Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(195)

Unified Diff: net/data/verify_certificate_chain_unittest/violates-basic-constraints-pathlen-0.pem

Issue 1414393008: Add scripts to generate simple test data for certificate verification. (Closed) Base URL: https://chromium.googlesource.com/chromium/src.git@key_usages
Patch Set: Created 5 years, 2 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View side-by-side diff with in-line comments
Download patch
Index: net/data/verify_certificate_chain_unittest/violates-basic-constraints-pathlen-0.pem
diff --git a/net/data/verify_certificate_chain_unittest/violates-basic-constraints-pathlen-0.pem b/net/data/verify_certificate_chain_unittest/violates-basic-constraints-pathlen-0.pem
new file mode 100644
index 0000000000000000000000000000000000000000..467d7860a15f8b72e4769b5b2a80b657a0c24c54
--- /dev/null
+++ b/net/data/verify_certificate_chain_unittest/violates-basic-constraints-pathlen-0.pem
@@ -0,0 +1,370 @@
+[Created by: generate-violates-basic-constraints-pathlen-0.py]
+
+Certificate chain with 2 intermediaries. The first
+intermediary has a basic constraints path length of 0, so it is a violation for
+it to have a subordinate intermediary.
+
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number: 1 (0x1)
+ Signature Algorithm: sha256WithRSAEncryption
+ Issuer: CN=Intermediary2
+ Validity
+ Not Before: Jan 1 12:00:00 2015 GMT
+ Not After : Jan 1 12:00:00 2016 GMT
+ Subject: CN=Target
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (2048 bit)
+ Modulus:
+ 00:a9:24:73:77:62:93:c9:2f:60:67:0c:2f:23:f8:
+ 74:38:ba:66:34:dc:74:d8:01:61:cb:ac:50:1e:4b:
+ f7:7d:22:d8:85:b2:27:1e:34:b1:27:cd:b7:c1:44:
+ 85:46:2f:84:46:df:08:35:d2:5c:b9:e3:71:fe:89:
+ ce:19:29:7a:dd:be:81:2d:03:75:32:18:1a:22:3d:
+ e2:c0:97:6f:ab:be:e4:11:7a:e3:e2:ff:a5:5f:c8:
+ a0:77:b8:c8:00:7a:b2:28:4b:54:21:2a:25:6f:62:
+ e4:3a:c2:30:b7:7a:97:5e:7d:49:f3:97:8f:ba:4f:
+ f4:83:26:00:1c:63:b3:57:0b:58:51:e6:d8:1e:46:
+ 4d:87:3f:82:b1:22:c7:3e:4d:a7:11:2f:18:04:57:
+ 8b:2a:77:b7:12:5f:63:34:da:8a:b0:d5:25:1c:6a:
+ a7:33:8e:f0:c8:08:8d:3b:44:ae:9f:7a:80:f1:d8:
+ 9e:47:4e:35:87:34:9f:27:00:94:7d:04:17:f6:7a:
+ 9e:84:73:0e:fa:ab:c8:4e:e1:f4:3f:82:ad:97:fe:
+ c3:aa:1e:1d:c8:1d:1c:6c:97:e4:20:ee:36:6f:cf:
+ c1:f4:0a:27:00:34:7d:f0:30:22:c1:51:f8:ab:81:
+ b8:1b:5c:3a:53:d1:a8:a0:eb:ec:d3:89:13:3c:6d:
+ 7e:8b
