openssl/test/certs
Dirk-Willem van Gulik 47f387e98e Add support for unusal 'othername' subjectAltNames
Increasingly certificates seem to have special things in the subjectAltName that have arbitrary strings in them.

E.g. some (now) common in EU export certificates and, for a few years now, certificates issued to medical doctors (in for example the netherlands, the full spec is https://www.uziregister.nl/Media/Default/PDF/20200325%20CA%20model%20pasmodel%20certificaatprofielen%20v10_0.pdf, section 4.8, page 16 for an example of one country).

Reviewed-by: Tomas Mraz <tmraz@fedoraproject.org>
Reviewed-by: Dmitry Belyavskiy <beldmit@gmail.com>
(Merged from https://github.com/openssl/openssl/pull/11599)
2020-04-25 18:52:30 +03:00
..
alt1-cert.pem Limit scope of CN name constraints 2018-05-23 11:12:13 -04:00
alt1-key.pem Limit scope of CN name constraints 2018-05-23 11:12:13 -04:00
alt2-cert.pem
alt2-key.pem
alt3-cert.pem
alt3-key.pem
bad-pc3-cert.pem
bad-pc3-key.pem
bad-pc4-cert.pem
bad-pc4-key.pem
bad-pc6-cert.pem
bad-pc6-key.pem
bad.key
bad.pem
badalt1-cert.pem
badalt1-key.pem
badalt2-cert.pem
badalt2-key.pem
badalt3-cert.pem
badalt3-key.pem
badalt4-cert.pem
badalt4-key.pem
badalt5-cert.pem
badalt5-key.pem
badalt6-cert.pem Limit scope of CN name constraints 2018-05-23 11:12:13 -04:00
badalt6-key.pem Limit scope of CN name constraints 2018-05-23 11:12:13 -04:00
badalt7-cert.pem Limit scope of CN name constraints 2018-05-23 11:12:13 -04:00
badalt7-key.pem Limit scope of CN name constraints 2018-05-23 11:12:13 -04:00
badalt8-cert.pem
badalt8-key.pem
badalt9-cert.pem
badalt9-key.pem
badalt10-cert.pem
badalt10-key.pem
badcn1-cert.pem Limit scope of CN name constraints 2018-05-23 11:12:13 -04:00
badcn1-key.pem Limit scope of CN name constraints 2018-05-23 11:12:13 -04:00
ca-anyEKU.pem
ca-cert2.pem
ca-cert-768.pem
ca-cert-768i.pem
ca-cert-md5-any.pem
ca-cert-md5.pem
ca-cert.pem
ca-clientAuth.pem
ca-expired.pem
ca-key2.pem
ca-key-768.pem
ca-key.pem
ca-name2.pem
ca-nonbc.pem
ca-nonca.pem
ca-root2.pem
ca-serverAuth.pem
ca+anyEKU.pem
ca+clientAuth.pem
ca+serverAuth.pem
cca-anyEKU.pem
cca-cert.pem
cca-clientAuth.pem
cca-serverAuth.pem
cca+anyEKU.pem
cca+clientAuth.pem
cca+serverAuth.pem
client-ed448-cert.pem Update tests for TLS Ed448 2018-03-05 11:39:44 +00:00
client-ed448-key.pem Update tests for TLS Ed448 2018-03-05 11:39:44 +00:00
client-ed25519-cert.pem Add Ed25519 EE certificates 2017-06-21 14:11:01 +01:00
client-ed25519-key.pem Add Ed25519 EE certificates 2017-06-21 14:11:01 +01:00
croot-anyEKU.pem
croot-cert.pem
croot-clientAuth.pem
croot-serverAuth.pem
croot+anyEKU.pem
croot+clientAuth.pem
croot+serverAuth.pem
ct-server-key-public.pem Create a new embeddedSCTs1 that's signed using SHA256 2020-02-05 22:04:37 +01:00
ct-server-key.pem Create a new embeddedSCTs1 that's signed using SHA256 2020-02-05 22:04:37 +01:00
cyrillic_crl.pem Switch command-line utils to new nameopt API. 2017-04-25 12:37:17 -04:00
cyrillic_crl.utf8 add 'Signature Value:' line and correct indentation when printing X.509 signature value 2019-03-18 17:20:23 +00:00
cyrillic.msb add 'Signature Value:' line and correct indentation when printing X.509 signature value 2019-03-18 17:20:23 +00:00
cyrillic.pem Add test for -nameout output 2017-03-14 15:18:07 -04:00
