mbedtls/tests/data_files
Gilles Peskine 3e7b61c42b More precise testing of dhm_min_len
An SSL client can be configured to insist on a minimum size for the
Diffie-Hellman (DHM) parameters sent by the server. Add several test
cases where the server sends parameters with exactly the minimum
size (must be accepted) or parameters that are one bit too short (must
be rejected). Make sure that there are test cases both where the
boundary is byte-aligned and where it isn't.

Signed-off-by: Gilles Peskine <Gilles.Peskine@arm.com>
2021-04-09 17:29:16 +02:00
..
dir-maxpath Update copyright notices to use Linux Foundation guidance 2020-08-19 16:37:36 +02:00
dir1
dir2
dir3
dir4
.gitignore
bitstring-in-dn.pem Normalize line endings 2020-05-28 18:31:24 +02:00
cert_example_multi.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
cert_example_multi_nocn.crt
cert_example_wildcard.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
cert_md2.crt Add MD[245] test CRTs to tree 2019-06-03 16:19:46 +01:00
cert_md2.csr Commit the intermediate files cert_md*.csr 2020-08-21 20:35:55 +02:00
cert_md4.crt Add MD[245] test CRTs to tree 2019-06-03 16:19:46 +01:00
cert_md4.csr Commit the intermediate files cert_md*.csr 2020-08-21 20:35:55 +02:00
cert_md5.crt Commit the intermediate files cert_md*.csr 2020-08-21 20:35:55 +02:00
cert_md5.csr Commit the intermediate files cert_md*.csr 2020-08-21 20:35:55 +02:00
cert_sha1.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
cert_sha224.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
cert_sha256.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
cert_sha384.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
cert_sha512.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
cert_v1_with_ext.crt
cli-rsa-sha1.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
cli-rsa-sha256-badalg.crt.der Add tag check to cert algorithm check 2020-12-02 11:03:58 +00:00
cli-rsa-sha256.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
cli-rsa-sha256.crt.der Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
cli-rsa-sha256.key.der Add build instructions to generate DER versions of CRTs and keys 2019-05-30 10:27:14 +01:00
cli-rsa.key
cli-rsa.key.der Add DER encoded files to git tree 2019-05-30 10:27:14 +01:00
cli.opensslconf
cli2.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
cli2.crt.der Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
cli2.key
cli2.key.der Add build instructions to generate DER versions of CRTs and keys 2019-05-30 10:27:14 +01:00
crl-ec-sha1.pem
crl-ec-sha224.pem
crl-ec-sha256.pem
crl-ec-sha384.pem Update EC certs to use NIST-256 and NIST-384 2013-09-24 21:25:54 +02:00
crl-ec-sha512.pem
crl-future.pem
crl-futureRevocationDate.pem Always revoke certificate on CRL 2020-08-26 11:42:52 +02:00
crl-idp.pem
crl-idpnc.pem
crl-malformed-trailing-spaces.pem
crl-rsa-pss-sha1-badsign.pem
crl-rsa-pss-sha1.pem
crl-rsa-pss-sha224.pem
crl-rsa-pss-sha256.pem
crl-rsa-pss-sha384.pem
crl-rsa-pss-sha512.pem
crl.pem Update soon to be expired crl 2019-07-10 17:26:39 +03:00
crl_cat_ec-rsa.pem
crl_cat_ecfut-rsa.pem Update soon to be expired crl 2019-07-10 17:26:39 +03:00
crl_cat_rsa-ec.pem
crl_cat_rsabadpem-ec.pem
crl_expired.pem
crl_md2.pem
crl_md4.pem
crl_md5.pem
crl_sha1.pem
crl_sha224.pem
