Index: net/data/verify_certificate_chain_unittest/target-eku-clientauth/generate-chains.py |
diff --git a/net/data/verify_certificate_chain_unittest/target-eku-clientauth/generate-chains.py b/net/data/verify_certificate_chain_unittest/target-eku-clientauth/generate-chains.py |
index fa5256c98262d2d6a65f49131a9060e9a99d9bc5..12d047385a5de924310d1f4cfc3f508f2dd79090 100755 |
--- a/net/data/verify_certificate_chain_unittest/target-eku-clientauth/generate-chains.py |
+++ b/net/data/verify_certificate_chain_unittest/target-eku-clientauth/generate-chains.py |
@@ -3,16 +3,15 @@ |
# Use of this source code is governed by a BSD-style license that can be |
# found in the LICENSE file. |
-"""Certificate chain with 1 intermediate and a trusted root. The target |
-certificate has only clientAuth EKU, so is expected to fail when verifying for |
-serverAuth.""" |
+"""Certificate chain where the target certificate sets the extended key usage |
+to clientAuth. Neither the root nor the intermediate have an EKU.""" |
import sys |
sys.path += ['..'] |
import common |
-# Self-signed root certificate (used as trust anchor). |
+# Self-signed root certificate. |
root = common.create_self_signed_root_certificate('Root') |
# Intermediate certificate. |