blob: 61220cfc94ed262e5a169c82636cdcf69814eb48 [file] [log] [blame]
Paul Bakker37940d9f2009-07-10 22:38:58 +00001X509 Certificate information #1
Paul Bakker335db3f2011-04-25 15:28:35 +00002depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +02003x509_cert_info:"data_files/server1.crt":"cert. version \: 3\nserial number \: 01\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Server 1\nissued on \: 2011-02-12 14\:44\:06\nexpires on \: 2021-02-12 14\:44\:06\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\n"
Paul Bakker37940d9f2009-07-10 22:38:58 +00004
5X509 Certificate information #2
Paul Bakker335db3f2011-04-25 15:28:35 +00006depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +02007x509_cert_info:"data_files/server2.crt":"cert. version \: 3\nserial number \: 02\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=localhost\nissued on \: 2011-02-12 14\:44\:06\nexpires on \: 2021-02-12 14\:44\:06\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\n"
Paul Bakker37940d9f2009-07-10 22:38:58 +00008
Paul Bakkerc26a1892009-07-19 20:30:14 +00009X509 Certificate information #3
Paul Bakker335db3f2011-04-25 15:28:35 +000010depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020011x509_cert_info:"data_files/test-ca.crt":"cert. version \: 3\nserial number \: 00\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nissued on \: 2011-02-12 14\:44\:00\nexpires on \: 2021-02-12 14\:44\:00\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\n"
Paul Bakker37940d9f2009-07-10 22:38:58 +000012
Paul Bakkerc26a1892009-07-19 20:30:14 +000013X509 Certificate information MD2 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000014depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020015x509_cert_info:"data_files/cert_md2.crt":"cert. version \: 3\nserial number \: 09\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert MD2\nissued on \: 2009-07-12 10\:56\:59\nexpires on \: 2011-07-12 10\:56\:59\nsigned using \: RSA with MD2\nRSA key size \: 2048 bits\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000016
17X509 Certificate information MD4 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000018depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020019x509_cert_info:"data_files/cert_md4.crt":"cert. version \: 3\nserial number \: 05\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert MD4\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with MD4\nRSA key size \: 2048 bits\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000020
21X509 Certificate information MD5 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000022depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020023x509_cert_info:"data_files/cert_md5.crt":"cert. version \: 3\nserial number \: 06\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert MD5\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with MD5\nRSA key size \: 2048 bits\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000024
25X509 Certificate information SHA1 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000026depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020027x509_cert_info:"data_files/cert_sha1.crt":"cert. version \: 3\nserial number \: 07\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert SHA1\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with SHA1\nRSA key size \: 2048 bits\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000028
29X509 Certificate information SHA224 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000030depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020031x509_cert_info:"data_files/cert_sha224.crt":"cert. version \: 3\nserial number \: 08\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert SHA224\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with SHA-224\nRSA key size \: 2048 bits\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000032
33X509 Certificate information SHA256 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000034depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020035x509_cert_info:"data_files/cert_sha256.crt":"cert. version \: 3\nserial number \: 09\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert SHA256\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with SHA-256\nRSA key size \: 2048 bits\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000036
37X509 Certificate information SHA384 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000038depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020039x509_cert_info:"data_files/cert_sha384.crt":"cert. version \: 3\nserial number \: 0A\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert SHA384\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with SHA-384\nRSA key size \: 2048 bits\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000040
41X509 Certificate information SHA512 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000042depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020043x509_cert_info:"data_files/cert_sha512.crt":"cert. version \: 3\nserial number \: 0B\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nsubject name \: C=NL, O=PolarSSL, CN=PolarSSL Cert SHA512\nissued on \: 2011-02-12 14\:44\:07\nexpires on \: 2021-02-12 14\:44\:07\nsigned using \: RSA with SHA-512\nRSA key size \: 2048 bits\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000044
Paul Bakker37940d9f2009-07-10 22:38:58 +000045X509 CRL information #1
Paul Bakker335db3f2011-04-25 15:28:35 +000046depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020047x509_crl_info:"data_files/crl_expired.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-20 10\:24\:19\nnext update \: 2011-02-20 11\:24\:19\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with SHA1\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000048
49X509 CRL Information MD2 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000050depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020051x509_crl_info:"data_files/crl_md2.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2009-07-19 19\:56\:37\nnext update \: 2009-09-17 19\:56\:37\nRevoked certificates\:\nserial number\: 01 revocation date\: 2009-02-09 21\:12\:36\nserial number\: 03 revocation date\: 2009-02-09 21\:12\:36\nsigned using \: RSA with MD2\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000052
53X509 CRL Information MD4 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000054depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020055x509_crl_info:"data_files/crl_md4.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with MD4\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000056
57X509 CRL Information MD5 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000058depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020059x509_crl_info:"data_files/crl_md5.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with MD5\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000060
61X509 CRL Information SHA1 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000062depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020063x509_crl_info:"data_files/crl_sha1.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with SHA1\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000064
