Brian Smith
|
c9249cca82
|
Bug 1019814: Remove CERTCertificate dependency from TrustDomain::GetCertTrust, r=keeler
--HG--
extra : rebase_source : 9abf0522f02d00ac2f63f2327ddbe8d119ffc64f
|
2014-06-03 10:47:25 -07:00 |
|
Brian Smith
|
7af638d360
|
Bug 1019109: Add DottedOIDToCode.py tool, r=keeler
--HG--
extra : rebase_source : 44a92234f884af4500bc6eb5a1fc4dd4cfd38dc2
|
2014-06-02 10:50:04 -07:00 |
|
Brian Smith
|
bf7fe601ba
|
Bug 1018633: Simplify the max cert chain length check code in mozilla::pkix and make it more efficient, r=cviecco
--HG--
extra : rebase_source : 7fa4cc6c1b46357abed0c57c6e24c622049c5acb
|
2014-05-31 16:32:58 -07:00 |
|
Brian Smith
|
7457c20cbe
|
Bug 1001188: Set the error code when the max cert chain length limit is exceeded, r=cviecco
--HG--
extra : rebase_source : ce9e1faa083f5c679e20a2b6d9e8d482462e75b0
|
2014-05-31 16:55:54 -07:00 |
|
Brian Smith
|
91e474eea0
|
Bug 1018642: Factor out reusable NSS GTest infrastructure into a new NSSTest class, r=cviecco
--HG--
extra : rebase_source : 101c316c1ea54f5092a21af4d7a1be349c504800
|
2014-05-30 16:46:49 -07:00 |
|
Brian Smith
|
06f430ee13
|
Bug 1018064: Replace mozilla::pkix::der::Input::Match with mozilla::pkix::der::Input::MatchRest, r=mmc
--HG--
extra : rebase_source : 5c5b14cf23b1e40854d241cbc482de40b01ac494
|
2014-05-29 22:09:45 -07:00 |
|
Brian Smith
|
293e4188d5
|
Bug 1018061: Have mozilla::pkix::der::Input::Read use EnsureLength instead of its own checks, r=mmc
--HG--
extra : rebase_source : f46d6b9bdcd7d7a272fb39f22312a89d2695db56
|
2014-05-29 23:36:30 -07:00 |
|
Camilo Viecco
|
fc11f7c21d
|
Bug 991815 - Part 1/2 - Allow intermediate OCSP responses up to 1 year old. r=keeler
--HG--
extra : rebase_source : 28d5336da1dc44932b92ce2c59fca5fcb2b8a3d8
|
2014-05-30 16:12:36 -07:00 |
|
Brian Smith
|
4c6adb7ede
|
Bug 1018033: Prevent buffer read overflow due to integer overflow in mozilla::pkix::der::Input::EnsureLength, r=keeler
--HG--
extra : rebase_source : e4e88d61e448fa475a106a06b9f32181906fba0f
|
2014-05-29 23:37:40 -07:00 |
|
Brian Smith
|
b3bb9ea641
|
Bug 1018041: Fix linking error in pkix_ocsp_request_tests when GTest is enabled on Windows, r=keeler
--HG--
extra : rebase_source : 36c5ee4f5cc40adb1079e34bd309147a662fc45f
|
2014-05-29 23:06:10 -07:00 |
|
Chris Peterson
|
7429b133b7
|
Bug 1007708 - Part 1: Fix warnings in security/pkix/test/ and mark as FAIL_ON_WARNINGS. r=briansmith
|
2014-05-17 20:12:10 -07:00 |
|
David Keeler
|
0c382cbab9
|
bug 986150 - fix some comments in mozilla::pkix DER tests r=mmc
|
2014-05-19 12:14:51 -07:00 |
|
David Keeler
|
b0685b996f
|
bug 986150 - test mozilla::pkix::der::OptionalBoolean r=mmc
|
2014-05-19 12:14:44 -07:00 |
|
David Keeler
|
7490c005ac
|
bug 1002814 - OCSP requests: long serial check should be on cert, not issuerCert r=briansmith
|
2014-05-14 10:05:32 -07:00 |
|
David Keeler
|
ca14d7c987
|
bug 1002814 - retry PK11_GenerateKeyPair when it fails non-fatally r=briansmith
|
2014-05-19 11:13:04 -07:00 |
|
Brian Smith
|
b3711e99df
|
Bug 1006958: Use mozilla::pkix::der to parse certificate policies instead of NSS, r=keeler
--HG--
extra : rebase_source : fde88efebc1025bc4f825aa38df809d04b1b250a
|
2014-05-15 18:59:52 -07:00 |
|
Brian Smith
|
fcba6f8814
|
Bug 1010581: Document Expect/Match/Skip terminology in mozilla::pkix::der and make that code more consistent, r=keeler
--HG--
extra : rebase_source : 12aa2e1e9eed4f32a75732a65cbfaba9789d5d39
|
2014-05-14 19:30:09 -07:00 |
|
Brian Smith
|
e1de62ff87
|
Bug 1006041: Use mozilla::pkix::der for decoding the extended key usage extension, r=keeler
--HG--
extra : rebase_source : b4b62f117d653784eb6ad058554faf520a1bd90b
|
2014-05-14 01:02:34 -07:00 |
|
Brian Smith
|
dd25f656a6
|
Bug 989564, Part 2: Remove CERTCertificate dependency from CheckBasicConstraints, r=keeler
--HG--
extra : rebase_source : c0ce62f44109cbcdf65da770a1154814733a6b49
|
2014-04-25 20:27:27 -07:00 |
|
Brian Smith
|
8a6f85b521
|
Bug 989564, Part 1: Decode basic constraints extension using mozilla::pkix::der, r=keeler
--HG--
extra : rebase_source : 89560218a69596868cb8a93c69ee72656b0abf77
|
2014-05-05 09:55:57 -07:00 |
|
Gervase Markham
|
4ce70c195e
|
Bug 1007195 - Change licensing on mozilla::pkix to dual Apache 2/MPL 2. r=briansmith.
