Index: net/data/parse_ocsp_unittest/ocsp_extra_certs.pem |
diff --git a/net/data/parse_ocsp_unittest/ocsp_extra_certs.pem b/net/data/parse_ocsp_unittest/ocsp_extra_certs.pem |
new file mode 100644 |
index 0000000000000000000000000000000000000000..6224d0d8c0843a16d70a5153f5e3587fad32d7b0 |
--- /dev/null |
+++ b/net/data/parse_ocsp_unittest/ocsp_extra_certs.pem |
@@ -0,0 +1,207 @@ |
+# Includes extra certs |
+$ openssl asn1parse -i < [OCSP RESPONSE] |
+ 0:d=0 hl=4 l=1170 cons: SEQUENCE |
+ 4:d=1 hl=2 l= 1 prim: ENUMERATED :00 |
+ 7:d=1 hl=4 l=1163 cons: cont [ 0 ] |
+ 11:d=2 hl=4 l=1159 cons: SEQUENCE |
+ 15:d=3 hl=2 l= 9 prim: OBJECT :Basic OCSP Response |
+ 26:d=3 hl=4 l=1144 prim: OCTET STRING |
+ 0:d=0 hl=4 l=1140 cons: SEQUENCE |
+ 4:d=1 hl=2 l= 125 cons: SEQUENCE |
+ 6:d=2 hl=2 l= 3 cons: cont [ 0 ] |
+ 8:d=3 hl=2 l= 1 prim: INTEGER :01 |
eroman
2016/02/19 02:27:34
Am I reading it right, and all of the versions use
svaldez
2016/02/19 15:13:55
Acknowledged.
|
+ 11:d=2 hl=2 l= 20 cons: cont [ 1 ] |
+ 13:d=3 hl=2 l= 18 cons: SEQUENCE |
+ 15:d=4 hl=2 l= 16 cons: SET |
+ 17:d=5 hl=2 l= 14 cons: SEQUENCE |
+ 19:d=6 hl=2 l= 3 prim: OBJECT :commonName |
+ 24:d=6 hl=2 l= 7 prim: PRINTABLESTRING :Test CA |
+ 33:d=2 hl=2 l= 15 prim: GENERALIZEDTIME :20160217114335Z |
+ 50:d=2 hl=2 l= 79 cons: SEQUENCE |
+ 52:d=3 hl=2 l= 77 cons: SEQUENCE |
+ 54:d=4 hl=2 l= 56 cons: SEQUENCE |
+ 56:d=5 hl=2 l= 7 cons: SEQUENCE |
+ 58:d=6 hl=2 l= 5 prim: OBJECT :sha1 |
+ 65:d=5 hl=2 l= 20 prim: OCTET STRING [HEX DUMP]:02FF75DA24DE8ADD150FAB689DCCE6E6636D0901 |
+ 87:d=5 hl=2 l= 20 prim: OCTET STRING [HEX DUMP]:8A0A9DED379293AC0D8BC476A0E8508A52615259 |
+ 109:d=5 hl=2 l= 1 prim: INTEGER :03 |
+ 112:d=4 hl=2 l= 0 prim: cont [ 0 ] |
+ 114:d=4 hl=2 l= 15 prim: GENERALIZEDTIME :20160217114335Z |
+ 131:d=1 hl=2 l= 13 cons: SEQUENCE |
+ 133:d=2 hl=2 l= 9 prim: OBJECT :sha1WithRSAEncryption |
+ 144:d=2 hl=2 l= 0 prim: NULL |
+ 146:d=1 hl=3 l= 129 prim: BIT STRING |
+ 278:d=1 hl=4 l= 862 cons: cont [ 0 ] |
+ 282:d=2 hl=4 l= 858 cons: SEQUENCE |
+ 286:d=3 hl=4 l= 408 cons: SEQUENCE |