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Subject Key Identifier:
+ 36:BC:E0:E0:11:FE:2B:04:5A:38:91:8A:19:69:AB:74:5D:14:2E:51
+ X509v3 Authority Key Identifier:
+ keyid:AD:0A:CB:67:E1:F9:05:C9:DD:53:CE:C5:E0:3A:5F:4C:7C:99:D9:8A
+
+ Authority Information Access:
+ CA Issuers - URI:http://url-for-aia/Intermediary2.cer
+
+ X509v3 CRL Distribution Points:
+
+ Full Name:
+ URI:http://url-for-crl/Intermediary2.crl
+
+ X509v3 Key Usage: critical
+ Digital Signature, Key Encipherment
+ X509v3 Extended Key Usage:
+ TLS Web Server Authentication, TLS Web Client Authentication
+ Signature Algorithm: sha256WithRSAEncryption
+ 25:e9:42:f8:c3:4b:f2:0f:b8:46:aa:1c:31:14:99:df:90:9c:
+ 2a:8e:bf:90:6d:c7:36:71:cc:00:47:80:a2:c3:b6:59:01:65:
+ 3f:e2:f4:b5:1f:46:27:65:ea:85:6a:51:4e:e1:2f:4e:0b:89:
+ 6f:eb:3f:57:d9:9d:07:91:3f:72:ab:e6:aa:b2:67:63:ce:d7:
+ fd:bd:55:be:2e:b0:31:cf:4f:da:e4:1e:b9:81:a3:40:60:51:
+ a8:88:30:dd:a6:0f:1e:95:de:c4:e5:70:a9:0a:5e:90:ec:8c:
+ f9:fb:73:06:dc:85:ad:46:3b:b8:4a:45:a1:3a:c3:0f:24:61:
+ ef:34:7f:9c:bd:58:a6:b3:c6:9f:ea:28:59:54:48:8a:86:df:
+ c4:77:16:e1:90:70:c7:9d:c4:e8:3b:71:2a:d2:95:1c:27:cc:
+ a8:2d:a0:cf:a3:25:c1:8e:ad:9d:8d:91:d3:54:2d:ba:48:50:
+ 5c:7e:c2:b0:3a:88:68:0e:df:58:74:b0:ad:6e:41:b4:ce:57:
+ db:6c:b8:31:40:e2:7a:00:ca:a4:a4:5d:b5:6f:a7:a9:dd:f4:
+ 53:f8:3c:54:80:56:de:15:13:40:44:45:c7:54:aa:32:f0:4d:
+ 9d:13:e6:8a:11:56:52:ac:af:f8:c6:55:22:35:ab:89:48:c5:
+ 7e:d1:52:a5
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
+
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number: 1 (0x1)
+ Signature Algorithm: sha256WithRSAEncryption
+ Issuer: CN=Intermediary1
+ Validity
+ Not Before: Jan 1 12:00:00 2015 GMT
+ Not After : Jan 1 12:00:00 2016 GMT
+ Subject: CN=Intermediary2
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (2048 bit)
+ Modulus:
+ 00:ce:63:d8:b3:a7:4c:ce:56:16:53:5e:1e:c6:0c:
+ 07:24:fd:ba:0d:6f:3b:34:14:11:27:74:00:e4:6d:
+ 3a:db:d1:94:d6:54:e4:cf:6b:a4:41:12:b9:20:db:
+ 6e:58:c8:63:70:8a:c4:95:60:31:7d:cd:da:ac:87:
+ d4:2c:c2:8b:51:b6:e4:da:23:a7:f3:4e:96:18:4e:
+ fe:99:88:65:20:f5:48:f2:91:7c:4c:92:fb:03:0f:
+ 62:c4:73:1d:0d:b9:35:a5:8b:43:da:a8:ff:00:f0:
+ a4:13:2b:65:b2:3b:b2:20:e2:13:87:bf:a6:f9:41:
+ 9f:0d:9d:d5:de:24:b2:0a:1b:6e:7a:74:13:13:e3:
+ e2:b2:31:54:66:18:15:64:94:e9:5c:7d:80:8c:b4:
+ a4:a4:f3:ea:56:ff:b7:4c:33:9b:1e:9d:61:b8:bd:
+ 48:89:41:dc:f5:9c:ef:82:82:e3:2c:72:8e:bb:ac:
