security/manager/ssl/tests/unit/test_cert_version/generate.py

Thu, 22 Jan 2015 13:21:57 +0100

author
Michael Schloh von Bennewitz <michael@schloh.com>
date
Thu, 22 Jan 2015 13:21:57 +0100
branch
TOR_BUG_9701
changeset 15
b8a032363ba2
permissions
-rwxr-xr-x

Incorporate requested changes from Mozilla in review:
https://bugzilla.mozilla.org/show_bug.cgi?id=1123480#c6

     1 #!/usr/bin/python
     2 # -*- Mode: python; c-basic-offset: 4; indent-tabs-mode: nil; tab-width: 40 -*-
     3 # vim: set filetype=python
     5 # This Source Code Form is subject to the terms of the Mozilla Public
     6 # License, v. 2.0. If a copy of the MPL was not distributed with this
     7 # file, You can obtain one at http://mozilla.org/MPL/2.0/.
     9 import tempfile, os, sys
    11 libpath = os.path.abspath('../psm_common_py')
    12 sys.path.append(libpath)
    13 import CertUtils
    15 srcdir = os.getcwd()
    16 db = tempfile.mkdtemp()
    18 def generate_child_cert(db_dir, dest_dir, noise_file, name, ca_nick,
    19                         cert_version, do_bc, is_ee):
    20    return CertUtils.generate_child_cert(db_dir, dest_dir, noise_file, name,
    21                                         ca_nick, cert_version, do_bc, is_ee, '')
    23 def generate_ee_family(db_dir, dest_dir, noise_file, ca_name):
    24   name = "v1_ee-"+ ca_name;
    25   generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 1, False, True)
    26   name = "v1_bc_ee-"+ ca_name;
    27   generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 1, True, True)
    29   name = "v2_ee-"+ ca_name;
    30   generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 2, False, True)
    31   name = "v2_bc_ee-"+ ca_name;
    32   generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 2, True, True)
    34   name = "v3_missing_bc_ee-"+ ca_name;
    35   generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 3, False, True)
    36   name = "v3_bc_ee-"+ ca_name;
    37   generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 3, True, True)
    39   name = "v4_bc_ee-"+ ca_name;
    40   generate_child_cert(db_dir, dest_dir, noise_file, name, ca_name, 4, True, True)
    42 def generate_intermediates_and_ee_set(db_dir, dest_dir, noise_file, ca_name):
    43   name =  "v1_int-" + ca_name;
    44   generate_child_cert(db, srcdir, noise_file, name, ca_name, 1, False, False)
    45   generate_ee_family(db, srcdir, noise_file, name)
    46   name = "v1_int_bc-" + ca_name;
    47   generate_child_cert(db, srcdir, noise_file, name, ca_name, 1, True, False)
    48   generate_ee_family(db, srcdir, noise_file, name)
    50   name =  "v2_int-" + ca_name;
    51   generate_child_cert(db, srcdir, noise_file, name, ca_name, 2, False, False)
    52   generate_ee_family(db, srcdir, noise_file, name)
    53   name = "v2_int_bc-" + ca_name;
    54   generate_child_cert(db, srcdir, noise_file, name, ca_name, 2, True, False)
    55   generate_ee_family(db, srcdir, noise_file, name)
    57   name =  "v3_int_missing_bc-" + ca_name;
    58   generate_child_cert(db, srcdir, noise_file, name, ca_name, 3, False, False)
    59   generate_ee_family(db, srcdir, noise_file, name)
    60   name = "v3_int-" + ca_name;
    61   generate_child_cert(db, srcdir, noise_file, name, ca_name, 3, True, False)
    62   generate_ee_family(db, srcdir, noise_file, name)
    64 def generate_ca(db_dir, dest_dir, noise_file,  name, version, do_bc):
    65   CertUtils.generate_ca_cert(db_dir, dest_dir, noise_file,  name, version, do_bc)
    66   generate_intermediates_and_ee_set(db_dir, dest_dir, noise_file, name)
    68 def generate_certs():
    69   [noise_file, pwd_file] = CertUtils.init_nss_db(db)
    70   generate_ca(db, srcdir, noise_file, "v1_ca", 1, False )
    71   generate_ca(db, srcdir, noise_file, "v1_ca_bc", 1, True)
    72   generate_ca(db, srcdir, noise_file, "v2_ca", 2, False )
    73   generate_ca(db, srcdir, noise_file, "v2_ca_bc", 2, True)
    74   generate_ca(db, srcdir, noise_file, "v3_ca", 3, True )
    75   generate_ca(db, srcdir, noise_file, "v3_ca_missing_bc", 3, False)
    77 generate_certs();

mercurial