cyrillic.utf8 add 'Signature Value:' line and correct indentation when printing X.509 signature value 2019-03-18 17:20:23 +00:00
dhp2048.pem Add DH parameters, DSA cert and key 2017-02-17 16:33:12 +00:00
ee-cert2.pem
ee-cert-768.pem
ee-cert-768i.pem
ee-cert-md5.pem
ee-cert.pem
ee-client-chain.pem
ee-client.pem
ee-clientAuth.pem
ee-ecdsa-client-chain.pem
ee-ecdsa-key.pem
ee-ed25519.pem Add Ed25519 verify test. 2017-05-30 20:38:20 +01:00
ee-expired.pem
ee-key-768.pem
ee-key.pem
ee-name2.pem
ee-pathlen.pem Add test cases for the non CA certificate with pathlen:0 2020-04-06 10:26:14 +02:00
ee-pss-sha1-cert.pem Add certificates with PSS signatures 2017-04-25 22:12:34 +01:00
ee-pss-sha256-cert.pem Add certificates with PSS signatures 2017-04-25 22:12:34 +01:00
ee-serverAuth.pem
ee+clientAuth.pem
ee+serverAuth.pem
embeddedSCTs1_issuer-key.pem Create a new embeddedSCTs1 that's signed using SHA256 2020-02-05 22:04:37 +01:00
embeddedSCTs1_issuer.pem
embeddedSCTs1-key.pem Create a new embeddedSCTs1 that's signed using SHA256 2020-02-05 22:04:37 +01:00
embeddedSCTs1.pem Create a new embeddedSCTs1 that's signed using SHA256 2020-02-05 22:04:37 +01:00
embeddedSCTs1.sct Create a new embeddedSCTs1 that's signed using SHA256 2020-02-05 22:04:37 +01:00
embeddedSCTs1.tlssct Create a new embeddedSCTs1 that's signed using SHA256 2020-02-05 22:04:37 +01:00
embeddedSCTs3_issuer.pem
embeddedSCTs3.pem
embeddedSCTs3.sct Create a new embeddedSCTs1 that's signed using SHA256 2020-02-05 22:04:37 +01:00
fake-gp.pem Add support for unusal 'othername' subjectAltNames 2020-04-25 18:52:30 +03:00
goodcn1-cert.pem Limit scope of CN name constraints 2018-05-23 11:12:13 -04:00
goodcn1-key.pem Limit scope of CN name constraints 2018-05-23 11:12:13 -04:00
grfc.pem Issuer Sign Tool extention support 2020-03-25 15:33:53 +03:00
interCA.key
interCA.pem
leaf.key
leaf.pem
many-constraints.pem Guard against DoS in name constraints handling. 2017-09-22 22:00:55 +02:00
many-names1.pem Guard against DoS in name constraints handling. 2017-09-22 22:00:55 +02:00
many-names2.pem Guard against DoS in name constraints handling. 2017-09-22 22:00:55 +02:00
many-names3.pem Guard against DoS in name constraints handling. 2017-09-22 22:00:55 +02:00
mkcert.sh Update copyright year 2020-04-23 13:55:52 +01:00
nca+anyEKU.pem
nca+serverAuth.pem
ncca1-cert.pem
ncca1-key.pem
ncca2-cert.pem
ncca2-key.pem
ncca3-cert.pem
ncca3-key.pem
ncca-cert.pem
ncca-key.pem
nroot+anyEKU.pem
nroot+serverAuth.pem
p256-server-cert.pem Add P-384 root and P-384, P-256 EE certificates. 2017-02-24 23:30:49 +00:00
p256-server-key.pem Add P-384 root and P-384, P-256 EE certificates. 2017-02-24 23:30:49 +00:00
p384-root-key.pem Add P-384 root and P-384, P-256 EE certificates. 2017-02-24 23:30:49 +00:00
p384-root.pem Add P-384 root and P-384, P-256 EE certificates. 2017-02-24 23:30:49 +00:00
p384-server-cert.pem Add P-384 root and P-384, P-256 EE certificates. 2017-02-24 23:30:49 +00:00
p384-server-key.pem Add P-384 root and P-384, P-256 EE certificates. 2017-02-24 23:30:49 +00:00
pathlen.pem
pc1-cert.pem
pc1-key.pem
pc2-cert.pem
pc2-key.pem
pc5-cert.pem
pc5-key.pem
root2-serverAuth.pem
root2+clientAuth.pem
root2+serverAuth.pem
root-anyEKU.pem
root-cert2.pem
root-cert-768.pem
root-cert-md5.pem
root-cert-rsa2.pem Fix cert with rsa instead of rsaEncryption as public key algorithm 2018-12-31 09:47:12 +01:00
