summaryrefslogtreecommitdiff
path: root/tests
diff options
context:
space:
mode:
authorfrennkie <mail@rhab.de>2020-10-25 15:50:18 +0100
committerGitHub <noreply@github.com>2020-10-25 07:50:18 -0700
commit611c4a340f6c53a7e28a9695a3248bd4e9f8558d (patch)
tree2ad99e789ce065d87368e48634ca0f65debb3621 /tests
parent836a92a28fbe9df8c37121e340b91ed9cd519ddd (diff)
downloadcryptography-611c4a340f6c53a7e28a9695a3248bd4e9f8558d.tar.gz
PKCS7SignatureBuilder now supports new option NoCerts when signing (#5500)
Diffstat (limited to 'tests')
-rw-r--r--tests/hazmat/primitives/test_pkcs7.py17
1 files changed, 17 insertions, 0 deletions
diff --git a/tests/hazmat/primitives/test_pkcs7.py b/tests/hazmat/primitives/test_pkcs7.py
index 03a928352..8b93cb633 100644
--- a/tests/hazmat/primitives/test_pkcs7.py
+++ b/tests/hazmat/primitives/test_pkcs7.py
@@ -535,6 +535,23 @@ class TestPKCS7Builder(object):
backend,
)
+ def test_sign_no_certs(self, backend):
+ data = b"hello world"
+ cert, key = _load_cert_key()
+ builder = (
+ pkcs7.PKCS7SignatureBuilder()
+ .set_data(data)
+ .add_signer(cert, key, hashes.SHA256())
+ )
+
+ options = []
+ sig = builder.sign(serialization.Encoding.DER, options)
+ assert sig.count(cert.public_bytes(serialization.Encoding.DER)) == 1
+
+ options = [pkcs7.PKCS7Options.NoCerts]
+ sig_no = builder.sign(serialization.Encoding.DER, options)
+ assert sig_no.count(cert.public_bytes(serialization.Encoding.DER)) == 0
+
def test_multiple_signers(self, backend):
data = b"hello world"
cert, key = _load_cert_key()