crl_sha256.pem
crl_sha384.pem - Corrected parsing of UTCTime dates before 1990 and after 1950 2011-02-20 10:40:16 +00:00
crl_sha512.pem
crt_cat_rsaexp-ec.pem
dh.998.pem More precise testing of dhm_min_len 2021-04-09 17:29:16 +02:00
dh.999.pem More precise testing of dhm_min_len 2021-04-09 17:29:16 +02:00
dh.1000.pem Add tests for dhm_min_bitlen 2015-06-17 14:27:38 +02:00
dh.optlen.pem
dhparams.pem
ec_224_prv.pem Add test for EC keys with all curves. 2013-08-16 14:00:52 +02:00
ec_224_pub.pem
ec_256_long_prv.pem
ec_256_prv.pem
ec_256_pub.pem
ec_384_prv.pem
ec_384_pub.pem
ec_521_prv.pem
ec_521_pub.pem
ec_521_short_prv.pem
ec_bp256_prv.pem
ec_bp256_pub.pem Add OIDs for brainpool curves 2013-10-10 15:11:33 +02:00
ec_bp384_prv.pem
ec_bp384_pub.pem
ec_bp512_prv.pem
ec_bp512_pub.pem
ec_prv.pk8.der
ec_prv.pk8.pem
ec_prv.pk8.pw.der
ec_prv.pk8.pw.pem
ec_prv.pk8nopub.der
ec_prv.pk8nopub.pem
ec_prv.pk8nopubparam.der
ec_prv.pk8nopubparam.pem
ec_prv.pk8param.der
ec_prv.pk8param.pem
ec_prv.sec1.der
ec_prv.sec1.pem Add tests for x509parse_key_ec() 2013-07-08 17:32:26 +02:00
ec_prv.sec1.pw.pem
ec_prv.specdom.der
ec_pub.der
ec_pub.pem Complete x509parse_public_key_ec() 2013-07-08 17:32:26 +02:00
enco-ca-prstr.pem Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
enco-cert-utf8str.pem Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
format_gen.key
format_gen.pub
format_pkcs12.fmt
format_rsa.key
hash_file_1
hash_file_2
hash_file_3 - Added shax_file tests and data files 2009-07-05 11:30:16 +00:00
hash_file_4
hash_file_5
keyUsage.decipherOnly.crt
Makefile More precise testing of dhm_min_len 2021-04-09 17:29:16 +02:00
mpi_10
mpi_too_big
passwd.psk GnuTLS in compat.sh: server-side 2014-03-14 08:41:02 +01:00
print_c.pl Update copyright notices to use Linux Foundation guidance 2020-08-19 16:37:36 +02:00
Readme-x509.txt Always revoke certificate on CRL 2020-08-26 11:42:52 +02:00
rsa512.key
rsa521.key
rsa522.key RSA: Fix buffer overflow in PSS signature verification 2017-10-17 19:01:38 +02:00
rsa528.key
rsa4096_prv.pem
rsa4096_pub.pem
rsa_pkcs1_1024_3des.pem
rsa_pkcs1_1024_aes128.pem
rsa_pkcs1_1024_aes192.pem
rsa_pkcs1_1024_aes256.pem
rsa_pkcs1_1024_clear.pem Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
rsa_pkcs1_1024_des.pem
rsa_pkcs1_2048_3des.pem
rsa_pkcs1_2048_aes128.pem
rsa_pkcs1_2048_aes192.pem
rsa_pkcs1_2048_aes256.pem
rsa_pkcs1_2048_clear.pem
rsa_pkcs1_2048_des.pem
rsa_pkcs1_2048_public.der
rsa_pkcs1_2048_public.pem
rsa_pkcs1_4096_3des.pem
rsa_pkcs1_4096_aes128.pem
rsa_pkcs1_4096_aes192.pem
rsa_pkcs1_4096_aes256.pem
rsa_pkcs1_4096_clear.pem
rsa_pkcs1_4096_des.pem
rsa_pkcs8_1024_public.der
rsa_pkcs8_2048_public.der
rsa_pkcs8_2048_public.pem
rsa_pkcs8_pbe_sha1_1024_2des.der
rsa_pkcs8_pbe_sha1_1024_2des.pem
rsa_pkcs8_pbe_sha1_1024_3des.der Unify naming schemes for RSA keys 2017-09-29 20:05:23 +01:00
rsa_pkcs8_pbe_sha1_1024_3des.pem
rsa_pkcs8_pbe_sha1_1024_rc4_128.der
rsa_pkcs8_pbe_sha1_1024_rc4_128.pem
rsa_pkcs8_pbe_sha1_2048_2des.der
rsa_pkcs8_pbe_sha1_2048_2des.pem
rsa_pkcs8_pbe_sha1_2048_3des.der
rsa_pkcs8_pbe_sha1_2048_3des.pem
rsa_pkcs8_pbe_sha1_2048_rc4_128.der
rsa_pkcs8_pbe_sha1_2048_rc4_128.pem
rsa_pkcs8_pbe_sha1_4096_2des.der
rsa_pkcs8_pbe_sha1_4096_2des.pem
rsa_pkcs8_pbe_sha1_4096_3des.der
rsa_pkcs8_pbe_sha1_4096_3des.pem
