Index: net/data/verify_certificate_chain_unittest/unconstrained-root-bad-eku/generate-chains.py |
diff --git a/net/data/verify_certificate_chain_unittest/generate-constrained-root-bad-eku.py b/net/data/verify_certificate_chain_unittest/unconstrained-root-bad-eku/generate-chains.py |
similarity index 68% |
rename from net/data/verify_certificate_chain_unittest/generate-constrained-root-bad-eku.py |
rename to net/data/verify_certificate_chain_unittest/unconstrained-root-bad-eku/generate-chains.py |
index b78eed773faf35b4e3addc508107b2cc515d63e2..e58cd0adf85794cf64afe9beb6abd185d4958bcb 100755 |
--- a/net/data/verify_certificate_chain_unittest/generate-constrained-root-bad-eku.py |
+++ b/net/data/verify_certificate_chain_unittest/unconstrained-root-bad-eku/generate-chains.py |
@@ -8,6 +8,9 @@ has an EKU that restricts it to clientAuth. Verification is expected to fail as |
the end-entity is verified for serverAuth, and the trust anchor enforces |
constraints.""" |
+import sys |
+sys.path += ['..'] |
+ |
import common |
# Self-signed root certificate (used as trust anchor) with non-CA basic |
@@ -21,15 +24,5 @@ intermediate = common.create_intermediate_certificate('Intermediate', root) |
# Target certificate. |
target = common.create_end_entity_certificate('Target', intermediate) |
-chain = [target, intermediate] |
-trusted = common.TrustAnchor(root, constrained=True) |
-time = common.DEFAULT_TIME |
-key_purpose = common.KEY_PURPOSE_SERVER_AUTH |
-verify_result = False |
-errors = """----- Certificate i=2 (CN=Root) ----- |
-ERROR: The extended key usage does not include server auth |
- |
-""" |
- |
-common.write_test_file(__doc__, chain, trusted, time, key_purpose, |
- verify_result, errors) |
+chain = [target, intermediate, root] |
+common.write_chain(__doc__, chain, 'chain.pem') |