|
2014-05-14 14:37:25 +01:00 |
|
Jacek Caban
|
37b0fcfa8d
|
Bug 1005309 - Fixed MSVC detection.
--HG--
extra : rebase_source : 0b61de1270eb861234539de675c2d381e217f55c
|
2014-05-12 11:01:22 +02:00 |
|
David Keeler
|
92b21afdff
|
bug 1007962 - CreateEncodedCertificate should take a SECItem as its serialNumber argument r=mmc
|
2014-05-08 15:33:38 -07:00 |
|
David Keeler
|
a4528a1530
|
bug 1007813 - match CreateEncodedCertificate declaration to its definition r=mmc
|
2014-05-08 11:51:50 -07:00 |
|
Monica Chew
|
a203d88ce4
|
Bug 1000354: Fix comment and make test clearer (r=keeler)
|
2014-05-07 15:48:23 -07:00 |
|
Brian Smith
|
a97bc4147c
|
Bug 1005667: Fix build warning due to buggy test code in pkixtestutil.cpp, r=dholbert
|
2014-05-04 11:04:48 -07:00 |
|
Brian Smith
|
163631e898
|
Bug 1005309, Part 2: Enable extended compiler warnings (-W4 -Wall) in mozilla::pkix, r=mmc
--HG--
extra : rebase_source : 033574a0b26582753baec003becfaf15bbd85003
extra : histedit_source : 2d52c47f92b8f694203c2eb580b37be78ccf2f9c
|
2014-05-03 17:50:26 -07:00 |
|
Brian Smith
|
8da948d67f
|
Bug 1005309, Part 1: Improve type conversion and error checking for hashing done in mozilla::pkix's pkixocsp.cpp. r=mmc
--HG--
extra : rebase_source : 79c248ebc45d722249ae7adbbd2527dc9985f6f0
extra : histedit_source : 8ea66942cec4252d9d7e625da22b5ad9964485a1
|
2014-05-02 11:53:06 -07:00 |
|
Brian Smith
|
2cad23bbfd
|
Bug 1005256: Improve parameter validation in mozilla::pkix::der::Input::GetSECItem, r=mmc
--HG--
extra : rebase_source : 93b65e103c86747ddaf463e639aacffdf7ccb08f
extra : histedit_source : 10ef0ab13fb9de710ea3c589600db4632f9cf4a0
|
2014-05-02 11:52:10 -07:00 |
|
Brian Smith
|
b6d4008ea4
|
Bug 1005208: Rename issuerKeyHash to keyHash in mozilla::pkix's pkixocsp.cpp, r=mmc
--HG--
extra : rebase_source : ede4ed17cb56e3e52325ecadc2c5ded33c4a6013
extra : histedit_source : b727000e81bbc8afa6b9f8188b97065f59da45ad
|
2014-05-02 10:40:03 -07:00 |
|
Brian Smith
|
46d3a85aea
|
Bug 1005198: Make it easy to create test certificates in GTest tests, r=keeler
--HG--
extra : rebase_source : 0b1ec263a5a1ce1856afb12f11ea4c35c2aa55d0
extra : histedit_source : 40a3a3fc1993de0fcdeb5593a1a1df4dc94832b8
|
2014-04-25 19:57:40 -07:00 |
|
Brian Smith
|
cb05abe1d6
|
Bug 1003290: Fix OID parser template type, r=keeler
--HG--
extra : rebase_source : c33e450b84234ae7471118c2f8749593a59d9298
|
2014-04-25 16:31:30 -07:00 |
|
Brian Smith
|
6b71be8400
|
Bug 1002933: Use Strongly-typed enums more often in mozilla::pkix, r=mmc
--HG--
extra : rebase_source : 3f67f48d1f4150df0830f89e6c07bbbf3a8fc7e8
|
2014-04-25 16:29:26 -07:00 |
|
Brian Smith
|
80e8f86c33
|
Bug 1002929: Avoid implicit conversion of Result to boolean in mozilla::der::GeneralizedTime, r=keeler
--HG--
extra : rebase_source : 8966d41f1837611b83ac84b347aeddfade9bc949
|
2014-04-24 16:08:30 -07:00 |
|
