From dc9c8f8b52cbf2e8424f5e98f63d29aa7fb81fe7 Mon Sep 17 00:00:00 2001 From: Jeremy Harris Date: Mon, 18 Dec 2017 15:38:54 +0000 Subject: Testsuite: move CRL testcases away from using SHA1-signed certs --- test/stderr/2014 | 20 ++++++++++++++++++++ test/stderr/2114 | 20 ++++++++++++++++++++ 2 files changed, 40 insertions(+) create mode 100644 test/stderr/2014 create mode 100644 test/stderr/2114 (limited to 'test/stderr') diff --git a/test/stderr/2014 b/test/stderr/2014 new file mode 100644 index 000000000..c47f2f6e8 --- /dev/null +++ b/test/stderr/2014 @@ -0,0 +1,20 @@ +### No certificate, certificate required +### No certificate, certificate optional at TLS time, required by ACL +### Good certificate, certificate required +### Good certificate, certificate optional at TLS time, checked by ACL +### Bad certificate, certificate required +### Bad certificate, certificate optional at TLS time, reject at ACL time +### Otherwise good but revoked certificate, certificate required +### Revoked certificate, certificate optional at TLS time, reject at ACL time +### Good certificate, certificate required - but nonmatching CRL also present + +******** SERVER ******** +### No certificate, certificate required +### No certificate, certificate optional at TLS time, required by ACL +### Good certificate, certificate required +### Good certificate, certificate optional at TLS time, checked by ACL +### Bad certificate, certificate required +### Bad certificate, certificate optional at TLS time, reject at ACL time +### Otherwise good but revoked certificate, certificate required +### Revoked certificate, certificate optional at TLS time, reject at ACL time +### Good certificate, certificate required - but nonmatching CRL also present diff --git a/test/stderr/2114 b/test/stderr/2114 new file mode 100644 index 000000000..c47f2f6e8 --- /dev/null +++ b/test/stderr/2114 @@ -0,0 +1,20 @@ +### No certificate, certificate required +### No certificate, certificate optional at TLS time, required by ACL +### Good certificate, certificate required +### Good certificate, certificate optional at TLS time, checked by ACL +### Bad certificate, certificate required +### Bad certificate, certificate optional at TLS time, reject at ACL time +### Otherwise good but revoked certificate, certificate required +### Revoked certificate, certificate optional at TLS time, reject at ACL time +### Good certificate, certificate required - but nonmatching CRL also present + +******** SERVER ******** +### No certificate, certificate required +### No certificate, certificate optional at TLS time, required by ACL +### Good certificate, certificate required +### Good certificate, certificate optional at TLS time, checked by ACL +### Bad certificate, certificate required +### Bad certificate, certificate optional at TLS time, reject at ACL time +### Otherwise good but revoked certificate, certificate required +### Revoked certificate, certificate optional at TLS time, reject at ACL time +### Good certificate, certificate required - but nonmatching CRL also present -- cgit v1.2.3