key size \: 192 bits\n":0
Manuel Pégourié-Gonnarda3c86c32013-07-10 16:54:29 +02001208
1209X509 Certificate ASN1 (RSA signature, EC key)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001210depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP192R1_ENABLED:MBEDTLS_SHA1_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnardb28487d2014-04-01 12:19:09 +02001211x509parse_crt:"3081E430819F020104300D06092A864886F70D0101050500300F310D300B0603550403130454657374301E170D3133303731303135303233375A170D3233303730383135303233375A300F310D300B06035504031304546573743049301306072A8648CE3D020106082A8648CE3D03010103320004E962551A325B21B50CF6B990E33D4318FD16677130726357A196E3EFE7107BCB6BDC6D9DB2A4DF7C964ACFE81798433D300D06092A864886F70D01010505000331001A6C18CD1E457474B2D3912743F44B571341A7859A0122774A8E19A671680878936949F904C9255BDD6FFFDB33A7E6D8":"cert. version \: 1\nserial number \: 04\nissuer name \: CN=Test\nsubject name \: CN=Test\nissued on \: 2013-07-10 15\:02\:37\nexpires on \: 2023-07-08 15\:02\:37\nsigned using \: RSA with SHA1\nEC key size \: 192 bits\n":0
Manuel Pégourié-Gonnarda3c86c32013-07-10 16:54:29 +02001212
Andres AG7d97e662017-03-09 15:29:07 +00001213X509 Certificate ASN1 (invalid version 3)
1214x509parse_crt:"30173015a0030201038204deadbeef30080604cafed00d0500":"":MBEDTLS_ERR_X509_UNKNOWN_VERSION
1215
1216X509 Certificate ASN1 (invalid version overflow)
1217x509parse_crt:"301A3018a00602047FFFFFFF8204deadbeef30080604cafed00d0500":"":MBEDTLS_ERR_X509_UNKNOWN_VERSION
1218
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001219X509 CRL ASN1 (Incorrect first tag)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001220x509parse_crl:"":"":MBEDTLS_ERR_X509_INVALID_FORMAT
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001221
1222X509 CRL ASN1 (Correct first tag, data length does not match)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001223x509parse_crl:"300000":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001224
1225X509 CRL ASN1 (TBSCertList, tag missing)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001226x509parse_crl:"3000":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001227
1228X509 CRL ASN1 (TBSCertList, version tag len missing)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001229x509parse_crl:"3003300102":"":MBEDTLS_ERR_X509_INVALID_VERSION + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001230
1231X509 CRL ASN1 (TBSCertList, version correct, alg missing)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001232x509parse_crl:"30053003020100":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001233
1234X509 CRL ASN1 (TBSCertList, alg correct, incorrect version)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001235x509parse_crl:"300b3009020102300406000500":"":MBEDTLS_ERR_X509_UNKNOWN_VERSION
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001236
1237X509 CRL ASN1 (TBSCertList, correct version, sig_oid1 unknown)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001238x509parse_crl:"300b3009020100300406000500":"":MBEDTLS_ERR_X509_UNKNOWN_SIG_ALG
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001239
1240X509 CRL ASN1 (TBSCertList, sig_oid1 id unknown)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001241x509parse_crl:"30143012020100300d06092a864886f70d01010f0500":"":MBEDTLS_ERR_X509_UNKNOWN_SIG_ALG
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001242
1243X509 CRL ASN1 (TBSCertList, sig_oid1 correct, issuer missing)
palaviva07ecda2016-08-07 11:15:29 +03001244depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001245x509parse_crl:"30143012020100300d06092a864886f70d01010e0500":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001246
1247X509 CRL ASN1 (TBSCertList, issuer set missing)
palaviva07ecda2016-08-07 11:15:29 +03001248depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001249x509parse_crl:"30163014020100300d06092a864886f70d01010e05003000":"":MBEDTLS_ERR_X509_INVALID_NAME + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001250
1251X509 CRL ASN1 (TBSCertList, correct issuer, thisUpdate missing)
palaviva07ecda2016-08-07 11:15:29 +03001252depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001253x509parse_crl:"30253023020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344":"":MBEDTLS_ERR_X509_INVALID_DATE + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001254
1255X509 CRL ASN1 (TBSCertList, correct thisUpdate, nextUpdate missing, entries length missing)
palaviva07ecda2016-08-07 11:15:29 +03001256depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001257x509parse_crl:"30343032020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c30393031303130303030303030":"":MBEDTLS_ERR_ASN1_OUT_OF_DATA
Paul Bakkere4ff4132009-07-27 20:22:10 +00001258
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001259X509 CRL ASN1 (TBSCertList, entries present, invalid sig_alg)
palaviva07ecda2016-08-07 11:15:29 +03001260depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001261x509parse_crl:"304a3047020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030301430128202abcd170c30383132333132333539353900":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001262
1263X509 CRL ASN1 (TBSCertList, entries present, date in entry invalid)
palaviva07ecda2016-08-07 11:15:29 +03001264depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001265x509parse_crl:"304a3047020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030301430128202abcd190c30383132333132333539353900":"":MBEDTLS_ERR_X509_INVALID_DATE + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001266
1267X509 CRL ASN1 (TBSCertList, sig_alg present, sig_alg does not match)
palaviva07ecda2016-08-07 11:15:29 +03001268depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001269x509parse_crl:"30583047020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030301430128202abcd170c303831323331323335393539300d06092a864886f70d01010d0500":"":MBEDTLS_ERR_X509_SIG_MISMATCH
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001270
Paul Bakkere4ff4132009-07-27 20:22:10 +00001271X509 CRL ASN1 (TBSCertList, sig present, len mismatch)
palaviva07ecda2016-08-07 11:15:29 +03001272depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001273x509parse_crl:"305d3047020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030301430128202abcd170c303831323331323335393539300d06092a864886f70d01010e05000302000100":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001274
1275X509 CRL ASN1 (TBSCertList, sig present)
palaviva07ecda2016-08-07 11:15:29 +03001276depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Paul Bakkerc70b9822013-04-07 22:00:46 +02001277x509parse_crl:"305c3047020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030301430128202abcd170c303831323331323335393539300d06092a864886f70d01010e050003020001":"CRL version \: 1\nissuer name \: CN=ABCD\nthis update \: 2009-01-01 00\:00\:00\nnext update \: 0000-00-00 00\:00\:00\nRevoked certificates\:\nserial number\: AB\:CD revocation date\: 2008-12-31 23\:59\:59\nsigned using \: RSA with SHA-224\n":0