+ 6b:e9:2f:be:c9:b1:b7:fa:a1:b2:d1:d1:58:cf:03:
+ 2c:2a:86:65:2d:ac:a9:30:89:39:d6:47:2f:58:2a:
+ cb:5e:eb:c0:cc:0a:d0:26:94:01:6c:1b:bc:3d:3d:
+ 47:d2:46:73:a1:c4:53:3f:af:41:ea:11:d3:e9:0e:
+ 87:78:c2:ca:a3:d2:57:f6:44:34:67:a3:61:cb:25:
+ 22:97
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Subject Key Identifier:
+ AD:0A:CB:67:E1:F9:05:C9:DD:53:CE:C5:E0:3A:5F:4C:7C:99:D9:8A
+ X509v3 Authority Key Identifier:
+ keyid:71:44:AE:BA:44:25:B9:5D:49:0E:AD:16:09:CE:F2:03:5B:48:FB:3E
+
+ Authority Information Access:
+ CA Issuers - URI:http://url-for-aia/Intermediary1.cer
+
+ X509v3 CRL Distribution Points:
+
+ Full Name:
+ URI:http://url-for-crl/Intermediary1.crl
+
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ X509v3 Basic Constraints: critical
+ CA:TRUE, pathlen:0
+ Signature Algorithm: sha256WithRSAEncryption
+ 6c:6d:7c:6b:52:4a:41:d1:9c:db:6a:cf:33:49:6e:62:22:77:
+ 55:51:97:a3:20:9c:6a:2d:52:4a:54:a9:80:ce:c9:9c:8a:67:
+ 9d:97:1f:bc:50:7a:f2:08:15:ce:a5:4e:14:64:f4:bb:2a:32:
+ 13:d3:ea:6d:09:a3:b7:98:3e:a6:6f:e9:d2:74:76:eb:b2:8f:
+ dc:10:bd:4c:72:c0:25:d3:35:89:88:1c:e2:e0:65:24:5e:e6:
+ a2:7a:73:7f:a1:92:4b:98:d3:cc:39:24:6a:06:a8:1a:8f:0d:
+ d9:be:ef:9d:83:95:15:b2:1b:69:cb:0d:4e:e6:0e:cd:52:84:
+ fa:68:6e:ae:0b:41:4a:ef:59:9e:6a:aa:0b:0d:f7:2b:1f:4e:
+ 2e:f0:1e:34:f3:f5:ff:7a:83:f3:64:59:00:f7:4f:34:6a:77:
+ 0c:be:45:d9:bf:7a:6b:33:26:25:66:a9:84:af:ff:ac:3a:0f:
+ 0f:17:e4:70:d9:5a:ec:7e:56:6c:c8:ce:9d:7f:0c:6a:21:7b:
+ c4:ee:38:87:97:41:b6:87:b7:b9:1f:a7:a4:29:6b:ea:95:af:
+ a7:ee:f5:9d:fb:9f:c5:9b:cf:55:78:90:79:f8:51:3b:98:89:
+ de:9f:1a:9a:86:74:f2:58:f0:8e:6a:76:de:33:8a:1c:b5:56:
+ 09:14:7f:e6
+-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
+
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number: 2 (0x2)
+ Signature Algorithm: sha256WithRSAEncryption
+ Issuer: CN=Root
+ Validity
+ Not Before: Jan 1 12:00:00 2015 GMT
+ Not After : Jan 1 12:00:00 2016 GMT
+ Subject: CN=Intermediary1
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (2048 bit)
+ Modulus:
+ 00:c0:74:9f:10:bb:51:4f:a6:4b:a9:54:50:ec:89:
+ e3:ff:2c:7c:d3:e8:6a:13:bc:80:b9:d3:b8:c3:31:
+ a5:16:d2:1c:c8:3b:6f:aa:f8:24:f3:d2:50:88:f6:
+ bc:51:08:54:e9:74:5f:d3:e0:3b:63:a7:a1:14:d1:
+ 0d:3d:de:2c:52:37:af:46:cd:2d:ec:9b:a7:1f:e9:
+ 28:53:af:37:86:ec:b8:39:40:3e:eb:13:25:7a:05:
+ 35:7e:a3:b0:cf:cb:ed:7b:10:ed:fc:08:03:b4:30:
+ ce:a6:9d:38:e6:fa:65:42:f3:71:fa:1b:0f:7a:91:
+ 38:e9:be:6e:7e:15:ec:8c:9a:03:a2:06:a1:fb:0a:
+ b2:0a:e3:5b:73:8f:e4:70:31:0b:ac:df:43:20:ea:
+ 4e:3f:d0:e8:6d:5c:ad:0b:4c:7d:9b:7d:4f:c5:3a:
+ 5b:0a:3f:ba:8a:f3:20:46:4e:43:88:06:00:b6:0e:
+ b4:59:ba:14:be:31:57:54:39:9f:e9:44:84:23:16:
+ a3:70:d9:04:29:29:57:33:ed:0b:bf:4b:1d:be:3b:
+ 31:e2:b7:60:4b:70:07:6d:e9:b1:07:a1:ea:ee:de:
+ 62:70:85:89:df:b0:09:1c:1e:fe:16:55:58:ce:fc:
+ e0:ea:23:20:ea:b9:3b:a5:dc:7f:ce:18:15:33:b0:
+ 4e:1b
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Subject Key Identifier:
+ 71:44:AE:BA:44:25:B9:5D:49:0E:AD:16:09:CE:F2:03:5B:48:FB:3E
+ X509v3 Authority Key Identifier:
+ keyid:2D:45:78:2D:8D:BA:DC:72:9E:A6:80:65:ED:D6:3D:B0:3D:A0:F2:76
+
+ Authority Information Access:
+ CA Issuers - URI:http://url-for-aia/Root.cer
+
+ X509v3 CRL Distribution Points:
+
+ Full Name:
+ URI:http://url-for-crl/Root.crl
+
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ X509v3 Basic Constraints: critical
+ CA:TRUE, pathlen:0
+ Signature Algorithm: sha256WithRSAEncryption
+ 76:91:96:28:58:17:5a:4b:42:60:2c:93:94:67:87:f6:91:2b:
+ 6b:0a:a0:a1:a6:d5:dd:45:a0:36:98:69:30:48:e0:3e:e4:2f:
+ 55:24:a5:56:5d:23:ba:0f:38:0c:4a:0f:41:2a:1e:3b:d8:42:
+ 09:62:e9:ba:7d:57:e7:37:7a:2c:9b:b5:97:31:0b:2d:d6:d8:
+ 5b:fb:4d:64:88:af:73:93:92:d5:61:28:39:01:f1:3f:2b:b2:
+ da:06:39:27:ee:1e:e8:68:3c:5b:f6:d2:88:1c:73:aa:c4:4c:
+ 35:cb:a0:21:fb:6a:62:95:2c:20:62:f5:1f:0e:6a:b5:b7:18:
+ a0:c8:f3:1f:18:ed:bf:ea:78:9c:22:3f:a0:fc:88:ec:e4:64:
+ 58:34:0a:10:2c:2d:54:3a:99:43:77:7e:cd:61:c9:83:ed:46:
+ c7:50:71:bb:fa:6c:0b:83:9d:da:d5:18:55:c6:5c:55:48:69:
+ 0d:7c:1d:0c:00:57:45:7d:9c:3b:a9:e3:bb:a3:74:5e:08:08:
+ 9e:09:9c:fc:d1:4f:a9:dd:7b:56:a1:11:9c:46:3b:d5:e6:cf:
+ 4a:5d:dc:fc:ef:61:41:46:94:be:4a:6b:cf:7b:97:d1:92:33:
+ aa:f0:49:47:80:bc:54:38:1e:38:a2:a0:58:20:67:b9:3b:aa:
+ 98:02:43:1e
+-----BEGIN CERTIFICATE-----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+-----END CERTIFICATE-----
+
+Certificate:
+ Data:
+ Version: 3 (0x2)
+ Serial Number: 1 (0x1)
+ Signature Algorithm: sha256WithRSAEncryption
+ Issuer: CN=Root
+ Validity
+ Not Before: Jan 1 12:00:00 2015 GMT
+ Not After : Jan 1 12:00:00 2016 GMT
+ Subject: CN=Root
+ Subject Public Key Info:
+ Public Key Algorithm: rsaEncryption
+ Public-Key: (2048 bit)
+ Modulus:
+ 00:9b:07:a1:34:3e:fa:9f:eb:2e:86:b4:24:04:e6:
+ c8:07:82:ca:a3:ee:ad:60:9e:5a:e8:5b:41:33:b6:
+ 8e:9b:a8:2f:0e:e2:1c:fe:82:98:f8:a1:bc:ff:b0:
+ a4:8b:55:ae:25:2c:c0:b4:12:33:50:2c:cb:1a:a2:
+ 43:fc:74:1a:da:ce:51:88:6f:0f:1e:ab:d8:d0:43:
+ 8b:1e:12:e3:72:87:a9:2f:43:fb:c6:49:c9:de:20:
+ 52:bb:53:56:28:af:f9:c2:03:a7:fd:47:b7:ef:ce:
+ c7:10:95:ed:8d:81:6a:d7:d3:0a:20:47:1b:29:2f:
+ ad:dd:d9:29:dd:8d:1e:90:1b:ad:e0:af:c4:24:21:
+ 5a:76:c2:4b:27:02:8b:df:12:e1:f0:13:00:24:76:
+ c5:be:12:97:28:4a:fe:51:f1:da:b7:69:e7:66:02:
+ b8:6a:20:87:fe:74:31:d6:f1:64:c8:05:3a:96:8d:
+ b2:69:3d:bc:57:79:a1:7b:64:35:4e:20:84:43:11:
+ f2:40:6e:07:61:a9:7c:87:53:3f:be:09:dc:d8:3c:
+ 5e:e8:eb:d1:a0:da:2d:8f:55:f8:bb:6c:2c:e7:e7:
+ c6:5a:ac:9e:1a:6d:9b:32:82:c6:13:ca:50:cb:b6:
+ b1:4c:63:e8:78:72:83:c6:34:77:fa:14:f4:46:47:
+ 63:c9
+ Exponent: 65537 (0x10001)
+ X509v3 extensions:
+ X509v3 Subject Key Identifier:
+ 2D:45:78:2D:8D:BA:DC:72:9E:A6:80:65:ED:D6:3D:B0:3D:A0:F2:76
+ X509v3 Authority Key Identifier:
+ keyid:2D:45:78:2D:8D:BA:DC:72:9E:A6:80:65:ED:D6:3D:B0:3D:A0:F2:76
+
+ Authority Information Access:
+ CA Issuers - URI:http://url-for-aia/Root.cer
+
+ X509v3 CRL Distribution Points:
+
+ Full Name:
+ URI:http://url-for-crl/Root.crl
+
+ X509v3 Key Usage: critical
+ Certificate Sign, CRL Sign
+ X509v3 Basic Constraints: critical
+ CA:TRUE
+ Signature Algorithm: sha256WithRSAEncryption
+ 08:af:4a:74:7b:b0:f8:d9:de:44:58:64:5b:c7:44:25:0b:23:
+ 65:7b:55:cf:c5:5a:35:af:4f:68:f8:c3:8b:94:84:6e:77:fe:
+ f5:b4:17:a2:a3:c2:f0:50:9f:57:c9:b3:6d:d3:8e:a4:53:1a:
+ 9f:94:40:fc:67:bd:5a:bc:60:10:31:87:f2:b8:73:34:0a:e4:
+ 4b:ff:0b:03:73:ff:83:5d:42:a2:89:87:3e:a6:05:7c:7e:45:
+ c7:9f:86:d6:b6:65:a1:c7:55:f3:34:5a:c1:10:4e:c4:05:98:
+ 71:66:44:81:00:87:6a:e0:82:2d:cf:6e:cd:3a:60:49:86:08:
+ 03:b9:f1:d9:a3:07:87:c0:59:4d:0d:58:99:16:ed:aa:71:3b:
+ 11:04:e1:30:92:35:ac:05:51:ae:60:21:5b:37:20:35:24:8b:
+ c5:ca:5a:5d:a0:da:db:21:09:75:01:09:3c:7a:6b:32:f5:09:
+ e2:aa:72:de:3e:eb:aa:3d:21:e3:30:1c:42:e8:71:3c:c7:3c:
+ 21:0a:14:c6:d5:1f:4e:0a:7e:b5:26:7f:7a:e7:2a:e0:1e:c2:
+ 93:20:59:6a:3c:f4:56:18:32:90:76:83:61:f4:a0:74:db:14:
+ fa:cf:cb:2e:c1:51:5d:11:1d:52:66:7c:3d:a5:84:39:ad:87:
+ 00:d3:95:c6
+-----BEGIN TRUSTED_CERTIFICATE-----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+-----END TRUSTED_CERTIFICATE-----
+
+-----BEGIN TIME-----
+MTUwMzAyMTIwMDAwWg==
+-----END TIME-----
+
+-----BEGIN VERIFY_RESULT-----
+RkFJTA==
+-----END VERIFY_RESULT-----

Powered by Google App Engine
This is Rietveld 408576698