From 6402eeefc18c47b7dceea5e0dda0b8aeec6719bd Mon Sep 17 00:00:00 2001 From: Magnus Ahltorp Date: Fri, 10 Apr 2015 15:42:03 +0200 Subject: Verify SSL certificates and hostnames in python code Closes CATLFISH-34 --- tools/verifysct.py | 3 +++ 1 file changed, 3 insertions(+) (limited to 'tools/verifysct.py') diff --git a/tools/verifysct.py b/tools/verifysct.py index 4b8e38a..71ea4e9 100755 --- a/tools/verifysct.py +++ b/tools/verifysct.py @@ -23,8 +23,11 @@ parser.add_argument('baseurl', help="Base URL for CT server") parser.add_argument('--sct-file', default=None, metavar="dir", help='SCT:s to verify') parser.add_argument('--parallel', type=int, default=16, metavar="n", help="Number of parallel verifications") parser.add_argument('--publickey', default=None, metavar="file", help='Public key for the CT log') +parser.add_argument('--cafile', default=None, metavar="file", help='File containing the CA cert') args = parser.parse_args() +create_ssl_context(cafile=args.cafile) + from multiprocessing import Pool baseurl = args.baseurl -- cgit v1.1