Paul Bakker6b0fa4f2009-07-20 20:35:41 +00001278
Paul Bakkere4ff4132009-07-27 20:22:10 +00001279X509 CRL ASN1 (TBSCertList, no entries)
palaviva07ecda2016-08-07 11:15:29 +03001280depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Paul Bakkerc70b9822013-04-07 22:00:46 +02001281x509parse_crl:"30463031020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030300d06092a864886f70d01010e050003020001":"CRL version \: 1\nissuer name \: CN=ABCD\nthis update \: 2009-01-01 00\:00\:00\nnext update \: 0000-00-00 00\:00\:00\nRevoked certificates\:\nsigned using \: RSA with SHA-224\n":0
Manuel Pégourié-Gonnardfbae2a12013-11-26 16:43:39 +01001282
Andres AGfff826c2017-03-07 11:11:12 +00001283X509 CRL ASN1 (invalid version 2)
1284x509parse_crl:"30463031020102300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030300d06092a864886f70d01010e050003020001":"":MBEDTLS_ERR_X509_UNKNOWN_VERSION
1285
1286X509 CRL ASN1 (invalid version overflow)
1287x509parse_crl:"3049303102047FFFFFFF300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030300d06092a864886f70d01010e050003020001":"":MBEDTLS_ERR_X509_UNKNOWN_VERSION
1288
Manuel Pégourié-Gonnardfbae2a12013-11-26 16:43:39 +01001289X509 CRT parse path #2 (one cert)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001290depends_on:MBEDTLS_SHA1_C:MBEDTLS_RSA_C
1291mbedtls_x509_crt_parse_path:"data_files/dir1":0:1
Manuel Pégourié-Gonnardfbae2a12013-11-26 16:43:39 +01001292
1293X509 CRT parse path #3 (two certs)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001294depends_on:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED
1295mbedtls_x509_crt_parse_path:"data_files/dir2":0:2
Manuel Pégourié-Gonnardfbae2a12013-11-26 16:43:39 +01001296
1297X509 CRT parse path #4 (two certs, one non-cert)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001298depends_on:MBEDTLS_SHA1_C:MBEDTLS_RSA_C:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED
1299mbedtls_x509_crt_parse_path:"data_files/dir3":1:2
Manuel Pégourié-Gonnard7afdb882014-03-28 16:06:35 +01001300
Manuel Pégourié-Gonnard1beb0482017-06-05 13:49:44 +02001301X509 CRT verify long chain (max intermediate CA, trusted)
1302depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
1303mbedtls_x509_crt_verify_max:"data_files/dir-maxpath/00.crt":"data_files/dir-maxpath":MBEDTLS_X509_MAX_INTERMEDIATE_CA:0:0
1304
1305X509 CRT verify long chain (max intermediate CA, untrusted)
1306depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
1307mbedtls_x509_crt_verify_max:"data_files/test-ca2.crt":"data_files/dir-maxpath":MBEDTLS_X509_MAX_INTERMEDIATE_CA-1:MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:MBEDTLS_X509_BADCERT_NOT_TRUSTED
1308
1309X509 CRT verify long chain (max intermediate CA + 1)
1310depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnard31458a12017-06-26 10:11:49 +02001311mbedtls_x509_crt_verify_max:"data_files/dir-maxpath/00.crt":"data_files/dir-maxpath":MBEDTLS_X509_MAX_INTERMEDIATE_CA+1:MBEDTLS_ERR_X509_FATAL_ERROR:-1
Manuel Pégourié-Gonnard1beb0482017-06-05 13:49:44 +02001312
Janos Follathef4f2582015-10-11 16:17:27 +02001313X509 CRT verify chain #1 (zero pathlen intermediate)
Janos Follath822b2c32015-10-11 10:25:22 +02001314depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001315mbedtls_x509_crt_verify_chain:"data_files/dir4/cert14.crt data_files/dir4/cert13.crt data_files/dir4/cert12.crt":"data_files/dir4/cert11.crt":MBEDTLS_X509_BADCERT_NOT_TRUSTED:MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"":0
Janos Follath822b2c32015-10-11 10:25:22 +02001316
Janos Follathef4f2582015-10-11 16:17:27 +02001317X509 CRT verify chain #2 (zero pathlen root)
1318depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001319mbedtls_x509_crt_verify_chain:"data_files/dir4/cert23.crt data_files/dir4/cert22.crt":"data_files/dir4/cert21.crt":MBEDTLS_X509_BADCERT_NOT_TRUSTED:MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"":0
Janos Follathef4f2582015-10-11 16:17:27 +02001320
1321X509 CRT verify chain #3 (nonzero pathlen root)
1322depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001323mbedtls_x509_crt_verify_chain:"data_files/dir4/cert34.crt data_files/dir4/cert33.crt data_files/dir4/cert32.crt":"data_files/dir4/cert31.crt":MBEDTLS_X509_BADCERT_NOT_TRUSTED:MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"":0
Janos Follathef4f2582015-10-11 16:17:27 +02001324
1325X509 CRT verify chain #4 (nonzero pathlen intermediate)
1326depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001327mbedtls_x509_crt_verify_chain:"data_files/dir4/cert45.crt data_files/dir4/cert44.crt data_files/dir4/cert43.crt data_files/dir4/cert42.crt":"data_files/dir4/cert41.crt":MBEDTLS_X509_BADCERT_NOT_TRUSTED:MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"":0
Janos Follathef4f2582015-10-11 16:17:27 +02001328
1329X509 CRT verify chain #5 (nonzero maxpathlen intermediate)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001330depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001331mbedtls_x509_crt_verify_chain:"data_files/dir4/cert54.crt data_files/dir4/cert53.crt data_files/dir4/cert52.crt":"data_files/dir4/cert51.crt":0:0:"":0
Janos Follathef4f2582015-10-11 16:17:27 +02001332
1333X509 CRT verify chain #6 (nonzero maxpathlen root)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001334depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001335mbedtls_x509_crt_verify_chain:"data_files/dir4/cert63.crt data_files/dir4/cert62.crt":"data_files/dir4/cert61.crt":0:0:"":0
Janos Follathef4f2582015-10-11 16:17:27 +02001336
1337X509 CRT verify chain #7 (maxpathlen root, self signed in path)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001338depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001339mbedtls_x509_crt_verify_chain:"data_files/dir4/cert74.crt data_files/dir4/cert73.crt data_files/dir4/cert72.crt":"data_files/dir4/cert71.crt":0:0:"":0
Janos Follathef4f2582015-10-11 16:17:27 +02001340
1341X509 CRT verify chain #8 (self signed maxpathlen root)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001342depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001343mbedtls_x509_crt_verify_chain:"data_files/dir4/cert61.crt data_files/dir4/cert63.crt data_files/dir4/cert62.crt":"data_files/dir4/cert61.crt":0:0:"":0
Janos Follathef4f2582015-10-11 16:17:27 +02001344
Manuel Pégourié-Gonnard8b4331a2015-11-19 10:52:12 +01001345X509 CRT verify chain #9 (zero pathlen first intermediate, valid)
Manuel Pégourié-Gonnarda3aa43d2015-11-19 10:46:07 +01001346depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001347mbedtls_x509_crt_verify_chain:"data_files/dir4/cert83.crt data_files/dir4/cert82.crt":"data_files/dir4/cert81.crt":0:0:"":0
Manuel Pégourié-Gonnarda3aa43d2015-11-19 10:46:07 +01001348
Manuel Pégourié-Gonnard8b4331a2015-11-19 10:52:12 +01001349X509 CRT verify chain #10 (zero pathlen root, valid)
