@@ -74,7 +74,7 @@ def test_add_file_to_store_with_custom_cert_file
7474 store . add_file @pem
7575 cert = OpenSSL ::X509 ::Certificate . new ( File . read ( @pem ) )
7676
77- p cert if $VERBOSE
77+ # p cert if $VERBOSE
7878
7979 verified = store . verify ( cert )
8080 assert verified , "verification failed for cert: #{ cert . inspect } - #{ store . inspect } "
@@ -192,18 +192,12 @@ def test_verify
192192 ee_exts = [
193193 [ "keyUsage" , "keyEncipherment,digitalSignature" , true ] ,
194194 ]
195- ca1_cert = issue_cert ( @ca1 , @rsa2048 , 1 , now , now +3600 , ca_exts ,
196- nil , nil , OpenSSL ::Digest ::SHA1 . new )
197- ca2_cert = issue_cert ( @ca2 , @rsa1024 , 2 , now , now +1800 , ca_exts ,
198- ca1_cert , @rsa2048 , OpenSSL ::Digest ::SHA1 . new )
199- ee1_cert = issue_cert ( @ee1 , @dsa256 , 10 , now , now +1800 , ee_exts ,
200- ca2_cert , @rsa1024 , OpenSSL ::Digest ::SHA1 . new )
201- ee2_cert = issue_cert ( @ee2 , @dsa512 , 20 , now , now +1800 , ee_exts ,
202- ca2_cert , @rsa1024 , OpenSSL ::Digest ::SHA1 . new )
203- ee3_cert = issue_cert ( @ee2 , @dsa512 , 30 , now -100 , now -1 , ee_exts ,
204- ca2_cert , @rsa1024 , OpenSSL ::Digest ::SHA1 . new )
205- ee4_cert = issue_cert ( @ee2 , @dsa512 , 40 , now +1000 , now +2000 , ee_exts ,
206- ca2_cert , @rsa1024 , OpenSSL ::Digest ::SHA1 . new )
195+ ca1_cert = issue_cert ( @ca1 , @rsa2048 , 1 , ca_exts , nil , nil , not_before : now , not_after : now + 3600 )
196+ ca2_cert = issue_cert ( @ca2 , @rsa1024 , 2 , ca_exts , ca1_cert , @rsa2048 , not_before : now , not_after : now + 1800 )
197+ ee1_cert = issue_cert ( @ee1 , @dsa256 , 10 , ee_exts , ca2_cert , @rsa1024 , not_before : now , not_after : now + 1800 )
198+ ee2_cert = issue_cert ( @ee2 , @dsa512 , 20 , ee_exts , ca2_cert , @rsa1024 , not_before : now , not_after : now + 1800 )
199+ ee3_cert = issue_cert ( @ee2 , @dsa512 , 30 , ee_exts , ca2_cert , @rsa1024 , not_before : now - 100 , not_after : now - 1 )
200+ ee4_cert = issue_cert ( @ee2 , @dsa512 , 40 , ee_exts , ca2_cert , @rsa1024 , not_before : now + 1000 , not_after : now + 2000 )
207201
208202 revoke_info = [ ]
209203 crl1 = issue_crl ( revoke_info , 1 , now , now +1800 , [ ] ,
@@ -408,20 +402,13 @@ def test_verify_same_subject_ca
408402 ee_exts = [
409403 [ "keyUsage" , "keyEncipherment,digitalSignature" , true ] ,
410404 ]
411- ca1_cert = issue_cert ( @ca_same , @rsa1 , 1 , not_before , now - 60 * 60 , ca_exts1 ,
412- nil , nil , OpenSSL ::Digest ::SHA1 . new )
413- ca2_cert = issue_cert ( @ca_same , @rsa2 , 2 , not_before , not_after , ca_exts2 ,
414- nil , nil , OpenSSL ::Digest ::SHA1 . new )
415- ca3_cert = issue_cert ( @ca_other , @rsa3 , 3 , not_before , not_after , ca_exts1 ,
416- nil , nil , OpenSSL ::Digest ::SHA1 . new )
417- ca4_cert = issue_cert ( @ca_same , @rsa4 , 4 , not_before , not_after , ca_exts1 ,
418- nil , nil , OpenSSL ::Digest ::SHA1 . new )
419- ee1_cert = issue_cert ( @ee1 , @dsa1 , 10 , now - 60 , now + 1800 , ee_exts ,
420- ca1_cert , @rsa1 , OpenSSL ::Digest ::SHA1 . new )
421- ee2_cert = issue_cert ( @ee2 , @dsa2 , 20 , now - 60 , now + 1800 , ee_exts ,
422- ca2_cert , @rsa2 , OpenSSL ::Digest ::SHA1 . new )
423- ee4_cert = issue_cert ( @ee4 , @dsa2 , 20 , now - 60 , now + 1800 , ee_exts ,
424- ca4_cert , @rsa4 , OpenSSL ::Digest ::SHA1 . new )
405+ ca1_cert = issue_cert ( @ca_same , @rsa1 , 1 , ca_exts1 , nil , nil , not_before : not_before , not_after : now - 60 * 60 )
406+ ca2_cert = issue_cert ( @ca_same , @rsa2 , 2 , ca_exts2 , nil , nil , not_before : not_before , not_after : not_after )
407+ ca3_cert = issue_cert ( @ca_other , @rsa3 , 3 , ca_exts1 , nil , nil , not_before : not_before , not_after : not_after )
408+ ca4_cert = issue_cert ( @ca_same , @rsa4 , 4 , ca_exts1 , nil , nil , not_before : not_before , not_after : not_after )
409+ ee1_cert = issue_cert ( @ee1 , @dsa1 , 10 , ee_exts , ca1_cert , @rsa1 , not_before : now - 60 , not_after : now + 1800 )
410+ ee2_cert = issue_cert ( @ee2 , @dsa2 , 20 , ee_exts , ca2_cert , @rsa2 , not_before : now - 60 , not_after : now + 1800 )
411+ ee4_cert = issue_cert ( @ee4 , @dsa2 , 20 , ee_exts , ca4_cert , @rsa4 , not_before : now - 60 , not_after : now + 1800 )
425412
426413 cert_store = OpenSSL ::X509 ::Store . new
427414 cert_store . add_cert ca1_cert
0 commit comments