65X509 CRL Information SHA224 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000066depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020067x509_crl_info:"data_files/crl_sha224.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with SHA-224\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000068
69X509 CRL Information SHA256 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000070depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020071x509_crl_info:"data_files/crl_sha256.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with SHA-256\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000072
73X509 CRL Information SHA384 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000074depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020075x509_crl_info:"data_files/crl_sha384.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with SHA-384\n"
Paul Bakkerc26a1892009-07-19 20:30:14 +000076
77X509 CRL Information SHA512 Digest
Paul Bakker335db3f2011-04-25 15:28:35 +000078depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerc70b9822013-04-07 22:00:46 +020079x509_crl_info:"data_files/crl_sha512.pem":"CRL version \: 1\nissuer name \: C=NL, O=PolarSSL, CN=PolarSSL Test CA\nthis update \: 2011-02-12 14\:44\:07\nnext update \: 2011-04-13 14\:44\:07\nRevoked certificates\:\nserial number\: 01 revocation date\: 2011-02-12 14\:44\:07\nserial number\: 03 revocation date\: 2011-02-12 14\:44\:07\nsigned using \: RSA with SHA-512\n"
Paul Bakker37940d9f2009-07-10 22:38:58 +000080
81X509 Parse Key #1 (No password when required)
Paul Bakker335db3f2011-04-25 15:28:35 +000082depends_on:POLARSSL_MD5_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker96743fc2011-02-12 14:30:57 +000083x509parse_keyfile:"data_files/test-ca.key":NULL:POLARSSL_ERR_PEM_PASSWORD_REQUIRED
Paul Bakker37940d9f2009-07-10 22:38:58 +000084
85X509 Parse Key #2 (Correct password)
Paul Bakker335db3f2011-04-25 15:28:35 +000086depends_on:POLARSSL_MD5_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker6b0fa4f2009-07-20 20:35:41 +000087x509parse_keyfile:"data_files/test-ca.key":"PolarSSLTest":0
Paul Bakker37940d9f2009-07-10 22:38:58 +000088
89X509 Parse Key #3 (Wrong password)
Paul Bakker335db3f2011-04-25 15:28:35 +000090depends_on:POLARSSL_MD5_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker96743fc2011-02-12 14:30:57 +000091x509parse_keyfile:"data_files/test-ca.key":"PolarSSLWRONG":POLARSSL_ERR_PEM_PASSWORD_MISMATCH
92
93X509 Parse Key #4 (DES Encrypted)
Paul Bakker335db3f2011-04-25 15:28:35 +000094depends_on:POLARSSL_MD5_C:POLARSSL_DES_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker96743fc2011-02-12 14:30:57 +000095x509parse_keyfile:"data_files/keyfile.des":"testkey":0
96
97X509 Parse Key #5 (3DES Encrypted)
Paul Bakker335db3f2011-04-25 15:28:35 +000098depends_on:POLARSSL_MD5_C:POLARSSL_DES_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker96743fc2011-02-12 14:30:57 +000099x509parse_keyfile:"data_files/keyfile.3des":"testkey":0
100
101X509 Parse Key #6 (AES-128 Encrypted)
Paul Bakker335db3f2011-04-25 15:28:35 +0000102depends_on:POLARSSL_MD5_C:POLARSSL_AES_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker96743fc2011-02-12 14:30:57 +0000103x509parse_keyfile:"data_files/keyfile.aes128":"testkey":0
104
105X509 Parse Key #7 (AES-192 Encrypted)
Paul Bakker335db3f2011-04-25 15:28:35 +0000106depends_on:POLARSSL_MD5_C:POLARSSL_AES_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker96743fc2011-02-12 14:30:57 +0000107x509parse_keyfile:"data_files/keyfile.aes192":"testkey":0
108
109X509 Parse Key #8 (AES-256 Encrypted)
Paul Bakker335db3f2011-04-25 15:28:35 +0000110depends_on:POLARSSL_MD5_C:POLARSSL_AES_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker96743fc2011-02-12 14:30:57 +0000111x509parse_keyfile:"data_files/keyfile.aes256":"testkey":0
Paul Bakker37940d9f2009-07-10 22:38:58 +0000112
Paul Bakker36f1b192011-07-13 11:32:29 +0000113X509 Parse Key #9 (PKCS#8 wrapped)
114depends_on:POLARSSL_MD5_C:POLARSSL_PEM_C:POLARSSL_FS_IO
115x509parse_keyfile:"data_files/format_gen.key":"":0
116
117X509 Parse Public Key #1 (PKCS#8 wrapped)
118depends_on:POLARSSL_MD5_C:POLARSSL_PEM_C:POLARSSL_FS_IO
119x509parse_public_keyfile:"data_files/format_gen.pub":0
120
Paul Bakker37940d9f2009-07-10 22:38:58 +0000121X509 Get Distinguished Name #1
Paul Bakker335db3f2011-04-25 15:28:35 +0000122depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker37940d9f2009-07-10 22:38:58 +0000123x509_dn_gets:"data_files/server1.crt":subject:"C=NL, O=PolarSSL, CN=PolarSSL Server 1"
124
125X509 Get Distinguished Name #2
Paul Bakker335db3f2011-04-25 15:28:35 +0000126depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker37940d9f2009-07-10 22:38:58 +0000127x509_dn_gets:"data_files/server1.crt":issuer:"C=NL, O=PolarSSL, CN=PolarSSL Test CA"
128
129X509 Get Distinguished Name #3
Paul Bakker335db3f2011-04-25 15:28:35 +0000130depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker37940d9f2009-07-10 22:38:58 +0000131x509_dn_gets:"data_files/server2.crt":subject:"C=NL, O=PolarSSL, CN=localhost"
132
133X509 Get Distinguished Name #4
Paul Bakker335db3f2011-04-25 15:28:35 +0000134depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker37940d9f2009-07-10 22:38:58 +0000135x509_dn_gets:"data_files/server2.crt":issuer:"C=NL, O=PolarSSL, CN=PolarSSL Test CA"
136
137X509 Time Expired #1
Paul Bakker335db3f2011-04-25 15:28:35 +0000138depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker37940d9f2009-07-10 22:38:58 +0000139x509_time_expired:"data_files/server1.crt":valid_from:1
140
141X509 Time Expired #2
Paul Bakker335db3f2011-04-25 15:28:35 +0000142depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker37940d9f2009-07-10 22:38:58 +0000143x509_time_expired:"data_files/server1.crt":valid_to:0
144
145X509 Time Expired #3
Paul Bakker335db3f2011-04-25 15:28:35 +0000146depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker37940d9f2009-07-10 22:38:58 +0000147x509_time_expired:"data_files/server2.crt":valid_from:1
148
149X509 Time Expired #4
Paul Bakker335db3f2011-04-25 15:28:35 +0000150depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker37940d9f2009-07-10 22:38:58 +0000151x509_time_expired:"data_files/server2.crt":valid_to:0
152
153X509 Time Expired #5
Paul Bakker335db3f2011-04-25 15:28:35 +0000154depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker37940d9f2009-07-10 22:38:58 +0000155x509_time_expired:"data_files/test-ca.crt":valid_from:1
156
Paul Bakker335db3f2011-04-25 15:28:35 +0000157X509 Time Expired #6:POLARSSL_FS_IO
158depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker37940d9f2009-07-10 22:38:58 +0000159x509_time_expired:"data_files/test-ca.crt":valid_to:0
160
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000161X509 Certificate verification #1 (Revoked Cert, Expired CRL)
Paul Bakker335db3f2011-04-25 15:28:35 +0000162depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000163x509_verify:"data_files/server1.crt":"data_files/test-ca.crt":"data_files/crl_expired.pem":NULL:POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_REVOKED | BADCRL_EXPIRED:NULL
Paul Bakker37940d9f2009-07-10 22:38:58 +0000164
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000165X509 Certificate verification #2 (Revoked Cert, Expired CRL)