1350depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001351mbedtls_x509_crt_verify_chain:"data_files/dir4/cert92.crt":"data_files/dir4/cert91.crt":0:0:"":0
Manuel Pégourié-Gonnard8b4331a2015-11-19 10:52:12 +01001352
Manuel Pégourié-Gonnard9832cea2017-05-23 10:13:40 +02001353X509 CRT verify chain #11 (valid chain, missing profile)
1354depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001355mbedtls_x509_crt_verify_chain:"data_files/dir4/cert92.crt":"data_files/dir4/cert91.crt":-1:MBEDTLS_ERR_X509_BAD_INPUT_DATA:"nonesuch":0
Manuel Pégourié-Gonnard9832cea2017-05-23 10:13:40 +02001356
Manuel Pégourié-Gonnard6622fed2017-05-23 11:29:29 +02001357X509 CRT verify chain #12 (suiteb profile, RSA root)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001358depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP192R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001359mbedtls_x509_crt_verify_chain:"data_files/server3.crt":"data_files/test-ca.crt":MBEDTLS_X509_BADCERT_BAD_MD|MBEDTLS_X509_BADCERT_BAD_PK|MBEDTLS_X509_BADCERT_BAD_KEY:MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"suiteb":0
Manuel Pégourié-Gonnard6622fed2017-05-23 11:29:29 +02001360
1361X509 CRT verify chain #13 (RSA only profile, EC root)
1362depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001363mbedtls_x509_crt_verify_chain:"data_files/server4.crt":"data_files/test-ca2.crt":MBEDTLS_X509_BADCERT_BAD_PK|MBEDTLS_X509_BADCERT_BAD_KEY:MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"rsa3072":0
Manuel Pégourié-Gonnard6622fed2017-05-23 11:29:29 +02001364
Manuel Pégourié-Gonnardd0922772017-06-27 13:26:43 +02001365X509 CRT verify chain #13 (RSA only profile, EC trusted EE)
1366depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
1367mbedtls_x509_crt_verify_chain:"data_files/server5-selfsigned.crt":"data_files/server5-selfsigned.crt":MBEDTLS_X509_BADCERT_BAD_PK|MBEDTLS_X509_BADCERT_BAD_KEY:MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"rsa3072":0
1368
Manuel Pégourié-Gonnard6622fed2017-05-23 11:29:29 +02001369X509 CRT verify chain #14 (RSA-3072 profile, root key too small)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001370depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001371mbedtls_x509_crt_verify_chain:"data_files/server1.crt":"data_files/test-ca.crt":MBEDTLS_X509_BADCERT_BAD_MD|MBEDTLS_X509_BADCERT_BAD_KEY:MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"rsa3072":0
Manuel Pégourié-Gonnard6622fed2017-05-23 11:29:29 +02001372
1373X509 CRT verify chain #15 (suiteb profile, rsa intermediate)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001374depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001375mbedtls_x509_crt_verify_chain:"data_files/server7.crt data_files/test-int-ca.crt":"data_files/test-ca2.crt":MBEDTLS_X509_BADCERT_BAD_PK:MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"suiteb":0
Manuel Pégourié-Gonnard6622fed2017-05-23 11:29:29 +02001376
1377X509 CRT verify chain #16 (RSA-only profile, EC intermediate)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001378depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001379mbedtls_x509_crt_verify_chain:"data_files/server8.crt data_files/test-int-ca2.crt":"data_files/test-ca.crt":MBEDTLS_X509_BADCERT_BAD_PK|MBEDTLS_X509_BADCERT_BAD_KEY:MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"rsa3072":0
Manuel Pégourié-Gonnard6622fed2017-05-23 11:29:29 +02001380
1381X509 CRT verify chain #17 (SHA-512 profile)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001382depends_on:MBEDTLS_SHA256_C:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED
Manuel Pégourié-Gonnard6b9d53f2017-05-23 12:26:58 +02001383mbedtls_x509_crt_verify_chain:"data_files/server7.crt data_files/test-int-ca.crt":"data_files/test-ca2.crt":MBEDTLS_X509_BADCERT_BAD_MD:MBEDTLS_ERR_X509_CERT_VERIFY_FAILED:"sha512":0
Manuel Pégourié-Gonnard6622fed2017-05-23 11:29:29 +02001384
Manuel Pégourié-Gonnard41859782017-05-23 12:58:53 +02001385X509 CRT verify chain #18 (len=1, vrfy fatal on depth 1)
1386depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA512_C
1387mbedtls_x509_crt_verify_chain:"data_files/server5.crt":"data_files/test-ca2.crt":-1:-2:"":2
1388
1389X509 CRT verify chain #19 (len=0, vrfy fatal on depth 0)
1390depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA512_C
1391mbedtls_x509_crt_verify_chain:"data_files/server5.crt":"data_files/test-ca2.crt":-1:-1:"":1
1392
1393X509 CRT verify chain #20 (len=1, vrfy fatal on depth 0)
1394depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_ECP_DP_SECP384R1_ENABLED:MBEDTLS_SHA512_C:MBEDTLS_SHA1_C:MBEDTLS_RSA_C
1395mbedtls_x509_crt_verify_chain:"data_files/server5.crt":"data_files/test-ca.crt":-1:-1:"":1
1396
1397X509 CRT verify chain #21 (len=3, vrfy fatal on depth 3)
1398depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_PKCS1_V15:MBEDTLS_SHA1_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED
1399mbedtls_x509_crt_verify_chain:"data_files/server10_int3_int-ca2_ca.crt":"data_files/test-ca.crt":-1:-4:"":8
1400
1401X509 CRT verify chain #22 (len=3, vrfy fatal on depth 2)
1402depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_SHA1_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED
1403mbedtls_x509_crt_verify_chain:"data_files/server10_int3_int-ca2_ca.crt":"data_files/test-ca.crt":-1:-3:"":4
1404
1405X509 CRT verify chain #23 (len=3, vrfy fatal on depth 1)
1406depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_SHA1_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED
1407mbedtls_x509_crt_verify_chain:"data_files/server10_int3_int-ca2_ca.crt":"data_files/test-ca.crt":-1:-2:"":2
1408
1409X509 CRT verify chain #24 (len=3, vrfy fatal on depth 0)
1410depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_SHA1_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED
1411mbedtls_x509_crt_verify_chain:"data_files/server10_int3_int-ca2_ca.crt":"data_files/test-ca.crt":-1:-1:"":1
1412
1413X509 CRT verify chain #25 (len=3, vrfy fatal on depth 3, untrusted)
1414depends_on:MBEDTLS_SHA256_C:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_RSA_C:MBEDTLS_SHA1_C:MBEDTLS_ECP_DP_SECP384R1_ENABLED
1415mbedtls_x509_crt_verify_chain:"data_files/server10_int3_int-ca2_ca.crt":"data_files/test-ca2.crt":-1:-4:"":8
1416
Manuel Pégourié-Gonnard7afdb882014-03-28 16:06:35 +01001417X509 OID description #1
1418x509_oid_desc:"2B06010505070301":"TLS Web Server Authentication"
1419
1420X509 OID description #2
1421x509_oid_desc:"2B0601050507030f":"notfound"
1422
1423X509 OID description #3
1424x509_oid_desc:"2B0601050507030100":"notfound"
1425
1426X509 OID numstring #1 (wide buffer)
1427x509_oid_numstr:"2B06010505070301":"1.3.6.1.5.5.7.3.1":20:17
1428
1429X509 OID numstring #2 (buffer just fits)
1430x509_oid_numstr:"2B06010505070301":"1.3.6.1.5.5.7.3.1":18:17
1431
1432X509 OID numstring #3 (buffer too small)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001433x509_oid_numstr:"2B06010505070301":"1.3.6.1.5.5.7.3.1":17:MBEDTLS_ERR_OID_BUF_TOO_SMALL
Manuel Pégourié-Gonnard7afdb882014-03-28 16:06:35 +01001434
