@@ -20,7 +20,7 @@ def test_basic
2020
2121 cert = issue_cert ( @ca , @rsa2048 , 1 , [ ] , nil , nil )
2222 crl = issue_crl ( [ ] , 1 , now , now +1600 , [ ] ,
23- cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA1 ' ) )
23+ cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA256 ' ) )
2424 assert_equal ( 1 , crl . version )
2525 assert_equal ( cert . issuer . to_der , crl . issuer . to_der )
2626 assert_equal ( now , crl . last_update )
@@ -57,7 +57,7 @@ def test_revoked
5757 ]
5858 cert = issue_cert ( @ca , @rsa2048 , 1 , [ ] , nil , nil )
5959 crl = issue_crl ( revoke_info , 1 , Time . now , Time . now +1600 , [ ] ,
60- cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA1 ' ) )
60+ cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA256 ' ) )
6161 revoked = crl . revoked
6262 assert_equal ( 5 , revoked . size )
6363 assert_equal ( 1 , revoked [ 0 ] . serial )
@@ -98,7 +98,7 @@ def test_revoked
9898
9999 revoke_info = ( 1 ..1000 ) . collect { |i | [ i , now , 0 ] }
100100 crl = issue_crl ( revoke_info , 1 , Time . now , Time . now +1600 , [ ] ,
101- cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA1 ' ) )
101+ cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA256 ' ) )
102102 revoked = crl . revoked
103103 assert_equal ( 1000 , revoked . size )
104104 assert_equal ( 1 , revoked [ 0 ] . serial )
@@ -124,7 +124,7 @@ def test_extension
124124
125125 cert = issue_cert ( @ca , @rsa2048 , 1 , cert_exts , nil , nil )
126126 crl = issue_crl ( [ ] , 1 , Time . now , Time . now +1600 , crl_exts ,
127- cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA1 ' ) )
127+ cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA256 ' ) )
128128 exts = crl . extensions
129129 assert_equal ( 3 , exts . size )
130130 assert_equal ( "1" , exts [ 0 ] . value )
@@ -160,32 +160,32 @@ def test_extension
160160 assert_equal ( false , exts [ 2 ] . critical? )
161161
162162 no_ext_crl = issue_crl ( [ ] , 1 , Time . now , Time . now +1600 , [ ] ,
163- cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA1 ' ) )
163+ cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA256 ' ) )
164164 assert_equal nil , no_ext_crl . authority_key_identifier
165165 end
166166
167167 def test_crlnumber
168168 cert = issue_cert ( @ca , @rsa2048 , 1 , [ ] , nil , nil )
169169 crl = issue_crl ( [ ] , 1 , Time . now , Time . now +1600 , [ ] ,
170- cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA1 ' ) )
170+ cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA256 ' ) )
171171 assert_match ( 1 . to_s , crl . extensions [ 0 ] . value )
172172 assert_match ( /X509v3 CRL Number:\s +#{ 1 } /m , crl . to_text )
173173
174174 crl = issue_crl ( [ ] , 2 **32 , Time . now , Time . now +1600 , [ ] ,
175- cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA1 ' ) )
175+ cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA256 ' ) )
176176 assert_match ( ( 2 **32 ) . to_s , crl . extensions [ 0 ] . value )
177177 assert_match ( /X509v3 CRL Number:\s +#{ 2 **32 } /m , crl . to_text )
178178
179179 crl = issue_crl ( [ ] , 2 **100 , Time . now , Time . now +1600 , [ ] ,
180- cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA1 ' ) )
180+ cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA256 ' ) )
181181 assert_match ( /X509v3 CRL Number:\s +#{ 2 **100 } /m , crl . to_text )
182182 assert_match ( ( 2 **100 ) . to_s , crl . extensions [ 0 ] . value )
183183 end
184184
185185 def test_sign_and_verify
186186 cert = issue_cert ( @ca , @rsa2048 , 1 , [ ] , nil , nil )
187187 crl = issue_crl ( [ ] , 1 , Time . now , Time . now +1600 , [ ] ,
188- cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA1 ' ) )
188+ cert , @rsa2048 , OpenSSL ::Digest . new ( 'SHA256 ' ) )
189189 assert_equal ( false , crl . verify ( @rsa1024 ) )
190190 assert_equal ( true , crl . verify ( @rsa2048 ) )
191191 assert_equal ( false , crl_error_returns_false { crl . verify ( @dsa256 ) } )
@@ -195,7 +195,7 @@ def test_sign_and_verify
195195
196196 cert = issue_cert ( @ca , @dsa512 , 1 , [ ] , nil , nil )
197197 crl = issue_crl ( [ ] , 1 , Time . now , Time . now +1600 , [ ] ,
198- cert , @dsa512 , OpenSSL ::Digest . new ( 'SHA1 ' ) )
198+ cert , @dsa512 , OpenSSL ::Digest . new ( 'SHA256 ' ) )
199199 assert_equal ( false , crl_error_returns_false { crl . verify ( @rsa1024 ) } )
200200 assert_equal ( false , crl_error_returns_false { crl . verify ( @rsa2048 ) } )
201201 assert_equal ( false , crl . verify ( @dsa256 ) )
0 commit comments