OLD | NEW |
1 #!/usr/bin/python | 1 #!/usr/bin/python |
2 # Copyright (c) 2015 The Chromium Authors. All rights reserved. | 2 # Copyright (c) 2015 The Chromium Authors. All rights reserved. |
3 # Use of this source code is governed by a BSD-style license that can be | 3 # Use of this source code is governed by a BSD-style license that can be |
4 # found in the LICENSE file. | 4 # found in the LICENSE file. |
5 | 5 |
6 """Certificate chain with 1 intermediate and a trusted root. The target | 6 """Certificate chain with 1 intermediate and a trusted root. The target |
7 certificate is signed using a weak RSA key (512-bit modulus), and so | 7 certificate is signed using a weak RSA key (512-bit modulus), and so |
8 verification is expected to fail.""" | 8 verification is expected to fail.""" |
9 | 9 |
10 import common | 10 import common |
11 | 11 |
12 # Self-signed root certificate (used as trust anchor). | 12 # Self-signed root certificate (used as trust anchor). |
13 root = common.create_self_signed_root_certificate('Root') | 13 root = common.create_self_signed_root_certificate('Root') |
14 | 14 |
15 # Intermediate with a very weak key size (512-bit RSA). | 15 # Intermediate with a very weak key size (512-bit RSA). |
16 intermediate = common.create_intermediate_certificate('Intermediate', root) | 16 intermediate = common.create_intermediate_certificate('Intermediate', root) |
17 intermediate.set_key(common.generate_rsa_key(512)) | 17 intermediate.set_key(common.generate_rsa_key(512)) |
18 | 18 |
19 # Target certificate. | 19 # Target certificate. |
20 target = common.create_end_entity_certificate('Target', intermediate) | 20 target = common.create_end_entity_certificate('Target', intermediate) |
21 | 21 |
22 chain = [target, intermediate] | 22 chain = [target, intermediate] |
23 trusted = common.TrustAnchor(root, constrained=False) | 23 trusted = common.TrustAnchor(root, constrained=False) |
24 time = common.DEFAULT_TIME | 24 time = common.DEFAULT_TIME |
25 verify_result = False | 25 verify_result = False |
26 errors = """[Context] Processing Certificate | 26 errors = """----- Certificate i=0 (CN=Target) ----- |
27 index: 1 | 27 ERROR: RSA modulus too small |
28 [Error] RSA modulus too small | 28 actual: 512 |
29 actual: 512 | 29 minimum: 1024 |
30 minimum: 1024 | 30 ERROR: Unacceptable modulus length for RSA key |
31 [Error] Unacceptable modulus length for RSA key | 31 ERROR: VerifySignedData failed |
32 [Error] VerifySignedData failed | 32 |
33 """ | 33 """ |
34 | 34 |
35 common.write_test_file(__doc__, chain, trusted, time, verify_result, errors) | 35 common.write_test_file(__doc__, chain, trusted, time, verify_result, errors) |
OLD | NEW |