1435X509 OID numstring #4 (larger number)
1436x509_oid_numstr:"2A864886F70D":"1.2.840.113549":15:14
1437
1438X509 OID numstring #5 (arithmetic overflow)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001439x509_oid_numstr:"2A8648F9F8F7F6F5F4F3F2F1F001":"":100:MBEDTLS_ERR_OID_BUF_TOO_SMALL
Manuel Pégourié-Gonnard603116c2014-04-09 09:50:03 +02001440
1441X509 crt keyUsage #1 (no extension, expected KU)
palaviva07ecda2016-08-07 11:15:29 +03001442depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnarde6028c92015-04-20 12:19:02 +01001443x509_check_key_usage:"data_files/server1.crt":MBEDTLS_X509_KU_DIGITAL_SIGNATURE|MBEDTLS_X509_KU_KEY_ENCIPHERMENT:0
Manuel Pégourié-Gonnard603116c2014-04-09 09:50:03 +02001444
Paul Bakker1ebc0c52014-05-22 15:47:58 +02001445X509 crt keyUsage #2 (no extension, surprising KU)
palaviva07ecda2016-08-07 11:15:29 +03001446depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001447x509_check_key_usage:"data_files/server1.crt":MBEDTLS_X509_KU_KEY_CERT_SIGN:0
Manuel Pégourié-Gonnard603116c2014-04-09 09:50:03 +02001448
1449X509 crt keyUsage #3 (extension present, no KU)
palaviva07ecda2016-08-07 11:15:29 +03001450depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard603116c2014-04-09 09:50:03 +02001451x509_check_key_usage:"data_files/server1.key_usage.crt":0:0
1452
1453X509 crt keyUsage #4 (extension present, single KU present)
palaviva07ecda2016-08-07 11:15:29 +03001454depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001455x509_check_key_usage:"data_files/server1.key_usage.crt":MBEDTLS_X509_KU_DIGITAL_SIGNATURE:0
Manuel Pégourié-Gonnard603116c2014-04-09 09:50:03 +02001456
1457X509 crt keyUsage #5 (extension present, single KU absent)
palaviva07ecda2016-08-07 11:15:29 +03001458depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001459x509_check_key_usage:"data_files/server1.key_usage.crt":MBEDTLS_X509_KU_KEY_CERT_SIGN:MBEDTLS_ERR_X509_BAD_INPUT_DATA
Manuel Pégourié-Gonnard603116c2014-04-09 09:50:03 +02001460
1461X509 crt keyUsage #6 (extension present, combined KU present)
palaviva07ecda2016-08-07 11:15:29 +03001462depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnarde6028c92015-04-20 12:19:02 +01001463x509_check_key_usage:"data_files/server1.key_usage.crt":MBEDTLS_X509_KU_DIGITAL_SIGNATURE|MBEDTLS_X509_KU_KEY_ENCIPHERMENT:0
Manuel Pégourié-Gonnard603116c2014-04-09 09:50:03 +02001464
1465X509 crt keyUsage #7 (extension present, combined KU both absent)
palaviva07ecda2016-08-07 11:15:29 +03001466depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001467x509_check_key_usage:"data_files/server1.key_usage.crt":MBEDTLS_X509_KU_KEY_CERT_SIGN|MBEDTLS_X509_KU_CRL_SIGN:MBEDTLS_ERR_X509_BAD_INPUT_DATA
Manuel Pégourié-Gonnard603116c2014-04-09 09:50:03 +02001468
1469X509 crt keyUsage #8 (extension present, combined KU one absent)
palaviva07ecda2016-08-07 11:15:29 +03001470depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnarde6028c92015-04-20 12:19:02 +01001471x509_check_key_usage:"data_files/server1.key_usage.crt":MBEDTLS_X509_KU_KEY_ENCIPHERMENT|MBEDTLS_X509_KU_KEY_AGREEMENT:MBEDTLS_ERR_X509_BAD_INPUT_DATA
Manuel Pégourié-Gonnard603116c2014-04-09 09:50:03 +02001472
Manuel Pégourié-Gonnard655a9642015-06-23 10:48:44 +02001473X509 crt keyUsage #9 (extension present, decOnly allowed absent)
palaviva07ecda2016-08-07 11:15:29 +03001474depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard655a9642015-06-23 10:48:44 +02001475x509_check_key_usage:"data_files/server1.key_usage.crt":MBEDTLS_X509_KU_DIGITAL_SIGNATURE|MBEDTLS_X509_KU_KEY_ENCIPHERMENT|MBEDTLS_X509_KU_DECIPHER_ONLY:0
1476
1477X509 crt keyUsage #10 (extension present, decOnly non-allowed present)
palaviva07ecda2016-08-07 11:15:29 +03001478depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard655a9642015-06-23 10:48:44 +02001479x509_check_key_usage:"data_files/keyUsage.decipherOnly.crt":MBEDTLS_X509_KU_DIGITAL_SIGNATURE|MBEDTLS_X509_KU_KEY_ENCIPHERMENT:MBEDTLS_ERR_X509_BAD_INPUT_DATA
1480
1481X509 crt keyUsage #11 (extension present, decOnly allowed present)
palaviva07ecda2016-08-07 11:15:29 +03001482depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard655a9642015-06-23 10:48:44 +02001483x509_check_key_usage:"data_files/keyUsage.decipherOnly.crt":MBEDTLS_X509_KU_DIGITAL_SIGNATURE|MBEDTLS_X509_KU_KEY_ENCIPHERMENT|MBEDTLS_X509_KU_DECIPHER_ONLY:0
1484
Manuel Pégourié-Gonnard7afb8a02014-04-10 17:53:56 +02001485X509 crt extendedKeyUsage #1 (no extension, serverAuth)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001486depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard7afb8a02014-04-10 17:53:56 +02001487x509_check_extended_key_usage:"data_files/server5.crt":"2B06010505070301":0
1488
1489X509 crt extendedKeyUsage #2 (single value, present)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001490depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard7afb8a02014-04-10 17:53:56 +02001491x509_check_extended_key_usage:"data_files/server5.eku-srv.crt":"2B06010505070301":0
1492
1493X509 crt extendedKeyUsage #3 (single value, absent)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001494depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001495x509_check_extended_key_usage:"data_files/server5.eku-cli.crt":"2B06010505070301":MBEDTLS_ERR_X509_BAD_INPUT_DATA
Manuel Pégourié-Gonnard7afb8a02014-04-10 17:53:56 +02001496
1497X509 crt extendedKeyUsage #4 (two values, first)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001498depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard7afb8a02014-04-10 17:53:56 +02001499x509_check_extended_key_usage:"data_files/server5.eku-srv_cli.crt":"2B06010505070301":0
1500
1501X509 crt extendedKeyUsage #5 (two values, second)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001502depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard7afb8a02014-04-10 17:53:56 +02001503x509_check_extended_key_usage:"data_files/server5.eku-srv_cli.crt":"2B06010505070302":0
1504
1505X509 crt extendedKeyUsage #6 (two values, other)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001506depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001507x509_check_extended_key_usage:"data_files/server5.eku-srv_cli.crt":"2B06010505070303":MBEDTLS_ERR_X509_BAD_INPUT_DATA
Manuel Pégourié-Gonnard7afb8a02014-04-10 17:53:56 +02001508
1509X509 crt extendedKeyUsage #7 (any, random)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001510depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard7afb8a02014-04-10 17:53:56 +02001511x509_check_extended_key_usage:"data_files/server5.eku-cs_any.crt":"2B060105050703FF":0
1512
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001513X509 RSASSA-PSS parameters ASN1 (good, all defaults)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001514x509_parse_rsassa_pss_params:"":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:0
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001515
