| Index: net/data/verify_certificate_chain_unittest/target-restricts-eku-fail/generate-chains.py
|
| diff --git a/net/data/verify_certificate_chain_unittest/generate-target-restricts-eku-fail.py b/net/data/verify_certificate_chain_unittest/target-restricts-eku-fail/generate-chains.py
|
| similarity index 64%
|
| rename from net/data/verify_certificate_chain_unittest/generate-target-restricts-eku-fail.py
|
| rename to net/data/verify_certificate_chain_unittest/target-restricts-eku-fail/generate-chains.py
|
| index 43a6846cad8f1b6809be61008c57432cb58c7397..fa5256c98262d2d6a65f49131a9060e9a99d9bc5 100755
|
| --- a/net/data/verify_certificate_chain_unittest/generate-target-restricts-eku-fail.py
|
| +++ b/net/data/verify_certificate_chain_unittest/target-restricts-eku-fail/generate-chains.py
|
| @@ -7,6 +7,9 @@
|
| certificate has only clientAuth EKU, so is expected to fail when verifying for
|
| serverAuth."""
|
|
|
| +import sys
|
| +sys.path += ['..']
|
| +
|
| import common
|
|
|
| # Self-signed root certificate (used as trust anchor).
|
| @@ -19,15 +22,5 @@ intermediate = common.create_intermediate_certificate('Intermediate', root)
|
| target = common.create_end_entity_certificate('Target', intermediate)
|
| target.get_extensions().set_property('extendedKeyUsage', 'clientAuth')
|
|
|
| -chain = [target, intermediate]
|
| -trusted = common.TrustAnchor(root, constrained=False)
|
| -time = common.DEFAULT_TIME
|
| -key_purpose = common.KEY_PURPOSE_SERVER_AUTH
|
| -verify_result = False
|
| -errors = """----- Certificate i=0 (CN=Target) -----
|
| -ERROR: The extended key usage does not include server auth
|
| -
|
| -"""
|
| -
|
| -common.write_test_file(__doc__, chain, trusted, time, key_purpose,
|
| - verify_result, errors)
|
| +chain = [target, intermediate, root]
|
| +common.write_chain(__doc__, chain, 'chain.pem')
|
|
|