Paul Bakker335db3f2011-04-25 15:28:35 +0000166depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000167x509_verify:"data_files/server1.crt":"data_files/test-ca.crt":"data_files/crl_expired.pem":"PolarSSL Server 1":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_REVOKED | BADCRL_EXPIRED:NULL
Paul Bakker37940d9f2009-07-10 22:38:58 +0000168
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000169X509 Certificate verification #3 (Revoked Cert, Expired CRL, CN Mismatch)
Paul Bakker335db3f2011-04-25 15:28:35 +0000170depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000171x509_verify:"data_files/server1.crt":"data_files/test-ca.crt":"data_files/crl_expired.pem":"PolarSSL Wrong CN":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_REVOKED | BADCRL_EXPIRED | BADCERT_CN_MISMATCH:NULL
Paul Bakker37940d9f2009-07-10 22:38:58 +0000172
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000173X509 Certificate verification #4 (Valid Cert, Expired CRL)
Paul Bakker335db3f2011-04-25 15:28:35 +0000174depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000175x509_verify:"data_files/server2.crt":"data_files/test-ca.crt":"data_files/crl_expired.pem":NULL:POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCRL_EXPIRED:NULL
Paul Bakker37940d9f2009-07-10 22:38:58 +0000176
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000177X509 Certificate verification #5 (Revoked Cert)
Paul Bakker335db3f2011-04-25 15:28:35 +0000178depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000179x509_verify:"data_files/server1.crt":"data_files/test-ca.crt":"data_files/crl.pem":NULL:POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_REVOKED:NULL
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000180
181X509 Certificate verification #6 (Revoked Cert)
Paul Bakker335db3f2011-04-25 15:28:35 +0000182depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000183x509_verify:"data_files/server1.crt":"data_files/test-ca.crt":"data_files/crl.pem":"PolarSSL Server 1":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_REVOKED:NULL
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000184
185X509 Certificate verification #7 (Revoked Cert, CN Mismatch)
Paul Bakker335db3f2011-04-25 15:28:35 +0000186depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000187x509_verify:"data_files/server1.crt":"data_files/test-ca.crt":"data_files/crl.pem":"PolarSSL Wrong CN":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_REVOKED | BADCERT_CN_MISMATCH:NULL
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000188
189X509 Certificate verification #8 (Valid Cert)
Paul Bakker335db3f2011-04-25 15:28:35 +0000190depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000191x509_verify:"data_files/server2.crt":"data_files/test-ca.crt":"data_files/crl.pem":NULL:0:0:NULL
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000192
193X509 Certificate verification #9 (Not trusted Cert)
Paul Bakker335db3f2011-04-25 15:28:35 +0000194depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000195x509_verify:"data_files/server2.crt":"data_files/server1.crt":"data_files/crl.pem":NULL:POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_NOT_TRUSTED:NULL
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000196
197X509 Certificate verification #10 (Not trusted Cert, Expired CRL)
Paul Bakker335db3f2011-04-25 15:28:35 +0000198depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000199x509_verify:"data_files/server2.crt":"data_files/server1.crt":"data_files/crl_expired.pem":NULL:POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_NOT_TRUSTED:NULL
Paul Bakker37940d9f2009-07-10 22:38:58 +0000200
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000201X509 Certificate verification #12 (Valid Cert MD4 Digest)
Paul Bakker335db3f2011-04-25 15:28:35 +0000202depends_on:POLARSSL_MD4_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000203x509_verify:"data_files/cert_md4.crt":"data_files/test-ca.crt":"data_files/crl.pem":NULL:0:0:NULL
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000204
205X509 Certificate verification #13 (Valid Cert MD5 Digest)
Paul Bakker335db3f2011-04-25 15:28:35 +0000206depends_on:POLARSSL_MD5_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000207x509_verify:"data_files/cert_md5.crt":"data_files/test-ca.crt":"data_files/crl.pem":NULL:0:0:NULL
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000208
209X509 Certificate verification #14 (Valid Cert SHA1 Digest)
Paul Bakker335db3f2011-04-25 15:28:35 +0000210depends_on:POLARSSL_SHA1_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000211x509_verify:"data_files/cert_sha1.crt":"data_files/test-ca.crt":"data_files/crl.pem":NULL:0:0:NULL
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000212
213X509 Certificate verification #15 (Valid Cert SHA224 Digest)
Paul Bakker335db3f2011-04-25 15:28:35 +0000214depends_on:POLARSSL_SHA2_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000215x509_verify:"data_files/cert_sha224.crt":"data_files/test-ca.crt":"data_files/crl.pem":NULL:0:0:NULL
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000216
217X509 Certificate verification #16 (Valid Cert SHA256 Digest)
Paul Bakker335db3f2011-04-25 15:28:35 +0000218depends_on:POLARSSL_SHA2_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000219x509_verify:"data_files/cert_sha256.crt":"data_files/test-ca.crt":"data_files/crl.pem":NULL:0:0:NULL
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000220
221X509 Certificate verification #17 (Valid Cert SHA384 Digest)
Paul Bakker335db3f2011-04-25 15:28:35 +0000222depends_on:POLARSSL_SHA4_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000223x509_verify:"data_files/cert_sha384.crt":"data_files/test-ca.crt":"data_files/crl.pem":NULL:0:0:NULL
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000224
225X509 Certificate verification #18 (Valid Cert SHA512 Digest)
Paul Bakker335db3f2011-04-25 15:28:35 +0000226depends_on:POLARSSL_SHA4_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000227x509_verify:"data_files/cert_sha512.crt":"data_files/test-ca.crt":"data_files/crl.pem":NULL:0:0:NULL
228
229X509 Certificate verification #19 (Valid Cert, denying callback)
Paul Bakker335db3f2011-04-25 15:28:35 +0000230depends_on:POLARSSL_SHA4_C:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker915275b2012-09-28 07:10:55 +0000231x509_verify:"data_files/cert_sha512.crt":"data_files/test-ca.crt":"data_files/crl.pem":NULL:POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_OTHER:verify_none
Paul Bakkerb63b0af2011-01-13 17:54:59 +0000232
233X509 Certificate verification #20 (Not trusted Cert, allowing callback)
Paul Bakker335db3f2011-04-25 15:28:35 +0000234depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker915275b2012-09-28 07:10:55 +0000235x509_verify:"data_files/server2.crt":"data_files/server1.crt":"data_files/crl_expired.pem":NULL:0:0:verify_all
Paul Bakker4d6b31a2009-07-12 11:11:06 +0000236
Paul Bakkera8cd2392012-02-11 16:09:32 +0000237X509 Certificate verification #21 (domain matching wildcard certificate)
238depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
239x509_verify:"data_files/cert_example_wildcard.crt":"data_files/test-ca.crt":"data_files/crl.pem":"mail.example.com":0:0:NULL
240
241X509 Certificate verification #22 (domain not matching wildcard certificate)
242depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