1516X509 RSASSA-PSS parameters ASN1 (wrong initial tag)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001517x509_parse_rsassa_pss_params:"":MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001518
1519X509 RSASSA-PSS parameters ASN1 (unknown tag in top-level sequence)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001520x509_parse_rsassa_pss_params:"A400":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001521
1522X509 RSASSA-PSS parameters ASN1 (good, HashAlg SHA256)
palaviva07ecda2016-08-07 11:15:29 +03001523depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001524x509_parse_rsassa_pss_params:"A00D300B0609608648016503040201":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA256:MBEDTLS_MD_SHA1:20:0
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001525
1526X509 RSASSA-PSS parameters ASN1 (good, explicit HashAlg = default)
palaviva07ecda2016-08-07 11:15:29 +03001527depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001528x509_parse_rsassa_pss_params:"A009300706052B0E03021A":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:0
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001529
1530X509 RSASSA-PSS parameters ASN1 (HashAlg wrong len #1)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001531x509_parse_rsassa_pss_params:"A00A300706052B0E03021A":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001532
1533X509 RSASSA-PSS parameters ASN1 (HashAlg wrong len #2)
palaviva07ecda2016-08-07 11:15:29 +03001534depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001535x509_parse_rsassa_pss_params:"A00A300706052B0E03021A00":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001536
1537X509 RSASSA-PSS parameters ASN1 (HashAlg with parameters)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001538x509_parse_rsassa_pss_params:"A00F300D06096086480165030402013000":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA256:MBEDTLS_MD_SHA1:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_INVALID_DATA
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001539
Paul Bakker237a8472014-06-25 14:45:24 +02001540X509 RSASSA-PSS parameters ASN1 (HashAlg unknown OID)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001541x509_parse_rsassa_pss_params:"A00D300B06096086480165030402FF":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA256:MBEDTLS_MD_SHA1:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_OID_NOT_FOUND
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001542
1543X509 RSASSA-PSS parameters ASN1 (good, MGAlg = MGF1-SHA256)
palaviva07ecda2016-08-07 11:15:29 +03001544depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001545x509_parse_rsassa_pss_params:"A11A301806092A864886F70D010108300B0609608648016503040201":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:0
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001546
1547X509 RSASSA-PSS parameters ASN1 (good, explicit MGAlg = default)
palaviva07ecda2016-08-07 11:15:29 +03001548depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001549x509_parse_rsassa_pss_params:"A116301406092A864886F70D010108300706052B0E03021A":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:0
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001550
1551X509 RSASSA-PSS parameters ASN1 (MGAlg wrong len #1)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001552x509_parse_rsassa_pss_params:"A11B301806092A864886F70D010108300B0609608648016503040201":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001553
1554X509 RSASSA-PSS parameters ASN1 (MGAlg wrong len #2)
palaviva07ecda2016-08-07 11:15:29 +03001555depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001556x509_parse_rsassa_pss_params:"A11B301806092A864886F70D010108300B060960864801650304020100":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001557
1558X509 RSASSA-PSS parameters ASN1 (MGAlg AlgId wrong len #1)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001559x509_parse_rsassa_pss_params:"A11A301906092A864886F70D010108300B0609608648016503040201":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001560
1561X509 RSASSA-PSS parameters ASN1 (MGAlg OID != MGF1)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001562x509_parse_rsassa_pss_params:"A11A301806092A864886F70D010109300B0609608648016503040201":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:MBEDTLS_ERR_X509_FEATURE_UNAVAILABLE + MBEDTLS_ERR_OID_NOT_FOUND
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001563
1564X509 RSASSA-PSS parameters ASN1 (MGAlg.params wrong tag)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001565x509_parse_rsassa_pss_params:"A11A301806092A864886F70D010108310B0609608648016503040201":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001566
1567X509 RSASSA-PSS parameters ASN1 (MGAlg.params wrong len #1a)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001568x509_parse_rsassa_pss_params:"A10F300D06092A864886F70D0101083000":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001569
1570X509 RSASSA-PSS parameters ASN1 (MGAlg.params wrong len #1b)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001571x509_parse_rsassa_pss_params:"A11B301906092A864886F70D010108300C0609608648016503040201":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001572
1573X509 RSASSA-PSS parameters ASN1 (MGAlg.params.alg not an OID)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001574x509_parse_rsassa_pss_params:"A11A301806092A864886F70D010108300B0709608648016503040201":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001575
1576X509 RSASSA-PSS parameters ASN1 (MGAlg.params.alg unknown OID)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001577x509_parse_rsassa_pss_params:"A11A301806092A864886F70D010108300B06096086480165030402FF":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_OID_NOT_FOUND
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001578
1579X509 RSASSA-PSS parameters ASN1 (MGAlg.params.params NULL)
palaviva07ecda2016-08-07 11:15:29 +03001580depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001581x509_parse_rsassa_pss_params:"A11C301A06092A864886F70D010108300D06096086480165030402010500":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:0
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001582
1583X509 RSASSA-PSS parameters ASN1 (MGAlg.params.params wrong tag)
palaviva07ecda2016-08-07 11:15:29 +03001584depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001585x509_parse_rsassa_pss_params:"A11C301A06092A864886F70D010108300D06096086480165030402013000":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001586
1587X509 RSASSA-PSS parameters ASN1 (MGAlg.params wrong len #1c)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001588x509_parse_rsassa_pss_params:"A11D301B06092A864886F70D010108300E06096086480165030402010500":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001589
1590X509 RSASSA-PSS parameters ASN1 (MGAlg.params wrong len #2)