+ 290:d=4 hl=4 l= 257 cons: SEQUENCE |
+ 294:d=5 hl=2 l= 3 cons: cont [ 0 ] |
+ 296:d=6 hl=2 l= 1 prim: INTEGER :02 |
+ 299:d=5 hl=2 l= 1 prim: INTEGER :00 |
+ 302:d=5 hl=2 l= 13 cons: SEQUENCE |
+ 304:d=6 hl=2 l= 9 prim: OBJECT :sha1WithRSAEncryption |
+ 315:d=6 hl=2 l= 0 prim: NULL |
+ 317:d=5 hl=2 l= 18 cons: SEQUENCE |
+ 319:d=6 hl=2 l= 16 cons: SET |
+ 321:d=7 hl=2 l= 14 cons: SEQUENCE |
+ 323:d=8 hl=2 l= 3 prim: OBJECT :commonName |
+ 328:d=8 hl=2 l= 7 prim: PRINTABLESTRING :Test CA |
+ 337:d=5 hl=2 l= 30 cons: SEQUENCE |
+ 339:d=6 hl=2 l= 13 prim: UTCTIME :160217164335Z |
+ 354:d=6 hl=2 l= 13 prim: UTCTIME :260214164335Z |
+ 369:d=5 hl=2 l= 18 cons: SEQUENCE |
+ 371:d=6 hl=2 l= 16 cons: SET |
+ 373:d=7 hl=2 l= 14 cons: SEQUENCE |
+ 375:d=8 hl=2 l= 3 prim: OBJECT :commonName |
+ 380:d=8 hl=2 l= 7 prim: PRINTABLESTRING :Test CA |
+ 389:d=5 hl=3 l= 159 cons: SEQUENCE |
+ 392:d=6 hl=2 l= 13 cons: SEQUENCE |
+ 394:d=7 hl=2 l= 9 prim: OBJECT :rsaEncryption |
+ 405:d=7 hl=2 l= 0 prim: NULL |
+ 407:d=6 hl=3 l= 141 prim: BIT STRING |
+ 551:d=4 hl=2 l= 13 cons: SEQUENCE |
+ 553:d=5 hl=2 l= 9 prim: OBJECT :sha1WithRSAEncryption |
+ 564:d=5 hl=2 l= 0 prim: NULL |
+ 566:d=4 hl=3 l= 129 prim: BIT STRING |
+ 698:d=3 hl=4 l= 442 cons: SEQUENCE |
+ 702:d=4 hl=4 l= 291 cons: SEQUENCE |
+ 706:d=5 hl=2 l= 3 cons: cont [ 0 ] |
+ 708:d=6 hl=2 l= 1 prim: INTEGER :02 |
+ 711:d=5 hl=2 l= 1 prim: INTEGER :01 |
+ 714:d=5 hl=2 l= 13 cons: SEQUENCE |
+ 716:d=6 hl=2 l= 9 prim: OBJECT :sha1WithRSAEncryption |
+ 727:d=6 hl=2 l= 0 prim: NULL |
+ 729:d=5 hl=2 l= 18 cons: SEQUENCE |
+ 731:d=6 hl=2 l= 16 cons: SET |
+ 733:d=7 hl=2 l= 14 cons: SEQUENCE |
+ 735:d=8 hl=2 l= 3 prim: OBJECT :commonName |
+ 740:d=8 hl=2 l= 7 prim: PRINTABLESTRING :Test CA |
+ 749:d=5 hl=2 l= 30 cons: SEQUENCE |
+ 751:d=6 hl=2 l= 13 prim: UTCTIME :160217164335Z |
+ 766:d=6 hl=2 l= 13 prim: UTCTIME :260214164335Z |
+ 781:d=5 hl=2 l= 27 cons: SEQUENCE |
+ 783:d=6 hl=2 l= 25 cons: SET |
+ 785:d=7 hl=2 l= 23 cons: SEQUENCE |
+ 787:d=8 hl=2 l= 3 prim: OBJECT :commonName |
+ 792:d=8 hl=2 l= 16 prim: PRINTABLESTRING :Test OCSP Signer |