243x509_verify:"data_files/cert_example_wildcard.crt":"data_files/test-ca.crt":"data_files/crl.pem":"mail.example.net":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_CN_MISMATCH:NULL
244
245X509 Certificate verification #23 (domain not matching wildcard certificate)
246depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
247x509_verify:"data_files/cert_example_wildcard.crt":"data_files/test-ca.crt":"data_files/crl.pem":"example.com":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_CN_MISMATCH:NULL
248
Paul Bakker4d2c1242012-05-10 14:12:46 +0000249X509 Certificate verification #24 (domain matching CN of multi certificate)
Paul Bakkera8cd2392012-02-11 16:09:32 +0000250depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
Paul Bakker4d2c1242012-05-10 14:12:46 +0000251x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"www.example.com":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_CN_MISMATCH:NULL
Paul Bakkera8cd2392012-02-11 16:09:32 +0000252
253X509 Certificate verification #25 (domain matching multi certificate)
254depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
255x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"example.net":0:0:NULL
256
257X509 Certificate verification #26 (domain not matching multi certificate)
258depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
259x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"www.example.net":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_CN_MISMATCH:NULL
260
261X509 Certificate verification #27 (domain not matching multi certificate)
262depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
263x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"xample.net":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_CN_MISMATCH:NULL
264
265X509 Certificate verification #27 (domain not matching multi certificate)
266depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
267x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"bexample.net":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_CN_MISMATCH:NULL
268
Paul Bakker57b12982012-02-11 17:38:38 +0000269X509 Certificate verification #28 (domain not matching wildcard in multi certificate)
270depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
271x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"example.org":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_CN_MISMATCH:NULL
272
273X509 Certificate verification #29 (domain matching wildcard in multi certificate)
274depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
275x509_verify:"data_files/cert_example_multi.crt":"data_files/test-ca.crt":"data_files/crl.pem":"mail.example.org":0:0:NULL
276
Paul Bakker91956622012-08-23 10:46:54 +0000277X509 Certificate verification #30 (domain matching multi certificate without CN)
278depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
279x509_verify:"data_files/cert_example_multi_nocn.crt":"data_files/test-ca.crt":"data_files/crl.pem":"www.shotokan-braunschweig.de":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_NOT_TRUSTED:NULL
280
281X509 Certificate verification #31 (domain not matching multi certificate without CN)
282depends_on:POLARSSL_PEM_C:POLARSSL_FS_IO
283x509_verify:"data_files/cert_example_multi_nocn.crt":"data_files/test-ca.crt":"data_files/crl.pem":"www.example.net":POLARSSL_ERR_X509_CERT_VERIFY_FAILED:BADCERT_CN_MISMATCH + BADCERT_NOT_TRUSTED:NULL
284
Paul Bakker37940d9f2009-07-10 22:38:58 +0000285X509 Parse Selftest
Paul Bakker335db3f2011-04-25 15:28:35 +0000286depends_on:POLARSSL_MD5_C:POLARSSL_PEM_C:POLARSSL_SELF_TEST
Paul Bakker37940d9f2009-07-10 22:38:58 +0000287x509_selftest:
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000288
289X509 Certificate ASN1 (Incorrect first tag)
290x509parse_crt:"":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT
291
292X509 Certificate ASN1 (Correct first tag, data length does not match)
Paul Bakker1a0f5522012-09-25 21:53:55 +0000293x509parse_crt:"300000":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000294
295X509 Certificate ASN1 (Correct first tag, no more data)
Paul Bakker9d781402011-05-09 16:17:09 +0000296x509parse_crt:"3000":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000297
Paul Bakkerfae618f2011-10-12 11:53:52 +0000298X509 Certificate ASN1 (Correct first tag, length data incorrect)
299x509parse_crt:"30023085":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_INVALID_LENGTH
300
Paul Bakkerc26a1892009-07-19 20:30:14 +0000301X509 Certificate ASN1 (Correct first tag, length data incomplete)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000302x509parse_crt:"30023083":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerc26a1892009-07-19 20:30:14 +0000303
304X509 Certificate ASN1 (Correct first tag, length data incomplete)
Paul Bakker9d781402011-05-09 16:17:09 +0000305x509parse_crt:"30023081":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerc26a1892009-07-19 20:30:14 +0000306
307X509 Certificate ASN1 (Correct first tag, length data incomplete)
Paul Bakker9d781402011-05-09 16:17:09 +0000308x509parse_crt:"3003308200":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerc26a1892009-07-19 20:30:14 +0000309
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000310X509 Certificate ASN1 (Correct first tag, second tag no TBSCertificate)
Paul Bakker9d781402011-05-09 16:17:09 +0000311x509parse_crt:"300100":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000312
313X509 Certificate ASN1 (TBSCertificate, no version tag, serial missing)
Paul Bakker9d781402011-05-09 16:17:09 +0000314x509parse_crt:"3003300100":"":POLARSSL_ERR_X509_CERT_INVALID_SERIAL + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000315
316X509 Certificate ASN1 (TBSCertificate, invalid version tag)
Paul Bakker9d781402011-05-09 16:17:09 +0000317x509parse_crt:"30053003a00101":"":POLARSSL_ERR_X509_CERT_INVALID_VERSION + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000318
319X509 Certificate ASN1 (TBSCertificate, valid version tag, no length)
Paul Bakker9d781402011-05-09 16:17:09 +0000320x509parse_crt:"30053003a00102":"":POLARSSL_ERR_X509_CERT_INVALID_VERSION + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000321
322X509 Certificate ASN1 (TBSCertificate, valid version tag, invalid length)
Paul Bakker9d781402011-05-09 16:17:09 +0000323x509parse_crt:"30163014a012021000000000000000000000000000000000":"":POLARSSL_ERR_X509_CERT_INVALID_VERSION + POLARSSL_ERR_ASN1_INVALID_LENGTH
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000324
325X509 Certificate ASN1 (TBSCertificate, valid version tag, no serial)
Paul Bakker9d781402011-05-09 16:17:09 +0000326x509parse_crt:"30073005a003020104":"":POLARSSL_ERR_X509_CERT_INVALID_SERIAL + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000327
328X509 Certificate ASN1 (TBSCertificate, invalid length version tag)
Paul Bakker9d781402011-05-09 16:17:09 +0000329x509parse_crt:"30083006a00402010400":"":POLARSSL_ERR_X509_CERT_INVALID_VERSION + POLARSSL_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000330
331X509 Certificate ASN1 (TBSCertificate, incorrect serial tag)
Paul Bakker9d781402011-05-09 16:17:09 +0000332x509parse_crt:"30083006a00302010400":"":POLARSSL_ERR_X509_CERT_INVALID_SERIAL + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000333
334X509 Certificate ASN1 (TBSCertificate, incorrect serial length)