palaviva07ecda2016-08-07 11:15:29 +03001591depends_on:MBEDTLS_RSA_C:MBEDTLS_SHA256_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001592x509_parse_rsassa_pss_params:"A11D301B06092A864886F70D010108300E0609608648016503040201050000":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA256:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001593
1594X509 RSASSA-PSS parameters ASN1 (good, saltLen = 94)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001595x509_parse_rsassa_pss_params:"A20302015E":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:94:0
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001596
1597X509 RSASSA-PSS parameters ASN1 (good, explicit saltLen = default)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001598x509_parse_rsassa_pss_params:"A203020114":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:0
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001599
1600X509 RSASSA-PSS parameters ASN1 (saltLen wrong len #1)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001601x509_parse_rsassa_pss_params:"A20402015E":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:94:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001602
1603X509 RSASSA-PSS parameters ASN1 (saltLen wrong len #2)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001604x509_parse_rsassa_pss_params:"A20402015E00":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:94:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001605
1606X509 RSASSA-PSS parameters ASN1 (saltLen not an int)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001607x509_parse_rsassa_pss_params:"A2023000":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:94:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001608
1609X509 RSASSA-PSS parameters ASN1 (good, explicit trailerField = default)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001610x509_parse_rsassa_pss_params:"A303020101":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:0
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001611
1612X509 RSASSA-PSS parameters ASN1 (trailerField wrong len #1)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001613x509_parse_rsassa_pss_params:"A304020101":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001614
1615X509 RSASSA-PSS parameters ASN1 (trailerField wrong len #2)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001616x509_parse_rsassa_pss_params:"A30402010100":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001617
1618X509 RSASSA-PSS parameters ASN1 (trailerField not an int)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001619x509_parse_rsassa_pss_params:"A3023000":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001620
1621X509 RSASSA-PSS parameters ASN1 (trailerField not 1)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001622x509_parse_rsassa_pss_params:"A303020102":MBEDTLS_ASN1_CONSTRUCTED | MBEDTLS_ASN1_SEQUENCE:MBEDTLS_MD_SHA1:MBEDTLS_MD_SHA1:20:MBEDTLS_ERR_X509_INVALID_ALG
Manuel Pégourié-Gonnard85403692014-06-06 14:48:38 +02001623
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001624X509 CSR ASN.1 (OK)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001625depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001626mbedtls_x509_csr_parse:"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":"CSR version \: 1\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nsigned using \: ECDSA with SHA1\nEC key size \: 256 bits\n":0
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001627
1628X509 CSR ASN.1 (bad first tag)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001629mbedtls_x509_csr_parse:"3100":"":MBEDTLS_ERR_X509_INVALID_FORMAT
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001630
1631X509 CSR ASN.1 (bad sequence: overlong)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001632mbedtls_x509_csr_parse:"3001":"":MBEDTLS_ERR_X509_INVALID_FORMAT
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001633
1634X509 CSR ASN.1 (total length mistmatch)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001635mbedtls_x509_csr_parse:"30010000":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001636
1637X509 CSR ASN.1 (bad CRI: not a sequence)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001638mbedtls_x509_csr_parse:"30023100":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001639
1640X509 CSR ASN.1 (bad CRI: overlong)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001641mbedtls_x509_csr_parse:"30023001":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001642
1643X509 CSR ASN.1 (bad CRI.Version: overlong)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001644mbedtls_x509_csr_parse:"30053002020100":"":MBEDTLS_ERR_X509_INVALID_VERSION + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001645
1646X509 CSR ASN.1 (bad CRI.Version: not v1)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001647mbedtls_x509_csr_parse:"30053003020101":"":MBEDTLS_ERR_X509_UNKNOWN_VERSION
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001648
1649X509 CSR ASN.1 (bad CRI.Name: not a sequence)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001650mbedtls_x509_csr_parse:"300730050201003100":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001651
1652X509 CSR ASN.1 (bad CRI.Name: overlong)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001653mbedtls_x509_csr_parse:"30083005020100300100":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001654
1655X509 CSR ASN.1 (bad CRI.Name payload: not a set)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001656mbedtls_x509_csr_parse:"3009300702010030023000":"":MBEDTLS_ERR_X509_INVALID_NAME + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001657
1658X509 CSR ASN.1 (bad CRI.Name payload: overlong)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001659mbedtls_x509_csr_parse:"300A30080201003002310100":"":MBEDTLS_ERR_X509_INVALID_NAME + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001660
1661X509 CSR ASN.1 (bad SubjectPublicKeyInfo: missing)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001662mbedtls_x509_csr_parse:"30143012020100300D310B3009060355040613024E4C":"":MBEDTLS_ERR_PK_KEY_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001663
1664X509 CSR ASN.1 (bad SubjectPublicKeyInfo: not a sequence)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001665mbedtls_x509_csr_parse:"30163014020100300D310B3009060355040613024E4C3100":"":MBEDTLS_ERR_PK_KEY_INVALID_FORMAT + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001666
1667X509 CSR ASN.1 (bad SubjectPublicKeyInfo: overlong)
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001668mbedtls_x509_csr_parse:"30173014020100300D310B3009060355040613024E4C300100":"":MBEDTLS_ERR_PK_KEY_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001669
1670X509 CSR ASN.1 (bad attributes: missing)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001671depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001672mbedtls_x509_csr_parse:"3081973081940201003034310B3009060355040613024E4C3111300F060355040A1308506F6C617253534C31123010060355040313096C6F63616C686F73743059301306072A8648CE3D020106082A8648CE3D0301070342000437CC56D976091E5A723EC7592DFF206EEE7CF9069174D0AD14B5F768225962924EE500D82311FFEA2FD2345D5D16BD8A88C26B770D55CD8A2A0EFA01C8B4EDFF":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001673