+ 810:d=5 hl=3 l= 159 cons: SEQUENCE |
+ 813:d=6 hl=2 l= 13 cons: SEQUENCE |
+ 815:d=7 hl=2 l= 9 prim: OBJECT :rsaEncryption |
+ 826:d=7 hl=2 l= 0 prim: NULL |
+ 828:d=6 hl=3 l= 141 prim: BIT STRING |
+ 972:d=5 hl=2 l= 23 cons: cont [ 3 ] |
+ 974:d=6 hl=2 l= 21 cons: SEQUENCE |
+ 976:d=7 hl=2 l= 19 cons: SEQUENCE |
+ 978:d=8 hl=2 l= 3 prim: OBJECT :X509v3 Extended Key Usage |
+ 983:d=8 hl=2 l= 12 prim: OCTET STRING [HEX DUMP]:300A06082B06010505070309 |
+ 997:d=4 hl=2 l= 13 cons: SEQUENCE |
+ 999:d=5 hl=2 l= 9 prim: OBJECT :sha1WithRSAEncryption |
+ 1010:d=5 hl=2 l= 0 prim: NULL |
+ 1012:d=4 hl=3 l= 129 prim: BIT STRING |
+-----BEGIN OCSP RESPONSE----- |
+MIIEkgoBAKCCBIswggSHBgkrBgEFBQcwAQEEggR4MIIEdDB9oAMCAQGhFDASMRAwDgYDVQQDEwd |
+UZXN0IENBGA8yMDE2MDIxNzExNDMzNVowTzBNMDgwBwYFKw4DAhoEFAL/ddok3ordFQ+raJ3M5u |
+ZjbQkBBBSKCp3tN5KTrA2LxHag6FCKUmFSWQIBA4AAGA8yMDE2MDIxNzExNDMzNVowDQYJKoZIh |
+vcNAQEFBQADgYEAAgXyvyNRXn2WTSsPniy6bjnnK9GMUlkpSXMUNg62brqYFbZfpzQzM/cfrxJ4 |
+yie24QBfnlyMl5mmoa8pHslO1ogOO9sQ2iYF5lcH5yun/yMuB525oYcUfHbvEdVhVZz/IxXlSGF |
+LCfL85XBZ9dkxaAG/x2nqS6JmexY+EzWQE/2gggNeMIIDWjCCAZgwggEBoAMCAQICAQAwDQYJKo |
+ZIhvcNAQEFBQAwEjEQMA4GA1UEAxMHVGVzdCBDQTAeFw0xNjAyMTcxNjQzMzVaFw0yNjAyMTQxN |
+jQzMzVaMBIxEDAOBgNVBAMTB1Rlc3QgQ0EwgZ8wDQYJKoZIhvcNAQEBBQADgY0AMIGJAoGBAKUR |
+ncnTPoQZdxSvQTMtotBrkdx/YgEn0qIq7x4Egj0SfdQGzH/0ZTqa3SPBxxajQuRX04qWOs2Jx5D |
+GhwDOcPBXaoGw0aCZjMtmt+xCh4W+LPIxe+j5Saw9u5/t7ea5siDqoV1fLVbCCrSrl1Y1LARUpj |
+LBfEyW7+hI7ScVS4blAgMBAAEwDQYJKoZIhvcNAQEFBQADgYEAGSOB3trF/0WHC948HQ5kwMsjD |
+JknkF+CR3R9jKbQXoZLbqt9mBuS2+HSSaTGL2rWWJjrq3A4Xbq8gIFcU9phG6W0PaGQ42RwugMM |
+RAkiUvxz/JZVEQXyVO7Wp1wZOjYiKZCgGJukSFKurKHVUwR8XGoD8x9ivbPfUSlwQYy+8IAwggG |
+6MIIBI6ADAgECAgEBMA0GCSqGSIb3DQEBBQUAMBIxEDAOBgNVBAMTB1Rlc3QgQ0EwHhcNMTYwMj |
+E3MTY0MzM1WhcNMjYwMjE0MTY0MzM1WjAbMRkwFwYDVQQDExBUZXN0IE9DU1AgU2lnbmVyMIGfM |
+A0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDE+imJZ9JEA2/ndlcGbCvg/8JnbceqtJsu9Xx/xZ47 |
+/p07qAFSFHwFxZDJ7fitiRzI7k+BQPDx/TeI2gW0OfL6PwAnZHOlIXjJeLRJ6jHkMk30Qr3sj31 |