Paul Bakker9d781402011-05-09 16:17:09 +0000335x509parse_crt:"30083006a00302010482":"":POLARSSL_ERR_X509_CERT_INVALID_SERIAL + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000336
337X509 Certificate ASN1 (TBSCertificate, correct serial, no alg)
Paul Bakker9d781402011-05-09 16:17:09 +0000338x509parse_crt:"300d300ba0030201048204deadbeef":"":POLARSSL_ERR_X509_CERT_INVALID_ALG + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000339
340X509 Certificate ASN1 (TBSCertificate, correct serial, no alg oid)
Paul Bakker9d781402011-05-09 16:17:09 +0000341x509parse_crt:"300e300ca0030201048204deadbeef00":"":POLARSSL_ERR_X509_CERT_INVALID_ALG + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000342
Paul Bakker345fb492009-07-20 21:26:07 +0000343X509 Certificate ASN1 (TBSCertificate, alg oid no data in sequence)
Paul Bakker9d781402011-05-09 16:17:09 +0000344x509parse_crt:"300f300da0030201048204deadbeef3000":"":POLARSSL_ERR_X509_CERT_INVALID_ALG + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakker345fb492009-07-20 21:26:07 +0000345
346X509 Certificate ASN1 (TBSCertificate, alg with params)
Paul Bakker9d781402011-05-09 16:17:09 +0000347x509parse_crt:"30163014a0030201048204deadbeef30070604cafed00d01":"":POLARSSL_ERR_X509_CERT_INVALID_ALG + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000348
Paul Bakker345fb492009-07-20 21:26:07 +0000349X509 Certificate ASN1 (TBSCertificate, correct alg data, no params unknown version)
350x509parse_crt:"30153013a0030201048204deadbeef30060604cafed00d":"":POLARSSL_ERR_X509_CERT_UNKNOWN_VERSION
351
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000352X509 Certificate ASN1 (TBSCertificate, correct alg data, unknown version)
353x509parse_crt:"30173015a0030201048204deadbeef30080604cafed00d0500":"":POLARSSL_ERR_X509_CERT_UNKNOWN_VERSION
354
Paul Bakker345fb492009-07-20 21:26:07 +0000355X509 Certificate ASN1 (TBSCertificate, correct alg data, length mismatch)
Paul Bakker9d781402011-05-09 16:17:09 +0000356x509parse_crt:"30183016a0030201048204deadbeef30090604cafed00d050000":"":POLARSSL_ERR_X509_CERT_INVALID_ALG + POLARSSL_ERR_ASN1_LENGTH_MISMATCH
Paul Bakker345fb492009-07-20 21:26:07 +0000357
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000358X509 Certificate ASN1 (TBSCertificate, correct alg, unknown alg_id)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200359x509parse_crt:"30173015a0030201028204deadbeef30080604cafed00d0500":"":POLARSSL_ERR_X509_CERT_UNKNOWN_SIG_ALG + POLARSSL_ERR_OID_NOT_FOUND
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000360
361X509 Certificate ASN1 (TBSCertificate, correct alg, specific alg_id)
Paul Bakker9d781402011-05-09 16:17:09 +0000362x509parse_crt:"301c301aa0030201028204deadbeef300d06092a864886f70d0101020500":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000363
364X509 Certificate ASN1 (TBSCertificate, correct alg, unknown specific alg_id)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200365x509parse_crt:"301c301aa0030201028204deadbeef300d06092a864886f70d0101010500":"":POLARSSL_ERR_X509_CERT_UNKNOWN_SIG_ALG + POLARSSL_ERR_OID_NOT_FOUND
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000366
367X509 Certificate ASN1 (TBSCertificate, issuer no set data)
Paul Bakker9d781402011-05-09 16:17:09 +0000368x509parse_crt:"301e301ca0030201028204deadbeef300d06092a864886f70d01010205003000":"":POLARSSL_ERR_X509_CERT_INVALID_NAME + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000369
370X509 Certificate ASN1 (TBSCertificate, issuer no inner seq data)
Paul Bakker9d781402011-05-09 16:17:09 +0000371x509parse_crt:"3020301ea0030201028204deadbeef300d06092a864886f70d010102050030023100":"":POLARSSL_ERR_X509_CERT_INVALID_NAME + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000372
373X509 Certificate ASN1 (TBSCertificate, issuer no inner set data)
Paul Bakker9d781402011-05-09 16:17:09 +0000374x509parse_crt:"30223020a0030201028204deadbeef300d06092a864886f70d0101020500300431023000":"":POLARSSL_ERR_X509_CERT_INVALID_NAME + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000375
376X509 Certificate ASN1 (TBSCertificate, issuer two inner set datas)
Paul Bakker9d781402011-05-09 16:17:09 +0000377x509parse_crt:"30243022a0030201028204deadbeef300d06092a864886f70d01010205003006310430003000":"":POLARSSL_ERR_X509_CERT_INVALID_NAME + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000378
379X509 Certificate ASN1 (TBSCertificate, issuer no oid data)
Paul Bakker9d781402011-05-09 16:17:09 +0000380x509parse_crt:"30243022a0030201028204deadbeef300d06092a864886f70d01010205003006310430020600":"":POLARSSL_ERR_X509_CERT_INVALID_NAME + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000381
382X509 Certificate ASN1 (TBSCertificate, issuer invalid tag)
Paul Bakker9d781402011-05-09 16:17:09 +0000383x509parse_crt:"302a3028a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600060454657374":"":POLARSSL_ERR_X509_CERT_INVALID_NAME + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000384
Paul Bakker345fb492009-07-20 21:26:07 +0000385X509 Certificate ASN1 (TBSCertificate, issuer, no string data)
Paul Bakker9d781402011-05-09 16:17:09 +0000386x509parse_crt:"30253023a0030201028204deadbeef300d06092a864886f70d0101020500300731053003060013":"":POLARSSL_ERR_X509_CERT_INVALID_NAME + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakker345fb492009-07-20 21:26:07 +0000387
Paul Bakker400ff6f2011-02-20 10:40:16 +0000388X509 Certificate ASN1 (TBSCertificate, issuer, no full following string)
Paul Bakker9d781402011-05-09 16:17:09 +0000389x509parse_crt:"302b3029a0030201028204deadbeef300d06092a864886f70d0101020500300d310b3009060013045465737400":"":POLARSSL_ERR_X509_CERT_INVALID_NAME + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakker345fb492009-07-20 21:26:07 +0000390
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000391X509 Certificate ASN1 (TBSCertificate, valid issuer, no validity)
Paul Bakker9d781402011-05-09 16:17:09 +0000392x509parse_crt:"302a3028a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374":"":POLARSSL_ERR_X509_CERT_INVALID_DATE + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000393
394X509 Certificate ASN1 (TBSCertificate, too much date data)
Paul Bakker9d781402011-05-09 16:17:09 +0000395x509parse_crt:"30493047a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301d170c303930313031303030303030170c30393132333132333539353900":"":POLARSSL_ERR_X509_CERT_INVALID_DATE + POLARSSL_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000396
Paul Bakker345fb492009-07-20 21:26:07 +0000397X509 Certificate ASN1 (TBSCertificate, invalid from date)
398x509parse_crt:"30483046a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303000000000170c303931323331323300000000":"":POLARSSL_ERR_X509_CERT_INVALID_DATE
399
400X509 Certificate ASN1 (TBSCertificate, invalid to date)
401x509parse_crt:"30483046a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323300000000":"":POLARSSL_ERR_X509_CERT_INVALID_DATE
402
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000403X509 Certificate ASN1 (TBSCertificate, valid validity, no subject)
Paul Bakker9d781402011-05-09 16:17:09 +0000404x509parse_crt:"30493047a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c30393132333132333539353930":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000405