root-cert.pem
root-clientAuth.pem
root-ed448-cert.pem Generate new Ed488 certificates 2020-02-11 23:23:42 +01:00
root-ed448-key.pem Generate new Ed488 certificates 2020-02-11 23:23:42 +01:00
root-ed25519.pem Add Ed25519 verify test. 2017-05-30 20:38:20 +01:00
root-ed25519.privkey.pem Configure: make C++ build tests optional and configurable 2019-03-05 09:26:13 +01:00
root-ed25519.pubkey.pem Configure: make C++ build tests optional and configurable 2019-03-05 09:26:13 +01:00
root-key2.pem
root-key-768.pem
root-key.pem
root-name2.pem
root-nonca.pem
root-noserver.pem
root-serverAuth.pem
root+anyEKU.pem
root+clientAuth.pem
root+serverAuth.pem
rootCA.key
rootCA.pem
rootcert.pem
rootkey.pem
roots.pem
sca-anyEKU.pem
sca-cert.pem
sca-clientAuth.pem
sca-serverAuth.pem
sca+anyEKU.pem
sca+clientAuth.pem
sca+serverAuth.pem
server-cecdsa-cert.pem EC certificate with compression point 2017-02-24 23:52:22 +00:00
server-cecdsa-key.pem EC certificate with compression point 2017-02-24 23:52:22 +00:00
server-dsa-cert.pem Add DH parameters, DSA cert and key 2017-02-17 16:33:12 +00:00
server-dsa-key.pem Add DH parameters, DSA cert and key 2017-02-17 16:33:12 +00:00
server-ecdsa-brainpoolP256r1-cert.pem Add some test brainpool certificates 2018-11-12 11:10:21 +00:00
server-ecdsa-brainpoolP256r1-key.pem Add some test brainpool certificates 2018-11-12 11:10:21 +00:00
server-ecdsa-cert.pem
server-ecdsa-key.pem
server-ed448-cert.pem Generate new Ed488 certificates 2020-02-11 23:23:42 +01:00
server-ed448-key.pem Update tests for TLS Ed448 2018-03-05 11:39:44 +00:00
server-ed25519-cert.pem Add Ed25519 EE certificates 2017-06-21 14:11:01 +01:00
server-ed25519-key.pem Add Ed25519 EE certificates 2017-06-21 14:11:01 +01:00
server-pss-cert.pem Add RSA-PSS test certificates 2017-09-20 12:50:23 +01:00
server-pss-key.pem Add RSA-PSS test certificates 2017-09-20 12:50:23 +01:00
server-pss-restrict-cert.pem Add Restricted PSS certificate and key 2019-08-09 13:19:16 +01:00
server-pss-restrict-key.pem Add Restricted PSS certificate and key 2019-08-09 13:19:16 +01:00
server-trusted.pem
servercert.pem
serverkey.pem
setup.sh Add test cases for the non CA certificate with pathlen:0 2020-04-06 10:26:14 +02:00
sm2-ca-cert.pem Add test cases for SM2 cert verification 2019-03-30 08:31:25 +09:00
sm2-csr.pem Support SM2 certificate signing 2019-06-28 18:58:19 +08:00
sm2-root.crt Support SM2 certificate signing 2019-06-28 18:58:19 +08:00
sm2-root.key Support SM2 certificate signing 2019-06-28 18:58:19 +08:00
sm2.key Support raw input data in apps/pkeyutl 2019-02-27 10:05:17 +08:00
sm2.pem Add test cases for SM2 cert verification 2019-03-30 08:31:25 +09:00
some-names1.pem Guard against DoS in name constraints handling. 2017-09-22 22:00:55 +02:00
some-names2.pem Guard against DoS in name constraints handling. 2017-09-22 22:00:55 +02:00
some-names3.pem Guard against DoS in name constraints handling. 2017-09-22 22:00:55 +02:00
sroot-anyEKU.pem
sroot-cert.pem
sroot-clientAuth.pem
sroot-serverAuth.pem
sroot+anyEKU.pem
sroot+clientAuth.pem
sroot+serverAuth.pem
subinterCA-ss.pem
subinterCA.key
subinterCA.pem
untrusted.pem
wrongcert.pem
wrongkey.pem
x509-check-key.pem Add test cases for X509_check_private_key 2017-06-06 17:50:06 +01:00
x509-check.csr Add test cases for X509_check_private_key 2017-06-06 17:50:06 +01:00