<feed xmlns='http://www.w3.org/2005/Atom'>
<title>delta/curl.git/tests/certs/Server-localhost-sv.dhp, branch bagder/https-proxy-tests</title>
<subtitle>github.com: bagder/curl.git
</subtitle>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/'/>
<entry>
<title>tests/certs: rebuild certificates with modified key usage bits</title>
<updated>2015-03-21T15:33:58+00:00</updated>
<author>
<name>Dan Fandrich</name>
<email>dan@coneharvesters.com</email>
</author>
<published>2015-03-21T15:20:34+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=f9251a5c86f86388bb9aaa078738fcf49870ca3f'/>
<id>f9251a5c86f86388bb9aaa078738fcf49870ca3f</id>
<content type='text'>
The certificates were missing the digitalSignature and keyAgreement
usage types, of which at least digitalSignature was checked by CyaSSL.
This caused the test server in test 310 (among others) to fail the
startup verification and therefore run (see
http://curl.haxx.se/mail/lib-2014-07/0303.html).
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
The certificates were missing the digitalSignature and keyAgreement
usage types, of which at least digitalSignature was checked by CyaSSL.
This caused the test server in test 310 (among others) to fail the
startup verification and therefore run (see
http://curl.haxx.se/mail/lib-2014-07/0303.html).
</pre>
</div>
</content>
</entry>
<entry>
<title>- Added Diffie-Hellman parameters to several test harness certificate files in</title>
<updated>2009-11-28T10:01:21+00:00</updated>
<author>
<name>Yang Tse</name>
<email>yangsita@gmail.com</email>
</author>
<published>2009-11-28T10:01:21+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=4d922545d571d002129412d22b19031a4056d3b9'/>
<id>4d922545d571d002129412d22b19031a4056d3b9</id>
<content type='text'>
  PEM format. Required by several stunnel versions used by our test harness.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
  PEM format. Required by several stunnel versions used by our test harness.
</pre>
</div>
</content>
</entry>
<entry>
<title>- Peter Sylvester made the HTTPS test server use specific certificates for</title>
<updated>2009-08-11T21:48:58+00:00</updated>
<author>
<name>Daniel Stenberg</name>
<email>daniel@haxx.se</email>
</author>
<published>2009-08-11T21:48:58+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=e73fe837a8877c0197721b91e0d5ec40cb7a2cd0'/>
<id>e73fe837a8877c0197721b91e0d5ec40cb7a2cd0</id>
<content type='text'>
  each test, so that the test suite can now be used to actually test the
  verification of cert names etc. This made an error show up in the OpenSSL-
  specific code where it would attempt to match the CN field even if a
  subjectAltName exists that doesn't match. This is now fixed and verified
  in test 311.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
  each test, so that the test suite can now be used to actually test the
  verification of cert names etc. This made an error show up in the OpenSSL-
  specific code where it would attempt to match the CN field even if a
  subjectAltName exists that doesn't match. This is now fixed and verified
  in test 311.
</pre>
</div>
</content>
</entry>
</feed>