rsa_pkcs8_pbe_sha1_4096_rc4_128.der
rsa_pkcs8_pbe_sha1_4096_rc4_128.pem
rsa_pkcs8_pbes2_pbkdf2_1024_3des.der
rsa_pkcs8_pbes2_pbkdf2_1024_3des.pem
rsa_pkcs8_pbes2_pbkdf2_1024_3des_sha224.der
rsa_pkcs8_pbes2_pbkdf2_1024_3des_sha224.pem data_files/pkcs8-v2: add keys generated with PRF != SHA1 2018-02-08 17:18:19 +08:00
rsa_pkcs8_pbes2_pbkdf2_1024_3des_sha256.der
rsa_pkcs8_pbes2_pbkdf2_1024_3des_sha256.pem
rsa_pkcs8_pbes2_pbkdf2_1024_3des_sha384.der
rsa_pkcs8_pbes2_pbkdf2_1024_3des_sha384.pem
rsa_pkcs8_pbes2_pbkdf2_1024_3des_sha512.der
rsa_pkcs8_pbes2_pbkdf2_1024_3des_sha512.pem
rsa_pkcs8_pbes2_pbkdf2_1024_des.der
rsa_pkcs8_pbes2_pbkdf2_1024_des.pem
rsa_pkcs8_pbes2_pbkdf2_1024_des_sha224.der
rsa_pkcs8_pbes2_pbkdf2_1024_des_sha224.pem
rsa_pkcs8_pbes2_pbkdf2_1024_des_sha256.der
rsa_pkcs8_pbes2_pbkdf2_1024_des_sha256.pem
rsa_pkcs8_pbes2_pbkdf2_1024_des_sha384.der
rsa_pkcs8_pbes2_pbkdf2_1024_des_sha384.pem
rsa_pkcs8_pbes2_pbkdf2_1024_des_sha512.der
rsa_pkcs8_pbes2_pbkdf2_1024_des_sha512.pem
rsa_pkcs8_pbes2_pbkdf2_2048_3des.der
rsa_pkcs8_pbes2_pbkdf2_2048_3des.pem
rsa_pkcs8_pbes2_pbkdf2_2048_3des_sha224.der
rsa_pkcs8_pbes2_pbkdf2_2048_3des_sha224.pem
rsa_pkcs8_pbes2_pbkdf2_2048_3des_sha256.der
rsa_pkcs8_pbes2_pbkdf2_2048_3des_sha256.pem
rsa_pkcs8_pbes2_pbkdf2_2048_3des_sha384.der
rsa_pkcs8_pbes2_pbkdf2_2048_3des_sha384.pem
rsa_pkcs8_pbes2_pbkdf2_2048_3des_sha512.der
rsa_pkcs8_pbes2_pbkdf2_2048_3des_sha512.pem
rsa_pkcs8_pbes2_pbkdf2_2048_des.der
rsa_pkcs8_pbes2_pbkdf2_2048_des.pem
rsa_pkcs8_pbes2_pbkdf2_2048_des_sha224.der
rsa_pkcs8_pbes2_pbkdf2_2048_des_sha224.pem
rsa_pkcs8_pbes2_pbkdf2_2048_des_sha256.der
rsa_pkcs8_pbes2_pbkdf2_2048_des_sha256.pem
rsa_pkcs8_pbes2_pbkdf2_2048_des_sha384.der
rsa_pkcs8_pbes2_pbkdf2_2048_des_sha384.pem
rsa_pkcs8_pbes2_pbkdf2_2048_des_sha512.der data_files/pkcs8-v2: add keys generated with PRF != SHA1 2018-02-08 17:18:19 +08:00
rsa_pkcs8_pbes2_pbkdf2_2048_des_sha512.pem
rsa_pkcs8_pbes2_pbkdf2_4096_3des.der
rsa_pkcs8_pbes2_pbkdf2_4096_3des.pem
rsa_pkcs8_pbes2_pbkdf2_4096_3des_sha224.der
rsa_pkcs8_pbes2_pbkdf2_4096_3des_sha224.pem
rsa_pkcs8_pbes2_pbkdf2_4096_3des_sha256.der
rsa_pkcs8_pbes2_pbkdf2_4096_3des_sha256.pem
rsa_pkcs8_pbes2_pbkdf2_4096_3des_sha384.der
rsa_pkcs8_pbes2_pbkdf2_4096_3des_sha384.pem
rsa_pkcs8_pbes2_pbkdf2_4096_3des_sha512.der data_files/pkcs8-v2: add keys generated with PRF != SHA1 2018-02-08 17:18:19 +08:00
rsa_pkcs8_pbes2_pbkdf2_4096_3des_sha512.pem
rsa_pkcs8_pbes2_pbkdf2_4096_des.der Unify naming schemes for RSA keys 2017-09-29 20:05:23 +01:00
rsa_pkcs8_pbes2_pbkdf2_4096_des.pem
rsa_pkcs8_pbes2_pbkdf2_4096_des_sha224.der
rsa_pkcs8_pbes2_pbkdf2_4096_des_sha224.pem
rsa_pkcs8_pbes2_pbkdf2_4096_des_sha256.der data_files/pkcs8-v2: add keys generated with PRF != SHA1 2018-02-08 17:18:19 +08:00
rsa_pkcs8_pbes2_pbkdf2_4096_des_sha256.pem
rsa_pkcs8_pbes2_pbkdf2_4096_des_sha384.der
rsa_pkcs8_pbes2_pbkdf2_4096_des_sha384.pem
rsa_pkcs8_pbes2_pbkdf2_4096_des_sha512.der
rsa_pkcs8_pbes2_pbkdf2_4096_des_sha512.pem
secp521r1_prv.der Add a test for signing content with a long ECDSA key 2019-06-10 11:49:54 +02:00
server1-ms.req.sha256
server1-nospace.crt
server1-v1.crt
server1.cert_type.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server1.cert_type.crt.openssl.v3_ext
