| Index: net/data/verify_certificate_chain_unittest/intermediate-eku-clientauth/generate-chains.py
|
| diff --git a/net/data/verify_certificate_chain_unittest/intermediate-eku-clientauth/generate-chains.py b/net/data/verify_certificate_chain_unittest/intermediate-eku-clientauth/generate-chains.py
|
| index 8f8eae75bfc5997acbd73cbf9525f67fe3e9ef77..5268f39df68da34e13a2773c2f430843bcdd7ddf 100755
|
| --- a/net/data/verify_certificate_chain_unittest/intermediate-eku-clientauth/generate-chains.py
|
| +++ b/net/data/verify_certificate_chain_unittest/intermediate-eku-clientauth/generate-chains.py
|
| @@ -3,16 +3,15 @@
|
| # Use of this source code is governed by a BSD-style license that can be
|
| # found in the LICENSE file.
|
|
|
| -"""Certificate chain with 1 intermediate and a trusted root. The intermediate
|
| -restricts the EKU to clientAuth, and the target has serverAuth +
|
| -clientAuth. Verification is expected to fail when requesting serverAuth."""
|
| +"""Certificate chain where the intermediate restricts the extended key usage to
|
| +clientAuth, and the target asserts serverAuth + clientAuth."""
|
|
|
| import sys
|
| sys.path += ['..']
|
|
|
| import common
|
|
|
| -# Self-signed root certificate (used as trust anchor).
|
| +# Self-signed root certificate.
|
| root = common.create_self_signed_root_certificate('Root')
|
|
|
| # Intermediate certificate.
|
|
|