Camilo Viecco
|
06f960a801
|
Bug 744204 - Allow Certificate key pinning Part 2 - Certverifier Interface. r=keeler
--HG--
extra : rebase_source : 2f9748ba0b241c697e22b7ff72f2f5a0fad4a2ca
|
2014-02-05 14:49:10 -08:00 |
|
Brian Smith
|
c587f858f4
|
Bug 998067: Add utility code for making it easier to create GTests based on NSS, r=keeler
--HG--
extra : rebase_source : 8ae08d1ccc9329aa567cfc7ac590ddb026155bae
|
2014-04-16 21:38:01 -07:00 |
|
Brian Smith
|
2c23644423
|
Bug 1000544: Use "Fail(x, y)" instead of "PR_SetError(y, 0); return x;" more consistently, r=mmc
--HG--
extra : rebase_source : 96addac738b8ffe39c7a92d546388d5f13fc2340
|
2014-04-23 14:13:32 -07:00 |
|
Brian Smith
|
8d2dfeb6e2
|
Bug 1000482: Remove unused stapledOCSPResponse parmaeter from BuildForwardInner, r=mmc, r=keeler
--HG--
extra : rebase_source : b5d67d3488aa3df5690a7dd2b76495ac4986a723
|
2014-04-23 13:42:38 -07:00 |
|
Brian Smith
|
717e7f71a1
|
Bug 1000483: Remove unused isTrustAnchor parameter from CheckKeyUsage, r=cviecco
--HG--
extra : rebase_source : 96e7b76362d6219193c814d35c332aae2ed5b48f
|
2014-04-23 13:38:19 -07:00 |
|
Stefan Arentz
|
54d22813e9
|
Bug 968490: Add mozilla::pkix::der unit tests (r=cviecco)
|
2014-03-26 16:00:03 -07:00 |
|
David Keeler
|
2e3bd0056f
|
bug 991898 - mozilla::pkix: temporarily allow empty Extensions in OCSP responses r=briansmith
|
2014-04-17 16:01:18 -07:00 |
|
David Keeler
|
267f36c29e
|
bug 997843 - mozilla::pkix::der::Input::Expect should take a uint16_t as its length argument r=briansmith
|
2014-04-17 09:50:06 -07:00 |
|
David Keeler
|
7ce7130265
|
bug 982774 - der::ExpectTagAndGetLength: check that input has enough capacity for the length described r=briansmith
|
2014-04-16 13:30:09 -07:00 |
|
David Keeler
|
47abc69838
|
bug 972753 - OCSP testing: delegated responses and including multiple certificates r=cviecco
|
2014-04-16 09:31:27 -07:00 |
|
David Keeler
|
ae21952cdd
|
bug 991209 - mozilla::pkix: allow non-end-entity certs to have OCSP signing EKU r=briansmith
|
2014-04-10 10:15:02 -07:00 |
|
David Keeler
|
179fc74542
|
bug 990603 - mozilla::pkix: defer reporting end-entity cert errors until after path building r=briansmith
|
2014-04-08 09:49:36 -07:00 |
|
David Keeler
|
bda5e2835b
|
bug 989516 - mozilla::pkix: temporarily allow improper basicConstraint:cA encodings r=cviecco
|
2014-03-31 11:06:43 -07:00 |
|
David Keeler
|
1af2e5556c
|
bug 987295 - mozilla::pkix: test ocsp extension decoding r=cviecco
|
2014-03-31 10:54:53 -07:00 |
|
David Keeler
|
f73aa391b1
|
bug 987295 - mozilla::pkix: fix decoding OCSP response extensions r=cviecco
|
2014-03-31 13:24:16 -07:00 |
|
Camilo Viecco
|
402a7a9293
|
Bug 986156 - Allow anypolicyoid and reject on inhibitAnypolicy (mozilla::pkix). r=bsmith
--HG--
extra : rebase_source : dd61d4bfa64ed65582f3a1b4662f16740983a3ce
|
2014-03-28 10:00:29 -07:00 |
|