406X509 Certificate ASN1 (TBSCertificate, valid subject, no pubkeyinfo)
Paul Bakker9d781402011-05-09 16:17:09 +0000407x509parse_crt:"30563054a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000408
Paul Bakker345fb492009-07-20 21:26:07 +0000409X509 Certificate ASN1 (TBSCertificate, pubkey, no alg)
Paul Bakker9d781402011-05-09 16:17:09 +0000410x509parse_crt:"30583056a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a300806001304546573743000":"":POLARSSL_ERR_X509_CERT_INVALID_ALG + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakker345fb492009-07-20 21:26:07 +0000411
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000412X509 Certificate ASN1 (TBSCertificate, valid subject, unknown pk alg)
Paul Bakker36f1b192011-07-13 11:32:29 +0000413x509parse_crt:"30673065a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374300f300d06092A864886F70D0101000500":"":POLARSSL_ERR_X509_UNKNOWN_PK_ALG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000414
415X509 Certificate ASN1 (TBSCertificate, pubkey, no bitstring)
Paul Bakker9d781402011-05-09 16:17:09 +0000416x509parse_crt:"30673065a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374300f300d06092A864886F70D0101010500":"":POLARSSL_ERR_X509_CERT_INVALID_PUBKEY + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000417
418X509 Certificate ASN1 (TBSCertificate, pubkey, no bitstring data)
Paul Bakker9d781402011-05-09 16:17:09 +0000419x509parse_crt:"30693067a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a300806001304546573743011300d06092A864886F70D01010105000300":"":POLARSSL_ERR_X509_CERT_INVALID_PUBKEY + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000420
421X509 Certificate ASN1 (TBSCertificate, pubkey, invalid bitstring start)
422x509parse_crt:"306a3068a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a300806001304546573743012300d06092A864886F70D0101010500030101":"":POLARSSL_ERR_X509_CERT_INVALID_PUBKEY
423
424X509 Certificate ASN1 (TBSCertificate, pubkey, invalid internal bitstring length)
Paul Bakker9d781402011-05-09 16:17:09 +0000425x509parse_crt:"306d306ba0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a300806001304546573743015300d06092A864886F70D0101010500030400300000":"":POLARSSL_ERR_X509_CERT_INVALID_PUBKEY + POLARSSL_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000426
Paul Bakker345fb492009-07-20 21:26:07 +0000427X509 Certificate ASN1 (TBSCertificate, pubkey, invalid internal bitstring tag)
Paul Bakker9d781402011-05-09 16:17:09 +0000428x509parse_crt:"306d306ba0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a300806001304546573743015300d06092A864886F70D0101010500030400310000":"":POLARSSL_ERR_X509_CERT_INVALID_PUBKEY + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakker345fb492009-07-20 21:26:07 +0000429
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000430X509 Certificate ASN1 (TBSCertificate, pubkey, invalid mpi)
Paul Bakker9d781402011-05-09 16:17:09 +0000431x509parse_crt:"30743072a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374301c300d06092A864886F70D0101010500030b0030080202ffff0302ffff":"":POLARSSL_ERR_X509_CERT_INVALID_PUBKEY + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000432
Paul Bakker345fb492009-07-20 21:26:07 +0000433X509 Certificate ASN1 (TBSCertificate, pubkey, total length mismatch)
Paul Bakker9d781402011-05-09 16:17:09 +0000434x509parse_crt:"30753073a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374301d300d06092A864886F70D0101010500030b0030080202ffff0202ffff00":"":POLARSSL_ERR_X509_CERT_INVALID_PUBKEY + POLARSSL_ERR_ASN1_LENGTH_MISMATCH
Paul Bakker345fb492009-07-20 21:26:07 +0000435
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000436X509 Certificate ASN1 (TBSCertificate, pubkey, check failed)
437x509parse_crt:"30743072a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374301c300d06092A864886F70D0101010500030b0030080202ffff0202ffff":"":POLARSSL_ERR_RSA_KEY_CHECK_FAILED
438
439X509 Certificate ASN1 (TBSCertificate, pubkey, check failed, expanded length notation)
440x509parse_crt:"308183308180a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210fffffffffffffffffffffffffffffffe0202ffff":"":POLARSSL_ERR_RSA_KEY_CHECK_FAILED
441
442X509 Certificate ASN1 (TBSCertificate v3, Optional UIDs, Extensions not present)
Paul Bakker9d781402011-05-09 16:17:09 +0000443x509parse_crt:"308183308180a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff":"":POLARSSL_ERR_X509_CERT_INVALID_ALG + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000444
445X509 Certificate ASN1 (TBSCertificate v3, issuerID wrong tag)
Paul Bakker9d781402011-05-09 16:17:09 +0000446x509parse_crt:"308184308181a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff00":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000447
448X509 Certificate ASN1 (TBSCertificate v3, UIDs, no ext)
Paul Bakker9d781402011-05-09 16:17:09 +0000449x509parse_crt:"308189308186a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bb":"":POLARSSL_ERR_X509_CERT_INVALID_ALG + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000450
Paul Bakker345fb492009-07-20 21:26:07 +0000451X509 Certificate ASN1 (TBSCertificate v3, UIDs, invalid length)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000452x509parse_crt:"308189308186a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa185aaa201bb":"":POLARSSL_ERR_ASN1_INVALID_LENGTH
Paul Bakker345fb492009-07-20 21:26:07 +0000453
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000454X509 Certificate ASN1 (TBSCertificate v3, ext empty)
Paul Bakker9d781402011-05-09 16:17:09 +0000455x509parse_crt:"30818b308188a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba300":"":POLARSSL_ERR_X509_CERT_INVALID_EXTENSIONS + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000456
457X509 Certificate ASN1 (TBSCertificate v3, ext length mismatch)
Paul Bakker9d781402011-05-09 16:17:09 +0000458x509parse_crt:"30818e30818ba0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba303300000":"":POLARSSL_ERR_X509_CERT_INVALID_EXTENSIONS + POLARSSL_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000459
460X509 Certificate ASN1 (TBSCertificate v3, first ext invalid)
Paul Bakker9d781402011-05-09 16:17:09 +0000461x509parse_crt:"30818f30818ca0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba30330023000":"":POLARSSL_ERR_X509_CERT_INVALID_EXTENSIONS + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000462
Paul Bakkere4ff4132009-07-27 20:22:10 +0000463X509 Certificate ASN1 (TBSCertificate v3, first ext invalid tag)
Paul Bakker9d781402011-05-09 16:17:09 +0000464x509parse_crt:"30819030818da0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba3043002310000":"":POLARSSL_ERR_X509_CERT_INVALID_EXTENSIONS + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkere4ff4132009-07-27 20:22:10 +0000465
Paul Bakkerc6ce8382009-07-27 21:34:45 +0000466X509 Certificate ASN1 (TBSCertificate v3, ext BasicContraint tag, bool len missing)
Paul Bakker9d781402011-05-09 16:17:09 +0000467x509parse_crt:"308198308195a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba30c300a30060603551d1301010100":"":POLARSSL_ERR_X509_CERT_INVALID_EXTENSIONS + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerc6ce8382009-07-27 21:34:45 +0000468
469X509 Certificate ASN1 (TBSCertificate v3, ext BasicContraint tag, data missing)