+hiyAkRRRd6RIFEcitQYzc4c0EczoU5etSn3MWthzsvO/uHfzEiu6lLwIDAQABoxcwFTATBgNVHS |
+UEDDAKBggrBgEFBQcDCTANBgkqhkiG9w0BAQUFAAOBgQATL9BJ02p/cwPlgpK1ZJnHt6WUwjklZ |
+5Mo/CimjUC3j2geNDFE+VAWJbgSCrSGyTkMJKHtKnXMjJht2uIiETbKq0qnyOqNYaK4l/DBiTWs |
+ZNDUkf6Oo25AOvD9R2j+lva62EqRexv2bn+2HzH47JrvigCzSTeqefF7STYGPDIsLw== |
+-----END OCSP RESPONSE----- |
+ |
+$ openssl asn1parse -i < [CA CERTIFICATE] |
+ 0:d=0 hl=4 l= 408 cons: SEQUENCE |
+ 4:d=1 hl=4 l= 257 cons: SEQUENCE |
+ 8:d=2 hl=2 l= 3 cons: cont [ 0 ] |
+ 10:d=3 hl=2 l= 1 prim: INTEGER :02 |
+ 13:d=2 hl=2 l= 1 prim: INTEGER :00 |
+ 16:d=2 hl=2 l= 13 cons: SEQUENCE |
+ 18:d=3 hl=2 l= 9 prim: OBJECT :sha1WithRSAEncryption |
+ 29:d=3 hl=2 l= 0 prim: NULL |
+ 31:d=2 hl=2 l= 18 cons: SEQUENCE |
+ 33:d=3 hl=2 l= 16 cons: SET |
+ 35:d=4 hl=2 l= 14 cons: SEQUENCE |
+ 37:d=5 hl=2 l= 3 prim: OBJECT :commonName |
+ 42:d=5 hl=2 l= 7 prim: PRINTABLESTRING :Test CA |
+ 51:d=2 hl=2 l= 30 cons: SEQUENCE |
+ 53:d=3 hl=2 l= 13 prim: UTCTIME :160217164335Z |
+ 68:d=3 hl=2 l= 13 prim: UTCTIME :260214164335Z |
+ 83:d=2 hl=2 l= 18 cons: SEQUENCE |
+ 85:d=3 hl=2 l= 16 cons: SET |
+ 87:d=4 hl=2 l= 14 cons: SEQUENCE |
+ 89:d=5 hl=2 l= 3 prim: OBJECT :commonName |
+ 94:d=5 hl=2 l= 7 prim: PRINTABLESTRING :Test CA |
+ 103:d=2 hl=3 l= 159 cons: SEQUENCE |
+ 106:d=3 hl=2 l= 13 cons: SEQUENCE |
+ 108:d=4 hl=2 l= 9 prim: OBJECT :rsaEncryption |
+ 119:d=4 hl=2 l= 0 prim: NULL |
+ 121:d=3 hl=3 l= 141 prim: BIT STRING |
+ 265:d=1 hl=2 l= 13 cons: SEQUENCE |
+ 267:d=2 hl=2 l= 9 prim: OBJECT :sha1WithRSAEncryption |
+ 278:d=2 hl=2 l= 0 prim: NULL |
+ 280:d=1 hl=3 l= 129 prim: BIT STRING |
+-----BEGIN CA CERTIFICATE----- |
+MIIBmDCCAQGgAwIBAgIBADANBgkqhkiG9w0BAQUFADASMRAwDgYDVQQDEwdUZXN0IENBMB4XDTE |
+2MDIxNzE2NDMzNVoXDTI2MDIxNDE2NDMzNVowEjEQMA4GA1UEAxMHVGVzdCBDQTCBnzANBgkqhk |
+iG9w0BAQEFAAOBjQAwgYkCgYEApRGdydM+hBl3FK9BMy2i0GuR3H9iASfSoirvHgSCPRJ91AbMf |
+/RlOprdI8HHFqNC5FfTipY6zYnHkMaHAM5w8FdqgbDRoJmMy2a37EKHhb4s8jF76PlJrD27n+3t |
+5rmyIOqhXV8tVsIKtKuXVjUsBFSmMsF8TJbv6EjtJxVLhuUCAwEAATANBgkqhkiG9w0BAQUFAAO |
+BgQAZI4He2sX/RYcL3jwdDmTAyyMMmSeQX4JHdH2MptBehktuq32YG5Lb4dJJpMYvatZYmOurcD |
