From f6b2ab0ba4fede20d7fdc81a0b281d3470a4d6e9 Mon Sep 17 00:00:00 2001 From: "Jonathan M. Wilbur" Date: Wed, 21 Aug 2024 02:25:03 +0000 Subject: [PATCH] test: authorityAttributeIdentifier X.509v3 extension Reviewed-by: Neil Horman Reviewed-by: Tomas Mraz (Merged from https://github.com/openssl/openssl/pull/25244) --- test/certs/ext-authorityAttributeIdentifier.pem | 12 ++++++++++++ test/recipes/25-test_x509.t | 13 ++++++++++++- 2 files changed, 24 insertions(+), 1 deletion(-) create mode 100644 test/certs/ext-authorityAttributeIdentifier.pem diff --git a/test/certs/ext-authorityAttributeIdentifier.pem b/test/certs/ext-authorityAttributeIdentifier.pem new file mode 100644 index 0000000000..38aecb6b02 --- /dev/null +++ b/test/certs/ext-authorityAttributeIdentifier.pem @@ -0,0 +1,12 @@ +-----BEGIN CERTIFICATE----- +MIIBtDCCAaCgAwIBAgIDAQIDMAsGCSqGSIb3DQEBBTAAMCIYDzIwMjEwODMxMDIy +NDM1WhgPMjAyMTA4MzEwMjI0MzVaMAAwggEgMAsGCSqGSIb3DQEBAQOCAQ8AMIIB +CgKCAQEAtnjLm1ts1hC4fNNt3UnQD9y73bDXgioTyWYSI3ca/KNfuTydjFTEYAmq +nuGrBOUfgbmH3PRQ0AmpqljgWTb3d3K8H4UFvDWQTPSS21IMjm8oqd19nE5GxWir +Gu0oDRzhWLHe1RZ7ZrohCPg/1Ocsy47QZuK2laFB0rEmrRWBmEYbDl3/wxf5XfqI +qpOynJB02thXrTCcTM7Rz1FqCFt/ZVZB5hKY2S+CTdE9OIVKlr4WHMfuvUYeOj06 +GkwLFJHNv2tU+tovI3mYRxUuY4UupkS3MC+Otey7XKm1P+INjWWoegm6iCAt3Vus +pVz+6pU2xgl3nrAVMQHB4fReQPH0pQIDAQABozswOTA3BgNVHSYEMDAuMCwwIKQe +MBwxGjAYBgNVBAMMEVdpbGRib2FyIFNvZnR3YXJlAgQBAwUHAwIBsjALBgkqhkiG +9w0BAQUDAQA= +-----END CERTIFICATE----- diff --git a/test/recipes/25-test_x509.t b/test/recipes/25-test_x509.t index 5f68d15943..feb28fd080 100644 --- a/test/recipes/25-test_x509.t +++ b/test/recipes/25-test_x509.t @@ -16,7 +16,7 @@ use OpenSSL::Test qw/:DEFAULT srctop_file/; setup("test_x509"); -plan tests => 97; +plan tests => 100; # Prevent MSys2 filename munging for arguments that look like file paths but # aren't @@ -304,6 +304,17 @@ cert_contains($iobo_cert, "DirName:CN = Wildboar", 1, 'X.509 Issued On Behalf Of'); +my $auth_att_id_cert = srctop_file(@certs, "ext-authorityAttributeIdentifier.pem"); +cert_contains($auth_att_id_cert, + "DirName:CN = Wildboar", + 1, 'X.509 Authority Attribute Identifier'); +cert_contains($auth_att_id_cert, + "Issuer Serial: 01030507", + 1, 'X.509 Authority Attribute Identifier'); +cert_contains($auth_att_id_cert, + "Issuer UID: B2", + 1, 'X.509 Authority Attribute Identifier'); + sub test_errors { # actually tests diagnostics of OSSL_STORE my ($expected, $cert, @opts) = @_; my $infile = srctop_file(@certs, $cert);