Paul Bakker9d781402011-05-09 16:17:09 +0000470x509parse_crt:"308198308195a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba30c300a30080603551d1301010100":"":POLARSSL_ERR_X509_CERT_INVALID_EXTENSIONS + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerc6ce8382009-07-27 21:34:45 +0000471
472X509 Certificate ASN1 (TBSCertificate v3, ext BasicContraint tag, no octet present)
Paul Bakker9d781402011-05-09 16:17:09 +0000473x509parse_crt:"308198308195a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba30d300b30090603551d1301010100":"":POLARSSL_ERR_X509_CERT_INVALID_EXTENSIONS + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkere4ff4132009-07-27 20:22:10 +0000474
475X509 Certificate ASN1 (TBSCertificate v3, ext BasicContraint tag, octet data missing)
Paul Bakker9d781402011-05-09 16:17:09 +0000476x509parse_crt:"30819c308199a0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba311300f300d0603551d130101010403300100":"":POLARSSL_ERR_X509_CERT_INVALID_EXTENSIONS + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakkere4ff4132009-07-27 20:22:10 +0000477
478X509 Certificate ASN1 (TBSCertificate v3, ext BasicContraint tag, no pathlen)
Paul Bakker9d781402011-05-09 16:17:09 +0000479x509parse_crt:"30819f30819ca0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba314301230100603551d130101010406300402010102":"":POLARSSL_ERR_X509_CERT_INVALID_EXTENSIONS + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkere4ff4132009-07-27 20:22:10 +0000480
481X509 Certificate ASN1 (TBSCertificate v3, ext BasicContraint tag, octet len mismatch)
Paul Bakker9d781402011-05-09 16:17:09 +0000482x509parse_crt:"3081a230819fa0030201028204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffffa101aaa201bba317301530130603551d130101010409300702010102010100":"":POLARSSL_ERR_X509_CERT_INVALID_EXTENSIONS + POLARSSL_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkere4ff4132009-07-27 20:22:10 +0000483
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000484X509 Certificate ASN1 (correct pubkey, no sig_alg)
Paul Bakker9d781402011-05-09 16:17:09 +0000485x509parse_crt:"308183308180a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff":"":POLARSSL_ERR_X509_CERT_INVALID_ALG + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000486
487X509 Certificate ASN1 (sig_alg mismatch)
488x509parse_crt:"308192308180a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0102020500":"":POLARSSL_ERR_X509_CERT_SIG_MISMATCH
489
490X509 Certificate ASN1 (sig_alg, no sig)
Paul Bakker9d781402011-05-09 16:17:09 +0000491x509parse_crt:"308192308180a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500":"":POLARSSL_ERR_X509_CERT_INVALID_SIGNATURE + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000492
493X509 Certificate ASN1 (signature, invalid sig data)
494x509parse_crt:"308195308180a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030100":"":POLARSSL_ERR_X509_CERT_INVALID_SIGNATURE
495
496X509 Certificate ASN1 (signature, data left)
Paul Bakker9d781402011-05-09 16:17:09 +0000497x509parse_crt:"308197308180a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff00":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_LENGTH_MISMATCH
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000498
499X509 Certificate ASN1 (correct)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200500x509parse_crt:"308196308180a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: ?\?=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerb2c38f52009-07-19 19:36:15 +0000501
Paul Bakker91200182010-02-18 21:26:15 +0000502X509 Certificate ASN1 (GeneralizedTime instead of UTCTime)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200503x509parse_crt:"308198308182a0030201008204deadbeef300d06092a864886f70d0101020500300c310a30080600130454657374301e180e3230313030313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: ?\?=Test\nsubject name \: ?\?=Test\nissued on \: 2010-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakker91200182010-02-18 21:26:15 +0000504
Paul Bakkerc26a1892009-07-19 20:30:14 +0000505X509 Certificate ASN1 (Name with X520 CN)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200506x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b0603550403130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: CN=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +0000507
508X509 Certificate ASN1 (Name with X520 C)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200509x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b0603550406130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: C=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +0000510
511X509 Certificate ASN1 (Name with X520 L)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200512x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b0603550407130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: L=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +0000513
514X509 Certificate ASN1 (Name with X520 ST)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200515x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b0603550408130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: ST=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +0000516
517X509 Certificate ASN1 (Name with X520 O)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200518x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b060355040a130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: O=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +0000519
520X509 Certificate ASN1 (Name with X520 OU)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200521x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b060355040b130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: OU=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +0000522
523X509 Certificate ASN1 (Name with unknown X520 part)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200524x509parse_crt:"308199308183a0030201008204deadbeef300d06092a864886f70d0101020500300f310d300b06035504de130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: ?\?=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +0000525
526X509 Certificate ASN1 (Name with PKCS9 email)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200527x509parse_crt:"30819f308189a0030201008204deadbeef300d06092a864886f70d010102050030153113301106092a864886f70d010901130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: emailAddress=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +0000528
529X509 Certificate ASN1 (Name with unknown PKCS9 part)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200530x509parse_crt:"30819f308189a0030201008204deadbeef300d06092a864886f70d010102050030153113301106092a864886f70d0109ab130454657374301c170c303930313031303030303030170c303931323331323335393539300c310a30080600130454657374302a300d06092A864886F70D010101050003190030160210ffffffffffffffffffffffffffffffff0202ffff300d06092a864886f70d0101020500030200ff":"cert. version \: 1\nserial number \: DE\:AD\:BE\:EF\nissuer name \: ?\?=Test\nsubject name \: ?\?=Test\nissued on \: 2009-01-01 00\:00\:00\nexpires on \: 2009-12-31 23\:59\:59\nsigned using \: RSA with MD2\nRSA key size \: 128 bits\n":0
Paul Bakkerc26a1892009-07-19 20:30:14 +0000531
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000532X509 CRL ASN1 (Incorrect first tag)
533x509parse_crl:"":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT
