Index: net/data/verify_certificate_chain_unittest/intermediate-lacks-signing-key-usage/generate-chains.py |
diff --git a/net/data/verify_certificate_chain_unittest/intermediate-lacks-signing-key-usage/generate-chains.py b/net/data/verify_certificate_chain_unittest/intermediate-lacks-signing-key-usage/generate-chains.py |
index 42cb22fdc18e7ae1f184e3d0ffd67c4a733c4b50..657beabbd68aa3dd4aae222c1e6b06d0911a5edf 100755 |
--- a/net/data/verify_certificate_chain_unittest/intermediate-lacks-signing-key-usage/generate-chains.py |
+++ b/net/data/verify_certificate_chain_unittest/intermediate-lacks-signing-key-usage/generate-chains.py |
@@ -3,16 +3,14 @@ |
# Use of this source code is governed by a BSD-style license that can be |
# found in the LICENSE file. |
-"""Certificate chain with 1 intermediate and a trusted root. The intermediate |
-contains a keyUsage extension, HOWEVER it does not contain the keyCertSign bit. |
-Hence validation is expected to fail.""" |
+"""Certificate chain where the intermediate lacks a keyUsage extension.""" |
import sys |
sys.path += ['..'] |
import common |
-# Self-signed root certificate (used as trust anchor). |
+# Self-signed root certificate. |
root = common.create_self_signed_root_certificate('Root') |
# Intermediate that is missing keyCertSign. |