Commit Graph

1267 Commits

Author SHA1 Message Date
Love Hörnquist Åstrand
396411d822 generate crl
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16902 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-01 01:01:35 +00:00
Love Hörnquist Åstrand
6d47c9c790 Added crl tests
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16901 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-01 01:00:22 +00:00
Love Hörnquist Åstrand
b4f2aeb697 make ca use openssl ca command so we can add ocsp tests, and regen certs
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16900 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-01 00:41:04 +00:00
Love Hörnquist Åstrand
4bffd93906 Add revoked ocsp cert test
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16899 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-01 00:37:54 +00:00
Love Hörnquist Åstrand
d7379e76d2 rename missing-crl to missing-revoke
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16898 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-01 00:30:45 +00:00
Love Hörnquist Åstrand
16d16befdd refactor code, fix a un-init-ed variable
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16897 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-01 00:29:23 +00:00
Love Hörnquist Åstrand
84c0fd6089 rename missing-crl to missing-revoke
add ocsp tests


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16896 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-01 00:28:15 +00:00
Love Hörnquist Åstrand
ba70d7c12d Plug one memory leak.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16895 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:26:35 +00:00
Love Hörnquist Åstrand
1f876a35cb Renamed generic CRL related errors.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16894 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:23:30 +00:00
Love Hörnquist Åstrand
8e186125fa Comments and renamed generic CRL related errors
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16893 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:23:10 +00:00
Love Hörnquist Åstrand
bfbc55c6cc Add ocsp checker.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16892 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:14:12 +00:00
Love Hörnquist Åstrand
232ad2f27a Add id-kp-OCSPSigning
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16891 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:12:09 +00:00
Love Hörnquist Åstrand
352a78dcba add url-path argument to ocsp-fetch
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16890 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:11:32 +00:00
Love Hörnquist Åstrand
1428ca8c82 implement ocsp-fetch
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16889 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:11:05 +00:00
Love Hörnquist Åstrand
3495cd039b Update ocsp-fetch.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16888 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:07:55 +00:00
Love Hörnquist Åstrand
f3b1b0858c Use HX509_DEFAULT_OCSP_TIME_DIFF.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16887 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:07:26 +00:00
Love Hörnquist Åstrand
51fc07bc6d Add ocsp_time_diff to hx509_context
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16886 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:06:49 +00:00
Love Hörnquist Åstrand
ea0cf892aa (_hx509_verify_signature_bitstring): new function, commonly use when
checking certificates


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16885 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:05:37 +00:00
Love Hörnquist Åstrand
de38a60813 (hx509_cms_envelope_1): check for internal ASN.1 encoder error
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16884 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:04:52 +00:00
Love Hörnquist Åstrand
40164d5a9e Add ocsp glue, use new _hx509_verify_signature_bitstring, add eku
checking function.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16883 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 22:03:13 +00:00
Love Hörnquist Åstrand
d1bf4b78e6 add id_kp_OCSPSigning.x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16882 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 21:59:06 +00:00
Love Hörnquist Åstrand
4d9b604abe Pick out certs in chain.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16876 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 02:45:00 +00:00
Love Hörnquist Åstrand
93e4629277 clean ev.data and ev.data.out
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16875 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 02:01:07 +00:00
Love Hörnquist Åstrand
1ecf995c65 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16874 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 02:00:04 +00:00
Love Hörnquist Åstrand
a36d831663 TODO list
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16873 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 01:58:41 +00:00
Love Hörnquist Åstrand
d567d58fea x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16872 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 01:53:49 +00:00
Love Hörnquist Åstrand
94e1fd1616 Add code to load OCSPBasicOCSPResponse files, reload crl when its
changed on disk.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16871 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 01:52:33 +00:00
Love Hörnquist Åstrand
7c1b919893 Update for ocsp merge. handle building path w/o subject (using subject key id)
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16870 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 01:51:22 +00:00
Love Hörnquist Åstrand
54c42411cb _hx509_map_file changed prototype.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16869 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 01:49:37 +00:00
Love Hörnquist Åstrand
34b94bcd88 _hx509_map_file changed prototype, returns struct stat if requested.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16868 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 01:48:48 +00:00
Love Hörnquist Åstrand
3c28ff7607 Add stub for ocsp-fetch, _hx509_map_file changed prototype, add ocsp
parsing to verify command.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16867 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 01:47:31 +00:00
Love Hörnquist Åstrand
d4919738d7 Add command ocsp-fetch
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16866 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 01:45:47 +00:00
Love Hörnquist Åstrand
de44f94103 rename HX509_CTX_CRL_MISSING_OK to HX509_CTX_VERIFY_MISSING_OK now
that we have OCSP glue


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16865 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 01:43:10 +00:00
Love Hörnquist Åstrand
39ecd03c1e Include OCSP.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16864 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 01:02:16 +00:00
Love Hörnquist Åstrand
7677242d01 RFC2560 - Online Certificate Status Protocol
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16863 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-31 01:01:01 +00:00
Love Hörnquist Åstrand
6a3ce9e3ae Add <krb5-types.h> to make it compile on Solaris, from Alex V. Labuta.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16861 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-30 08:57:37 +00:00
Love Hörnquist Åstrand
4d27cc0683 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16853 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-28 13:13:38 +00:00
Love Hörnquist Åstrand
654d1bcf68 (_hx509_pbe_decrypt): try all passwords, not just the first one.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16852 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-28 13:12:09 +00:00
Love Hörnquist Åstrand
27a38bba47 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16849 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-28 03:48:58 +00:00
Love Hörnquist Åstrand
6f2f155e73 (check_altName): Print the othername oid.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16848 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-28 03:48:21 +00:00
Love Hörnquist Åstrand
2832b00b67 Manual page claims RSA_public_decrypt will return -1 on error, lets check for that
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16847 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-28 03:46:54 +00:00
Love Hörnquist Åstrand
7f803fd58d (_hx509_pbe_decrypt): also try the empty password
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16841 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-27 22:10:36 +00:00
Love Hörnquist Åstrand
f4e25d6573 (match_localkeyid): no need to add back the cert to the cert pool, its
already there.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16840 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-27 22:09:28 +00:00
Love Hörnquist Åstrand
3c795c81d6 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16838 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-27 21:35:22 +00:00
Love Hörnquist Åstrand
381c1b5a04 Add REQUIRE_SIGNER
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16837 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-27 21:34:58 +00:00
Love Hörnquist Åstrand
e3ef13ddb4 (hx509_cert_free): ok to free NULL
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16836 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-27 21:34:13 +00:00
Love Hörnquist Åstrand
72e10b58e9 Add new error code SIGNATURE_WITHOUT_SIGNER.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16835 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-27 21:33:19 +00:00
Love Hörnquist Åstrand
f0997e90dc (_hx509_name_ds_cmp): make DirectoryString case insenstive
(hx509_name_to_string): less spacing


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16834 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-27 21:32:26 +00:00
Love Hörnquist Åstrand
fbd84cf005 Check for signature error, check consitency of error
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16833 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-27 21:04:28 +00:00
Love Hörnquist Åstrand
63170a411d x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16828 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-27 04:35:41 +00:00