More crl checks.

git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@20849 ec53bebd-3082-4978-b11e-865c3cabbd6b
This commit is contained in:
Love Hörnquist Åstrand
2007-06-03 17:59:53 +00:00
parent 04a99a3e5c
commit 5a3127d3cc

View File

@@ -66,10 +66,10 @@ ${hxtool} verify --missing-revoke \
cert:FILE:cert-ee.pem \
anchor:FILE:$srcdir/data/ca.crt > /dev/null || exit 1
echo "issue crl"
echo "issue crl (no cert)"
${hxtool} crl-sign \
--crl-file=crl.crl \
--signer=FILE:$srcdir/data/ca.crt,$srcdir/data/ca.key
--signer=FILE:$srcdir/data/ca.crt,$srcdir/data/ca.key || exit 1
echo "verify certificate (with CRL)"
${hxtool} verify \
@@ -77,6 +77,31 @@ ${hxtool} verify \
crl:FILE:crl.crl \
anchor:FILE:$srcdir/data/ca.crt > /dev/null || exit 1
echo "issue crl (with cert)"
${hxtool} crl-sign \
--crl-file=crl.crl \
--signer=FILE:$srcdir/data/ca.crt,$srcdir/data/ca.key \
FILE:cert-ee.pem || exit 1
echo "verify certificate (included in CRL)"
${hxtool} verify \
cert:FILE:cert-ee.pem \
crl:FILE:crl.crl \
anchor:FILE:$srcdir/data/ca.crt > /dev/null && exit 1
echo "issue crl (with cert)"
${hxtool} crl-sign \
--crl-file=crl.crl \
--lifetime='1 month' \
--signer=FILE:$srcdir/data/ca.crt,$srcdir/data/ca.key \
FILE:cert-ee.pem || exit 1
echo "verify certificate (included in CRL, and lifetime 1 month)"
${hxtool} verify \
cert:FILE:cert-ee.pem \
crl:FILE:crl.crl \
anchor:FILE:$srcdir/data/ca.crt > /dev/null && exit 1
echo "issue certificate (10years 1 month)"
${hxtool} issue-certificate \
--ca-certificate=FILE:$srcdir/data/ca.crt,$srcdir/data/ca.key \