1674X509 CSR ASN.1 (bad attributes: bad tag)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001675depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001676mbedtls_x509_csr_parse:"3081993081960201003034310B3009060355040613024E4C3111300F060355040A1308506F6C617253534C31123010060355040313096C6F63616C686F73743059301306072A8648CE3D020106082A8648CE3D0301070342000437CC56D976091E5A723EC7592DFF206EEE7CF9069174D0AD14B5F768225962924EE500D82311FFEA2FD2345D5D16BD8A88C26B770D55CD8A2A0EFA01C8B4EDFF0500":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001677
1678X509 CSR ASN.1 (bad attributes: overlong)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001679depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001680mbedtls_x509_csr_parse:"30819A3081960201003034310B3009060355040613024E4C3111300F060355040A1308506F6C617253534C31123010060355040313096C6F63616C686F73743059301306072A8648CE3D020106082A8648CE3D0301070342000437CC56D976091E5A723EC7592DFF206EEE7CF9069174D0AD14B5F768225962924EE500D82311FFEA2FD2345D5D16BD8A88C26B770D55CD8A2A0EFA01C8B4EDFFA00100":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001681
1682X509 CSR ASN.1 (bad sigAlg: missing)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001683depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001684mbedtls_x509_csr_parse:"3081C23081BF0201003034310B3009060355040613024E4C3111300F060355040A1308506F6C617253534C31123010060355040313096C6F63616C686F73743059301306072A8648CE3D020106082A8648CE3D0301070342000437CC56D976091E5A723EC7592DFF206EEE7CF9069174D0AD14B5F768225962924EE500D82311FFEA2FD2345D5D16BD8A88C26B770D55CD8A2A0EFA01C8B4EDFFA029302706092A864886F70D01090E311A301830090603551D1304023000300B0603551D0F0404030205E0":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001685
1686X509 CSR ASN.1 (bad sigAlg: not a sequence)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001687depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001688mbedtls_x509_csr_parse:"3081C43081BF0201003034310B3009060355040613024E4C3111300F060355040A1308506F6C617253534C31123010060355040313096C6F63616C686F73743059301306072A8648CE3D020106082A8648CE3D0301070342000437CC56D976091E5A723EC7592DFF206EEE7CF9069174D0AD14B5F768225962924EE500D82311FFEA2FD2345D5D16BD8A88C26B770D55CD8A2A0EFA01C8B4EDFFA029302706092A864886F70D01090E311A301830090603551D1304023000300B0603551D0F0404030205E03100":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001689
1690X509 CSR ASN.1 (bad sigAlg: overlong)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001691depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001692mbedtls_x509_csr_parse:"3081C43081BF0201003034310B3009060355040613024E4C3111300F060355040A1308506F6C617253534C31123010060355040313096C6F63616C686F73743059301306072A8648CE3D020106082A8648CE3D0301070342000437CC56D976091E5A723EC7592DFF206EEE7CF9069174D0AD14B5F768225962924EE500D82311FFEA2FD2345D5D16BD8A88C26B770D55CD8A2A0EFA01C8B4EDFFA029302706092A864886F70D01090E311A301830090603551D1304023000300B0603551D0F0404030205E03001":"":MBEDTLS_ERR_X509_INVALID_ALG + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001693
1694X509 CSR ASN.1 (bad sigAlg: unknown)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001695depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001696mbedtls_x509_csr_parse:"3081CD3081BF0201003034310B3009060355040613024E4C3111300F060355040A1308506F6C617253534C31123010060355040313096C6F63616C686F73743059301306072A8648CE3D020106082A8648CE3D0301070342000437CC56D976091E5A723EC7592DFF206EEE7CF9069174D0AD14B5F768225962924EE500D82311FFEA2FD2345D5D16BD8A88C26B770D55CD8A2A0EFA01C8B4EDFFA029302706092A864886F70D01090E311A301830090603551D1304023000300B0603551D0F0404030205E0300906072A8648CE3D04FF":"":MBEDTLS_ERR_X509_UNKNOWN_SIG_ALG
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001697
1698X509 CSR ASN.1 (bad sig: missing)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001699depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001700mbedtls_x509_csr_parse:"3081CD3081BF0201003034310B3009060355040613024E4C3111300F060355040A1308506F6C617253534C31123010060355040313096C6F63616C686F73743059301306072A8648CE3D020106082A8648CE3D0301070342000437CC56D976091E5A723EC7592DFF206EEE7CF9069174D0AD14B5F768225962924EE500D82311FFEA2FD2345D5D16BD8A88C26B770D55CD8A2A0EFA01C8B4EDFFA029302706092A864886F70D01090E311A301830090603551D1304023000300B0603551D0F0404030205E0300906072A8648CE3D0401":"":MBEDTLS_ERR_X509_INVALID_SIGNATURE + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001701
1702X509 CSR ASN.1 (bad sig: not a bit string)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001703depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001704mbedtls_x509_csr_parse:"3081CF3081BF0201003034310B3009060355040613024E4C3111300F060355040A1308506F6C617253534C31123010060355040313096C6F63616C686F73743059301306072A8648CE3D020106082A8648CE3D0301070342000437CC56D976091E5A723EC7592DFF206EEE7CF9069174D0AD14B5F768225962924EE500D82311FFEA2FD2345D5D16BD8A88C26B770D55CD8A2A0EFA01C8B4EDFFA029302706092A864886F70D01090E311A301830090603551D1304023000300B0603551D0F0404030205E0300906072A8648CE3D04010400":"":MBEDTLS_ERR_X509_INVALID_SIGNATURE + MBEDTLS_ERR_ASN1_UNEXPECTED_TAG
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001705
1706X509 CSR ASN.1 (bad sig: overlong)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001707depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001708mbedtls_x509_csr_parse:"3081CF3081BF0201003034310B3009060355040613024E4C3111300F060355040A1308506F6C617253534C31123010060355040313096C6F63616C686F73743059301306072A8648CE3D020106082A8648CE3D0301070342000437CC56D976091E5A723EC7592DFF206EEE7CF9069174D0AD14B5F768225962924EE500D82311FFEA2FD2345D5D16BD8A88C26B770D55CD8A2A0EFA01C8B4EDFFA029302706092A864886F70D01090E311A301830090603551D1304023000300B0603551D0F0404030205E0300906072A8648CE3D04010301":"":MBEDTLS_ERR_X509_INVALID_SIGNATURE + MBEDTLS_ERR_ASN1_OUT_OF_DATA
Manuel Pégourié-Gonnardd77cd5d2014-06-13 11:13:15 +02001709
1710X509 CSR ASN.1 (extra data after signature)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001711depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA1_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001712mbedtls_x509_csr_parse:"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":"":MBEDTLS_ERR_X509_INVALID_FORMAT + MBEDTLS_ERR_ASN1_LENGTH_MISMATCH
Paul Bakker5a5fa922014-09-26 14:53:04 +02001713
Andres AGf00baff2017-03-07 10:57:34 +00001714X509 CSR ASN.1 (invalid version overflow)
1715mbedtls_x509_csr_parse:"3008300602047FFFFFFF":"":MBEDTLS_ERR_X509_UNKNOWN_VERSION
1716
Paul Bakker5a5fa922014-09-26 14:53:04 +02001717X509 File parse (no issues)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001718depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C:MBEDTLS_RSA_C