server1.cert_type_noauthid.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server1.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server1.crt.der Rename server1.der to server1.crt.der 2019-05-30 10:27:49 +01:00
server1.crt.openssl.v3_ext
server1.csr
server1.der Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server1.ext_ku.crt
server1.key
server1.key_usage.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server1.key_usage.crt.openssl.v3_ext
server1.key_usage_noauthid.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server1.noauthid.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server1.pubkey
server1.req.cert_type
server1.req.cert_type_empty
server1.req.key_usage
server1.req.key_usage_empty
server1.req.ku-ct
server1.req.md4
server1.req.md5 Regenerate test files 2018-11-02 10:52:38 +00:00
server1.req.sha1
server1.req.sha224
server1.req.sha256
server1.req.sha384
server1.req.sha512
server1.v1.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server1_ca.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server1_csr.opensslconf
server1_pathlen_int_max-1.crt Guard from undefined behaviour in case of an INT_MAX max_pathlen 2020-04-17 11:29:20 +02:00
server1_pathlen_int_max.crt Guard from undefined behaviour in case of an INT_MAX max_pathlen 2020-04-17 11:29:20 +02:00
server2-badsign.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server2-sha256.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server2-sha256.crt.der Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server2-v1-chain.crt
server2-v1.crt
server2.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server2.crt.der Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server2.der Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server2.key
server2.key.der Add build instructions to generate DER versions of CRTs and keys 2019-05-30 10:27:14 +01:00
server2.ku-ds.crt
server2.ku-ds_ke.crt
server2.ku-ka.crt
server2.ku-ke.crt
server3.crt
server3.key
server4.crt
server4.key
server5-badsign.crt
server5-der0.crt
server5-der1a.crt
server5-der1b.crt
server5-der2.crt
server5-der4.crt x509: trailing bytes in DER: add integration tests 2016-02-17 10:11:21 +00:00
server5-der8.crt
server5-der9.crt
server5-expired.crt
server5-future.crt
server5-selfsigned.crt
server5-sha1.crt
server5-sha224.crt
server5-sha384.crt
server5-sha512.crt
server5-ss-expired.crt
server5-ss-forgeca.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
server5-tricky-ip-san.crt Add test: DNS names should not match IP addresses 2020-08-11 12:51:21 +02:00
server5.crt
server5.crt.der Add build instructions to generate DER versions of CRTs and keys 2019-05-30 10:27:14 +01:00
server5.eku-cli.crt
server5.eku-cs.crt
server5.eku-cs_any.crt
server5.eku-srv.crt
server5.eku-srv_cli.crt
server5.key
server5.key.der Add build instructions to generate DER versions of CRTs and keys 2019-05-30 10:27:14 +01:00
server5.ku-ds.crt
server5.ku-ka.crt Check keyUsage in SSL client and server 2014-04-09 15:50:57 +02:00
server5.ku-ke.crt
server5.req.ku.sha1
server5.req.sha1
server5.req.sha224
server5.req.sha256
server5.req.sha384
server5.req.sha512
server6-ss-child.crt
server6.crt
server6.key
server7-badsign.crt
server7-expired.crt
server7-future.crt
server7.crt
server7.key
server7_all_space.crt