+hduryAgVxT2mEbpbQ9oZDjZHC6AwxECSJS/HP8llURBfJU7tanXBk6NiIpkKAYm6RIUq6sodVTB |
+HxcagPzH2K9s99RKXBBjL7wgA== |
+-----END CA CERTIFICATE----- |
+ |
+$ openssl asn1parse -i < [CERTIFICATE] |
+ 0:d=0 hl=4 l= 410 cons: SEQUENCE |
+ 4:d=1 hl=4 l= 259 cons: SEQUENCE |
+ 8:d=2 hl=2 l= 3 cons: cont [ 0 ] |
+ 10:d=3 hl=2 l= 1 prim: INTEGER :02 |
+ 13:d=2 hl=2 l= 1 prim: INTEGER :03 |
+ 16:d=2 hl=2 l= 13 cons: SEQUENCE |
+ 18:d=3 hl=2 l= 9 prim: OBJECT :sha1WithRSAEncryption |
+ 29:d=3 hl=2 l= 0 prim: NULL |
+ 31:d=2 hl=2 l= 18 cons: SEQUENCE |
+ 33:d=3 hl=2 l= 16 cons: SET |
+ 35:d=4 hl=2 l= 14 cons: SEQUENCE |
+ 37:d=5 hl=2 l= 3 prim: OBJECT :commonName |
+ 42:d=5 hl=2 l= 7 prim: PRINTABLESTRING :Test CA |
+ 51:d=2 hl=2 l= 30 cons: SEQUENCE |
+ 53:d=3 hl=2 l= 13 prim: UTCTIME :160217164335Z |
+ 68:d=3 hl=2 l= 13 prim: UTCTIME :260214164335Z |
+ 83:d=2 hl=2 l= 20 cons: SEQUENCE |
+ 85:d=3 hl=2 l= 18 cons: SET |
+ 87:d=4 hl=2 l= 16 cons: SEQUENCE |
+ 89:d=5 hl=2 l= 3 prim: OBJECT :commonName |
+ 94:d=5 hl=2 l= 9 prim: PRINTABLESTRING :Test Cert |
+ 105:d=2 hl=3 l= 159 cons: SEQUENCE |
+ 108:d=3 hl=2 l= 13 cons: SEQUENCE |
+ 110:d=4 hl=2 l= 9 prim: OBJECT :rsaEncryption |
+ 121:d=4 hl=2 l= 0 prim: NULL |
+ 123:d=3 hl=3 l= 141 prim: BIT STRING |
+ 267:d=1 hl=2 l= 13 cons: SEQUENCE |
+ 269:d=2 hl=2 l= 9 prim: OBJECT :sha1WithRSAEncryption |
+ 280:d=2 hl=2 l= 0 prim: NULL |
+ 282:d=1 hl=3 l= 129 prim: BIT STRING |
+-----BEGIN CERTIFICATE----- |
+MIIBmjCCAQOgAwIBAgIBAzANBgkqhkiG9w0BAQUFADASMRAwDgYDVQQDEwdUZXN0IENBMB4XDTE |
+2MDIxNzE2NDMzNVoXDTI2MDIxNDE2NDMzNVowFDESMBAGA1UEAxMJVGVzdCBDZXJ0MIGfMA0GCS |
+qGSIb3DQEBAQUAA4GNADCBiQKBgQCmC4zqGNC+KHEtS+PnHTwZKfnrCYycpIa2htLwJ2V+LBdtZ |
+YAWNjJlPdDsayPiu0LzW2sN+E+js3mKVEX0qfzK11vO/17KkXei2G7/nzm8qgOmafyojlnQxYEY |
+DXcW9WlMEAMU1MFuOkXeFwMkQUAAuOEc27BQAK7JX85346ivdQIDAQABMA0GCSqGSIb3DQEBBQU |
+AA4GBADIktrU1l+Og5OsdNW01mav5ajZnpBEaIx1M5PvEd4Cf4OKhGneAXeMluLAs2Ypi4zQKHi |
+Zj2YcWe5c36QDpryWQ5czcNX5zU2FLspAyD3zgUDJDIIykqV8xhph5Q8eiOgV0aM2oW4qk5AxfR |
+9I9NNsEWDJcJ7OGHjRsThaOrth4 |
+-----END CERTIFICATE----- |