Paul Bakker5a5fa922014-09-26 14:53:04 +02001719x509parse_crt_file:"data_files/server7_int-ca.crt":0
1720
1721X509 File parse (extra space in one certificate)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001722depends_on:MBEDTLS_ECDSA_C:MBEDTLS_SHA256_C:MBEDTLS_RSA_C
Paul Bakker5a5fa922014-09-26 14:53:04 +02001723x509parse_crt_file:"data_files/server7_pem_space.crt":1
1724
1725X509 File parse (all certificates fail)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001726depends_on:MBEDTLS_ECDSA_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard2cf5a7c2015-04-08 12:49:31 +02001727x509parse_crt_file:"data_files/server7_all_space.crt":MBEDTLS_ERR_PEM_INVALID_DATA + MBEDTLS_ERR_BASE64_INVALID_CHARACTER
Manuel Pégourié-Gonnard052d10c2015-07-31 11:09:59 +02001728
1729X509 File parse (trailing spaces, OK)
Manuel Pégourié-Gonnard43be6cd2017-06-20 09:53:42 +02001730depends_on:MBEDTLS_ECDSA_C:MBEDTLS_ECP_DP_SECP256R1_ENABLED:MBEDTLS_SHA256_C:MBEDTLS_RSA_C
Manuel Pégourié-Gonnard052d10c2015-07-31 11:09:59 +02001731x509parse_crt_file:"data_files/server7_trailing_space.crt":0
Andres AG4b76aec2016-09-23 13:16:02 +01001732
1733X509 Get time (UTC no issues)
1734depends_on:MBEDTLS_X509_USE_C
1735x509_get_time:MBEDTLS_ASN1_UTC_TIME:"500101000000Z":0:1950:1:1:0:0:0
1736
1737X509 Get time (Generalized Time no issues)
1738depends_on:MBEDTLS_X509_USE_C
1739x509_get_time:MBEDTLS_ASN1_GENERALIZED_TIME:"99991231235959Z":0:9999:12:31:23:59:59
1740
1741X509 Get time (UTC year without leap day)
1742depends_on:MBEDTLS_X509_USE_C
1743x509_get_time:MBEDTLS_ASN1_UTC_TIME:"490229121212Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1744
1745X509 Get time (UTC year with leap day)
1746depends_on:MBEDTLS_X509_USE_C
1747x509_get_time:MBEDTLS_ASN1_UTC_TIME:"000229121212Z":0:2000:2:29:12:12:12
1748
1749X509 Get time (UTC invalid day of month #1)
1750depends_on:MBEDTLS_X509_USE_C
1751x509_get_time:MBEDTLS_ASN1_UTC_TIME:"000132121212Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1752
1753X509 Get time (UTC invalid day of month #2)
1754depends_on:MBEDTLS_X509_USE_C
1755x509_get_time:MBEDTLS_ASN1_UTC_TIME:"001131121212Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1756
1757X509 Get time (UTC invalid hour)
1758depends_on:MBEDTLS_X509_USE_C
1759x509_get_time:MBEDTLS_ASN1_UTC_TIME:"001130241212Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1760
1761X509 Get time (UTC invalid min)
1762depends_on:MBEDTLS_X509_USE_C
1763x509_get_time:MBEDTLS_ASN1_UTC_TIME:"001130236012Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1764
1765X509 Get time (UTC invalid sec)
1766depends_on:MBEDTLS_X509_USE_C
1767x509_get_time:MBEDTLS_ASN1_UTC_TIME:"001130235960Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
Janos Follathea7054a2017-02-08 14:13:02 +00001768
1769X509 Get time (UTC without time zone)
1770depends_on:MBEDTLS_X509_USE_C
1771x509_get_time:MBEDTLS_ASN1_UTC_TIME:"000229121212":0:2000:2:29:12:12:12
1772
1773X509 Get time (UTC with invalid time zone #1)
1774depends_on:MBEDTLS_X509_USE_C
1775x509_get_time:MBEDTLS_ASN1_UTC_TIME:"000229121212J":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1776
1777X509 Get time (UTC with invalid time zone #2)
1778depends_on:MBEDTLS_X509_USE_C
1779x509_get_time:MBEDTLS_ASN1_UTC_TIME:"000229121212+0300":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1780
1781X509 Get time (Date with invalid tag)
1782depends_on:MBEDTLS_X509_USE_C
1783x509_get_time:MBEDTLS_ASN1_CONTEXT_SPECIFIC:"000229121212":MBEDTLS_ERR_X509_INVALID_DATE+MBEDTLS_ERR_ASN1_UNEXPECTED_TAG:0:0:0:0:0:0
1784
1785X509 Get time (UTC, truncated)
1786depends_on:MBEDTLS_X509_USE_C
1787x509_get_time:MBEDTLS_ASN1_UTC_TIME:"000229121":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1788
1789X509 Get time (Generalized Time, truncated)
1790depends_on:MBEDTLS_X509_USE_C
1791x509_get_time:MBEDTLS_ASN1_GENERALIZED_TIME:"20000229121":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1792
1793X509 Get time (UTC without seconds)
1794depends_on:MBEDTLS_X509_USE_C
1795x509_get_time:MBEDTLS_ASN1_UTC_TIME:"0002291212":MBEDTLS_ERR_X509_INVALID_DATE:2000:2:29:12:12:0
1796
1797X509 Get time (UTC without seconds and with invalid time zone #1)
1798depends_on:MBEDTLS_X509_USE_C
1799x509_get_time:MBEDTLS_ASN1_UTC_TIME:"0002291212J":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1800
1801X509 Get time (UTC without second and with invalid time zone #2)
1802depends_on:MBEDTLS_X509_USE_C
1803x509_get_time:MBEDTLS_ASN1_UTC_TIME:"0002291212+0300":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1804
1805X509 Get time (UTC invalid character in year)
1806depends_on:MBEDTLS_X509_USE_C
1807x509_get_time:MBEDTLS_ASN1_UTC_TIME:"0\1130231212Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1808
1809X509 Get time (UTC invalid character in month)
1810depends_on:MBEDTLS_X509_USE_C
1811x509_get_time:MBEDTLS_ASN1_UTC_TIME:"001%30231212Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1812
1813X509 Get time (UTC invalid character in day)
1814depends_on:MBEDTLS_X509_USE_C
1815x509_get_time:MBEDTLS_ASN1_UTC_TIME:"0011`0231212Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1816
1817X509 Get time (UTC invalid character in hour)
1818depends_on:MBEDTLS_X509_USE_C
1819x509_get_time:MBEDTLS_ASN1_UTC_TIME:"0011302h1212Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1820
1821X509 Get time (UTC invalid character in min)
1822depends_on:MBEDTLS_X509_USE_C
1823x509_get_time:MBEDTLS_ASN1_UTC_TIME:"00113023u012Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1824
1825X509 Get time (UTC invalid character in sec)
1826depends_on:MBEDTLS_X509_USE_C
1827x509_get_time:MBEDTLS_ASN1_UTC_TIME:"0011302359n0Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1828
Andres Amaya Garcia60100d02017-10-06 17:05:24 +01001829X509 Get time (Generalized Time, year multiple of 100 but not 400 is not a leap year)
Andres Amaya Garcia735b37e2016-11-21 15:38:02 +00001830depends_on:MBEDTLS_X509_USE_C
1831x509_get_time:MBEDTLS_ASN1_GENERALIZED_TIME:"19000229000000Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0
1832
Andres Amaya Garcia60100d02017-10-06 17:05:24 +01001833X509 Get time (Generalized Time, year multiple of 4 but not 100 is a leap year)
Andres Amaya Garcia735b37e2016-11-21 15:38:02 +00001834depends_on:MBEDTLS_X509_USE_C
1835x509_get_time:MBEDTLS_ASN1_GENERALIZED_TIME:"19920229000000Z":0:1992:2:29:0:0:0
1836
Andres Amaya Garcia60100d02017-10-06 17:05:24 +01001837X509 Get time (Generalized Time, year multiple of 400 is a leap year)
Andres Amaya Garcia735b37e2016-11-21 15:38:02 +00001838depends_on:MBEDTLS_X509_USE_C
1839x509_get_time:MBEDTLS_ASN1_GENERALIZED_TIME:"20000229000000Z":0:2000:2:29:0:0:0
1840
1841X509 Get time (Generalized Time invalid leap year not multiple of 4, 100 or 400)
1842depends_on:MBEDTLS_X509_USE_C
1843x509_get_time:MBEDTLS_ASN1_GENERALIZED_TIME:"19910229000000Z":MBEDTLS_ERR_X509_INVALID_DATE:0:0:0:0:0:0