534
535X509 CRL ASN1 (Correct first tag, data length does not match)
Paul Bakker9d781402011-05-09 16:17:09 +0000536x509parse_crl:"300000":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_LENGTH_MISMATCH
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000537
538X509 CRL ASN1 (TBSCertList, tag missing)
Paul Bakker9d781402011-05-09 16:17:09 +0000539x509parse_crl:"3000":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000540
541X509 CRL ASN1 (TBSCertList, version tag len missing)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000542x509parse_crl:"3003300102":"":POLARSSL_ERR_X509_CERT_INVALID_VERSION + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000543
544X509 CRL ASN1 (TBSCertList, version correct, alg missing)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000545x509parse_crl:"30053003020100":"":POLARSSL_ERR_X509_CERT_INVALID_ALG + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000546
547X509 CRL ASN1 (TBSCertList, alg correct, incorrect version)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000548x509parse_crl:"300b3009020102300406000500":"":POLARSSL_ERR_X509_CERT_UNKNOWN_VERSION
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000549
550X509 CRL ASN1 (TBSCertList, correct version, sig_oid1 unknown)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000551x509parse_crl:"300b3009020100300406000500":"":POLARSSL_ERR_X509_CERT_UNKNOWN_SIG_ALG
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000552
553X509 CRL ASN1 (TBSCertList, sig_oid1 id unknown)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000554x509parse_crl:"30143012020100300d06092a864886f70d01010f0500":"":POLARSSL_ERR_X509_CERT_UNKNOWN_SIG_ALG
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000555
556X509 CRL ASN1 (TBSCertList, sig_oid1 correct, issuer missing)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000557x509parse_crl:"30143012020100300d06092a864886f70d01010e0500":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000558
559X509 CRL ASN1 (TBSCertList, issuer set missing)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000560x509parse_crl:"30163014020100300d06092a864886f70d01010e05003000":"":POLARSSL_ERR_X509_CERT_INVALID_NAME + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000561
562X509 CRL ASN1 (TBSCertList, correct issuer, thisUpdate missing)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000563x509parse_crl:"30253023020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344":"":POLARSSL_ERR_X509_CERT_INVALID_DATE + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000564
565X509 CRL ASN1 (TBSCertList, correct thisUpdate, nextUpdate missing, entries length missing)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000566x509parse_crl:"30343032020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c30393031303130303030303030":"":POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakkere4ff4132009-07-27 20:22:10 +0000567
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000568X509 CRL ASN1 (TBSCertList, entries present, invalid sig_alg)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000569x509parse_crl:"304a3047020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030301430128202abcd170c30383132333132333539353900":"":POLARSSL_ERR_X509_CERT_INVALID_ALG + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000570
571X509 CRL ASN1 (TBSCertList, entries present, date in entry invalid)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000572x509parse_crl:"304a3047020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030301430128202abcd190c30383132333132333539353900":"":POLARSSL_ERR_X509_CERT_INVALID_DATE + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000573
574X509 CRL ASN1 (TBSCertList, sig_alg present, sig_alg does not match)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000575x509parse_crl:"30583047020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030301430128202abcd170c303831323331323335393539300d06092a864886f70d01010d0500":"":POLARSSL_ERR_X509_CERT_SIG_MISMATCH
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000576
Paul Bakkere4ff4132009-07-27 20:22:10 +0000577X509 CRL ASN1 (TBSCertList, sig present, len mismatch)
Paul Bakkerfae618f2011-10-12 11:53:52 +0000578x509parse_crl:"305d3047020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030301430128202abcd170c303831323331323335393539300d06092a864886f70d01010e05000302000100":"":POLARSSL_ERR_X509_CERT_INVALID_FORMAT + POLARSSL_ERR_ASN1_LENGTH_MISMATCH
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000579
580X509 CRL ASN1 (TBSCertList, sig present)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200581x509parse_crl:"305c3047020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030301430128202abcd170c303831323331323335393539300d06092a864886f70d01010e050003020001":"CRL version \: 1\nissuer name \: CN=ABCD\nthis update \: 2009-01-01 00\:00\:00\nnext update \: 0000-00-00 00\:00\:00\nRevoked certificates\:\nserial number\: AB\:CD revocation date\: 2008-12-31 23\:59\:59\nsigned using \: RSA with SHA-224\n":0
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000582
Paul Bakkere4ff4132009-07-27 20:22:10 +0000583X509 CRL ASN1 (TBSCertList, no entries)
Paul Bakkerc70b9822013-04-07 22:00:46 +0200584x509parse_crl:"30463031020100300d06092a864886f70d01010e0500300f310d300b0603550403130441424344170c303930313031303030303030300d06092a864886f70d01010e050003020001":"CRL version \: 1\nissuer name \: CN=ABCD\nthis update \: 2009-01-01 00\:00\:00\nnext update \: 0000-00-00 00\:00\:00\nRevoked certificates\:\nsigned using \: RSA with SHA-224\n":0
Paul Bakkere4ff4132009-07-27 20:22:10 +0000585
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000586X509 Key ASN1 (Incorrect first tag)
Paul Bakker9d781402011-05-09 16:17:09 +0000587x509parse_key:"":"":POLARSSL_ERR_X509_KEY_INVALID_FORMAT + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000588
589X509 Key ASN1 (RSAPrivateKey, incorrect version tag)
Paul Bakker9d781402011-05-09 16:17:09 +0000590x509parse_key:"300100":"":POLARSSL_ERR_X509_KEY_INVALID_FORMAT + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000591
592X509 Key ASN1 (RSAPrivateKey, version tag missing)
Paul Bakker9d781402011-05-09 16:17:09 +0000593x509parse_key:"3000":"":POLARSSL_ERR_X509_KEY_INVALID_FORMAT + POLARSSL_ERR_ASN1_OUT_OF_DATA
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000594
595X509 Key ASN1 (RSAPrivateKey, invalid version)
596x509parse_key:"3003020101":"":POLARSSL_ERR_X509_KEY_INVALID_VERSION
597
598X509 Key ASN1 (RSAPrivateKey, correct version, incorrect tag)
Paul Bakker9d781402011-05-09 16:17:09 +0000599x509parse_key:"300402010000":"":POLARSSL_ERR_X509_KEY_INVALID_FORMAT + POLARSSL_ERR_ASN1_UNEXPECTED_TAG
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000600
601X509 Key ASN1 (RSAPrivateKey, values present, length mismatch)
Paul Bakker9d781402011-05-09 16:17:09 +0000602x509parse_key:"301c02010002010102010102010102010102010102010102010102010100":"":POLARSSL_ERR_X509_KEY_INVALID_FORMAT + POLARSSL_ERR_ASN1_LENGTH_MISMATCH
Paul Bakker6b0fa4f2009-07-20 20:35:41 +0000603
604X509 Key ASN1 (RSAPrivateKey, values present, check_privkey fails)
605x509parse_key:"301b020100020101020101020101020101020101020101020101020101":"":POLARSSL_ERR_RSA_KEY_CHECK_FAILED