diff options
| author | frennkie <mail@rhab.de> | 2020-10-25 15:50:18 +0100 |
|---|---|---|
| committer | GitHub <noreply@github.com> | 2020-10-25 07:50:18 -0700 |
| commit | 611c4a340f6c53a7e28a9695a3248bd4e9f8558d (patch) | |
| tree | 2ad99e789ce065d87368e48634ca0f65debb3621 /tests | |
| parent | 836a92a28fbe9df8c37121e340b91ed9cd519ddd (diff) | |
| download | cryptography-611c4a340f6c53a7e28a9695a3248bd4e9f8558d.tar.gz | |
PKCS7SignatureBuilder now supports new option NoCerts when signing (#5500)
Diffstat (limited to 'tests')
| -rw-r--r-- | tests/hazmat/primitives/test_pkcs7.py | 17 |
1 files changed, 17 insertions, 0 deletions
diff --git a/tests/hazmat/primitives/test_pkcs7.py b/tests/hazmat/primitives/test_pkcs7.py index 03a928352..8b93cb633 100644 --- a/tests/hazmat/primitives/test_pkcs7.py +++ b/tests/hazmat/primitives/test_pkcs7.py @@ -535,6 +535,23 @@ class TestPKCS7Builder(object): backend, ) + def test_sign_no_certs(self, backend): + data = b"hello world" + cert, key = _load_cert_key() + builder = ( + pkcs7.PKCS7SignatureBuilder() + .set_data(data) + .add_signer(cert, key, hashes.SHA256()) + ) + + options = [] + sig = builder.sign(serialization.Encoding.DER, options) + assert sig.count(cert.public_bytes(serialization.Encoding.DER)) == 1 + + options = [pkcs7.PKCS7Options.NoCerts] + sig_no = builder.sign(serialization.Encoding.DER, options) + assert sig_no.count(cert.public_bytes(serialization.Encoding.DER)) == 0 + def test_multiple_signers(self, backend): data = b"hello world" cert, key = _load_cert_key() |