server7_int-ca-exp.crt
server7_int-ca.crt
server7_int-ca_ca2.crt
server7_pem_space.crt
server7_spurious_int-ca.crt
server7_trailing_space.crt
server8.crt
server8.key
server8_int-ca2.crt
server9-bad-mgfhash.crt
server9-bad-saltlen.crt
server9-badsign.crt
server9-defaults.crt
server9-sha224.crt
server9-sha256.crt
server9-sha384.crt
server9-sha512.crt
server9-with-ca.crt
server9.crt
server9.key
server9.req.sha1
server9.req.sha224
server9.req.sha256
server9.req.sha384
server9.req.sha512
server10-badsign.crt
server10-bs_int3.pem
server10.crt
server10.key
server10_int3-bs.pem
server10_int3_int-ca2.crt
server10_int3_int-ca2_ca.crt
server10_int3_spurious_int-ca2.crt
test-ca-alt-good.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca-alt.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca-alt.csr Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca-alt.key Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca-good-alt.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca-sha1.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca-sha1.crt.der Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca-sha256.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca-sha256.crt.der Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca-v1.crt
test-ca.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca.crt.der Add build instructions to generate DER versions of CRTs and keys 2019-05-30 10:27:14 +01:00
test-ca.der Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca.key
test-ca.key.der Add DER encoded files to git tree 2019-05-30 10:27:14 +01:00
test-ca.opensslconf Add test: DNS names should not match IP addresses 2020-08-11 12:51:21 +02:00
test-ca.server1.db Update soon to be expired crl 2019-07-10 17:26:39 +03:00
test-ca.server1.future-crl.db Always revoke certificate on CRL 2020-08-26 11:42:52 +02:00
test-ca.server1.future-crl.opensslconf Always revoke certificate on CRL 2020-08-26 11:42:52 +02:00
test-ca.server1.opensslconf Normalize line endings 2020-05-28 18:31:24 +02:00
test-ca2-expired.crt
test-ca2.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca2.crt.der Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca2.key
test-ca2.key.der Add build instructions to generate DER versions of CRTs and keys 2019-05-30 10:27:14 +01:00
test-ca2.key.enc Add new line at the end of test-ca2.key.enc 2019-05-30 10:58:12 +01:00
test-ca2.ku-crl.crt
test-ca2.ku-crt.crt
test-ca2.ku-crt_crl.crt
test-ca2.ku-ds.crt
test-ca2_cat-future-invalid.crt
test-ca2_cat-future-present.crt
test-ca2_cat-past-invalid.crt
test-ca2_cat-past-present.crt
test-ca2_cat-present-future.crt
test-ca2_cat-present-past.crt X509: Future CA among trusted: add more tests 2016-03-09 19:32:10 +00:00
test-ca_cat12.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca_cat21.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca_printable.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca_uppercase.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-ca_utf8.crt Update certificates to expire in 2029 2019-07-10 18:35:10 +03:00
test-int-ca-exp.crt
test-int-ca.crt
test-int-ca.key
test-int-ca2.crt
test-int-ca2.key Update EC certs to use NIST-256 and NIST-384 2013-09-24 21:25:54 +02:00
test-int-ca3-badsign.crt
test-int-ca3.crt
test-int-ca3.key