From cbf3f563074e4f9a9024db0c0393aa4e6ba97087 Mon Sep 17 00:00:00 2001 From: Linus Nordberg Date: Wed, 25 Mar 2015 09:53:34 +0100 Subject: Store rejected certificates. Not storing the full chain, which would be even more useful. No rate limiting, which would be good. Also, reorganise some in x509.erl and add tests. --- ...02.8094ee90e2725c8ebde18bb83dd3cabe246ecb2b.pem | 62 ++++++++++++++++++++++ 1 file changed, 62 insertions(+) create mode 100644 test/testdata/chains/002.8094ee90e2725c8ebde18bb83dd3cabe246ecb2b.pem (limited to 'test/testdata/chains/002.8094ee90e2725c8ebde18bb83dd3cabe246ecb2b.pem') diff --git a/test/testdata/chains/002.8094ee90e2725c8ebde18bb83dd3cabe246ecb2b.pem b/test/testdata/chains/002.8094ee90e2725c8ebde18bb83dd3cabe246ecb2b.pem new file mode 100644 index 0000000..36ea7fd --- /dev/null +++ b/test/testdata/chains/002.8094ee90e2725c8ebde18bb83dd3cabe246ecb2b.pem @@ -0,0 +1,62 @@ +% Self-signed. + +Certificate: + Data: + Version: 3 (0x2) + Serial Number: 0 (0x0) + Signature Algorithm: sha256WithRSAEncryption + Issuer: C=AU, ST=Some-State, O=Internet Widgits Pty Ltd, CN=flimsytest + Validity + Not Before: May 4 10:17:19 2014 GMT + Not After : May 4 10:17:19 2015 GMT + Subject: C=AU, ST=Some-State, O=Internet Widgits Pty Ltd, CN=flimsytest + Subject Public Key Info: + Public Key Algorithm: rsaEncryption + Public-Key: (1024 bit) + Modulus: + 00:c5:1e:c3:c1:9a:26:e8:64:7f:dd:1c:05:5a:e0: + 9a:87:cc:d1:d4:f5:30:95:62:73:79:56:a8:8e:8e: + eb:12:7b:cb:8d:5e:5f:eb:3b:12:c9:c4:7d:fe:ad: + 85:c5:89:81:63:2f:3c:dc:a1:b6:ee:7c:7b:42:9d: + 6d:69:81:a4:c7:34:0e:85:f0:f3:ee:5f:34:92:a1: + 01:bb:f6:f6:c1:6a:e8:c6:cf:7f:44:8d:b7:9d:62: + d5:9a:7a:22:bc:f2:d4:e3:fa:03:e9:b1:ca:01:f0: + db:84:33:9f:64:60:f3:f8:7a:5b:f0:e3:9d:4e:b2: + 21:a1:49:a8:d9:e5:e8:7f:f5 + Exponent: 65537 (0x10001) + X509v3 extensions: + X509v3 Basic Constraints: + CA:FALSE + Netscape Comment: + OpenSSL Generated Certificate + X509v3 Subject Key Identifier: + 7C:05:0C:BA:09:58:C2:DE:46:7F:ED:39:5B:87:B2:28:8B:99:D7:28 + X509v3 Authority Key Identifier: + keyid:7C:05:0C:BA:09:58:C2:DE:46:7F:ED:39:5B:87:B2:28:8B:99:D7:28 + + Signature Algorithm: sha256WithRSAEncryption + 59:47:3b:91:85:21:40:31:af:82:bf:57:21:c3:46:07:eb:14: + bf:be:ec:f8:98:d1:0e:51:0b:eb:2c:44:8a:95:d0:e9:43:04: + 56:43:c5:10:41:76:2e:6c:f3:0a:9b:e4:5f:15:f5:2e:38:17: + dd:f6:f7:9e:5f:ed:f7:b2:76:b2:c2:55:da:48:73:e4:54:dc: + 3b:7e:b8:88:33:27:83:67:34:c8:a4:e7:b2:c7:20:51:0e:9f: + f6:b8:f3:a5:73:e2:b2:fc:5e:cf:82:43:6b:0e:73:fa:ef:ce: + 5d:46:f8:de:54:6c:b1:96:17:be:1c:f9:c4:49:cb:8d:ee:0a: + da:32 +-----BEGIN CERTIFICATE----- +MIICpTCCAg6gAwIBAgIBADANBgkqhkiG9w0BAQsFADBaMQswCQYDVQQGEwJBVTET +MBEGA1UECAwKU29tZS1TdGF0ZTEhMB8GA1UECgwYSW50ZXJuZXQgV2lkZ2l0cyBQ +dHkgTHRkMRMwEQYDVQQDDApmbGltc3l0ZXN0MB4XDTE0MDUwNDEwMTcxOVoXDTE1 +MDUwNDEwMTcxOVowWjELMAkGA1UEBhMCQVUxEzARBgNVBAgMClNvbWUtU3RhdGUx +ITAfBgNVBAoMGEludGVybmV0IFdpZGdpdHMgUHR5IEx0ZDETMBEGA1UEAwwKZmxp +bXN5dGVzdDCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkCgYEAxR7DwZom6GR/3RwF +WuCah8zR1PUwlWJzeVaojo7rEnvLjV5f6zsSycR9/q2FxYmBYy883KG27nx7Qp1t +aYGkxzQOhfDz7l80kqEBu/b2wWroxs9/RI23nWLVmnoivPLU4/oD6bHKAfDbhDOf +ZGDz+Hpb8OOdTrIhoUmo2eXof/UCAwEAAaN7MHkwCQYDVR0TBAIwADAsBglghkgB +hvhCAQ0EHxYdT3BlblNTTCBHZW5lcmF0ZWQgQ2VydGlmaWNhdGUwHQYDVR0OBBYE +FHwFDLoJWMLeRn/tOVuHsiiLmdcoMB8GA1UdIwQYMBaAFHwFDLoJWMLeRn/tOVuH +siiLmdcoMA0GCSqGSIb3DQEBCwUAA4GBAFlHO5GFIUAxr4K/VyHDRgfrFL++7PiY +0Q5RC+ssRIqV0OlDBFZDxRBBdi5s8wqb5F8V9S44F932955f7feydrLCVdpIc+RU +3Dt+uIgzJ4NnNMik57LHIFEOn/a486Vz4rL8Xs+CQ2sOc/rvzl1G+N5UbLGWF74c ++cRJy43uCtoy +-----END CERTIFICATE----- -- cgit v1.1