|
1 #!/usr/bin/python |
|
2 # -*- Mode: python; c-basic-offset: 4; indent-tabs-mode: nil; tab-width: 40 -*- |
|
3 # vim: set filetype=python |
|
4 |
|
5 # This Source Code Form is subject to the terms of the Mozilla Public |
|
6 # License, v. 2.0. If a copy of the MPL was not distributed with this |
|
7 # file, You can obtain one at http://mozilla.org/MPL/2.0/. |
|
8 |
|
9 import tempfile, os, sys |
|
10 |
|
11 libpath = os.path.abspath('../psm_common_py') |
|
12 sys.path.append(libpath) |
|
13 import CertUtils |
|
14 |
|
15 srcdir = os.getcwd() |
|
16 db = tempfile.mkdtemp() |
|
17 |
|
18 def generate_child_cert(db_dir, dest_dir, noise_file, name, ca_nick, |
|
19 cert_version, do_bc, is_ee): |
|
20 return CertUtils.generate_child_cert(db_dir, dest_dir, noise_file, name, |
|
21 ca_nick, cert_version, do_bc, is_ee, '') |
|
22 |
|
23 def generate_ee_family(db_dir, dest_dir, noise_file, ca_name): |
|
24 name = "v1_ee-"+ ca_name; |
|
25 generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 1, False, True) |
|
26 name = "v1_bc_ee-"+ ca_name; |
|
27 generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 1, True, True) |
|
28 |
|
29 name = "v2_ee-"+ ca_name; |
|
30 generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 2, False, True) |
|
31 name = "v2_bc_ee-"+ ca_name; |
|
32 generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 2, True, True) |
|
33 |
|
34 name = "v3_missing_bc_ee-"+ ca_name; |
|
35 generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 3, False, True) |
|
36 name = "v3_bc_ee-"+ ca_name; |
|
37 generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 3, True, True) |
|
38 |
|
39 name = "v4_bc_ee-"+ ca_name; |
|
40 generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 4, True, True) |
|
41 |
|
42 def generate_intermediates_and_ee_set(db_dir, dest_dir, noise_file, ca_name): |
|
43 name = "v1_int-" + ca_name; |
|
44 generate_child_cert(db, srcdir, noise_file, name, ca_name, 1, False, False) |
|
45 generate_ee_family(db, srcdir, noise_file, name) |
|
46 name = "v1_int_bc-" + ca_name; |
|
47 generate_child_cert(db, srcdir, noise_file, name, ca_name, 1, True, False) |
|
48 generate_ee_family(db, srcdir, noise_file, name) |
|
49 |
|
50 name = "v2_int-" + ca_name; |
|
51 generate_child_cert(db, srcdir, noise_file, name, ca_name, 2, False, False) |
|
52 generate_ee_family(db, srcdir, noise_file, name) |
|
53 name = "v2_int_bc-" + ca_name; |
|
54 generate_child_cert(db, srcdir, noise_file, name, ca_name, 2, True, False) |
|
55 generate_ee_family(db, srcdir, noise_file, name) |
|
56 |
|
57 name = "v3_int_missing_bc-" + ca_name; |
|
58 generate_child_cert(db, srcdir, noise_file, name, ca_name, 3, False, False) |
|
59 generate_ee_family(db, srcdir, noise_file, name) |
|
60 name = "v3_int-" + ca_name; |
|
61 generate_child_cert(db, srcdir, noise_file, name, ca_name, 3, True, False) |
|
62 generate_ee_family(db, srcdir, noise_file, name) |
|
63 |
|
64 def generate_ca(db_dir, dest_dir, noise_file, name, version, do_bc): |
|
65 CertUtils.generate_ca_cert(db_dir, dest_dir, noise_file, name, version, do_bc) |
|
66 generate_intermediates_and_ee_set(db_dir, dest_dir, noise_file, name) |
|
67 |
|
68 def generate_certs(): |
|
69 [noise_file, pwd_file] = CertUtils.init_nss_db(db) |
|
70 generate_ca(db, srcdir, noise_file, "v1_ca", 1, False ) |
|
71 generate_ca(db, srcdir, noise_file, "v1_ca_bc", 1, True) |
|
72 generate_ca(db, srcdir, noise_file, "v2_ca", 2, False ) |
|
73 generate_ca(db, srcdir, noise_file, "v2_ca_bc", 2, True) |
|
74 generate_ca(db, srcdir, noise_file, "v3_ca", 3, True ) |
|
75 generate_ca(db, srcdir, noise_file, "v3_ca_missing_bc", 3, False) |
|
76 |
|
77 generate_certs(); |