/openssl/test/certs/ |
H A D | setup.sh | 81 ./mkcert.sh genca "CA" ca-key ca-cert root-key root-cert 83 ./mkcert.sh genee "CA" ca-key ca-nonca root-key root-cert 84 ./mkcert.sh gen_nonbc_ca "CA" ca-key ca-nonbc root-key root-cert 85 ./mkcert.sh genca "CA" ca-key2 ca-cert2 root-key root-cert 86 ./mkcert.sh genca "CA2" ca-key ca-name2 root-key root-cert 87 ./mkcert.sh genca "CA" ca-key ca-root2 root-key2 root-cert2 112 ./mkcert.sh genca "CA" ca-key ca-cert-md5 root-key root-cert 119 ./mkcert.sh genca "CA" ca-key-768 ca-cert-768 root-key root-cert 158 ./mkcert.sh genee server.example ee-key ee-cert ca-key ca-cert 162 ./mkcert.sh genee server.example ee-key ee-name2 ca-key ca-name2 [all …]
|
H A D | mkcert.sh | 190 local ca=$1; shift 207 local ca=$1; shift 229 local ca=$1; shift 235 geneeconfig $key $cert $cakey $ca "$conf" 258 local ca=$1; shift 269 cert "$cert" "$exts" -CA "${ca}.pem" -CAkey "${cakey}.pem" \ 291 local ca=$1; shift 303 cert "$cert" "$exts" -CA "${ca}.pem" -CAkey "${cakey}.pem" \ 324 local ca=$1; shift 380 local ca=$1; shift [all …]
|
/openssl/demos/certs/ |
H A D | mkcerts.sh | 13 CN="Test Root CA" opensslcmd req -config ca.cnf -x509 -nodes \ 16 CN="Test Intermediate CA" opensslcmd req -config ca.cnf -nodes \ 23 CN="Test Server Cert" opensslcmd req -config ca.cnf -nodes \ 30 CN="Test Client Cert" opensslcmd req -config ca.cnf -nodes \ 87 -config ca.cnf -md sha1 89 -config ca.cnf -md sha1 91 -config ca.cnf -md sha1 93 opensslcmd ca -gencrl -keyfile root.pem -cert root.pem -config ca.cnf \ 96 openssl ca -revoke rev.pem -crl_reason superseded \ 97 -keyfile root.pem -cert root.pem -config ca.cnf -md sha1 [all …]
|
H A D | ca.cnf | 9 default_ca = ca 35 # These extensions are added when 'ca' signs a request for an end entity 57 # These extensions are added when 'ca' signs a request for an end entity 80 [ca]
|
/openssl/test/ |
H A D | pkcs12_api_test.c | 64 static int changepass(PKCS12 *p12, EVP_PKEY *key, X509 *cert, STACK_OF(X509) *ca) in changepass() argument 109 STACK_OF(X509) *ca = NULL; in pkcs12_parse_test() 116 if (!TEST_true(PKCS12_parse(p12, in_pass, &key, &cert, &ca))) in pkcs12_parse_test() 123 if ((has_ca && !TEST_ptr(ca)) || (!has_ca && !TEST_ptr_null(ca))) in pkcs12_parse_test() 125 if (has_key && !changepass(p12, key, cert, ca)) in pkcs12_parse_test() 133 OSSL_STACK_OF_X509_free(ca); in pkcs12_parse_test() 143 static PKCS12 *pkcs12_create_ex2_setup(EVP_PKEY **key, X509 **cert, STACK_OF(X509) **ca) in pkcs12_create_ex2_setup() argument 150 if (!TEST_true(PKCS12_parse(p12, "", key, cert, ca))) in pkcs12_create_ex2_setup() 165 STACK_OF(X509) *ca = NULL; in pkcs12_create_ex2_test() 167 p12 = pkcs12_create_ex2_setup(&key, &cert, &ca); in pkcs12_create_ex2_test() [all …]
|
/openssl/demos/pkcs12/ |
H A D | pkread.c | 53 STACK_OF(X509) *ca = NULL; in main() 74 if (!PKCS12_parse(p12, argv[2], &pkey, &cert, &ca)) { in main() 95 if (ca != NULL && sk_X509_num(ca) > 0) { in main() 97 for (i = 0; i < sk_X509_num(ca); i++) in main() 98 PEM_write_X509_AUX(fp, sk_X509_value(ca, i)); in main() 108 OSSL_STACK_OF_X509_free(ca); in main()
|
/openssl/test/ocsp-tests/ |
H A D | mk-ocsp-cert-chain.sh | 23 -config ca.cnf \ 40 -config ca.cnf \ 48 -config ca.cnf \ 67 -config ca.cnf \ 76 -config ca.cnf \ 89 opensslcmd ca \ 90 -config ca.cnf \
|
H A D | ca.cnf | 2 default_ca = ca 31 [ ca ]
|
/openssl/doc/man3/ |
H A D | PKCS12_parse.pod | 12 STACK_OF(X509) **ca); 20 certificate to B<*cert> and any additional certificates to B<*ca>. 24 Each of the parameters B<pkey>, B<cert>, and B<ca> can be NULL in which case 29 If B<ca> is non-NULL and B<*ca> is NULL a new STACK will be allocated. 30 If B<ca> is non-NULL and B<*ca> is a valid STACK 31 then additional certificates are appended in the given order to B<*ca>.
|
/openssl/crypto/pkcs12/ |
H A D | p12_crt.c | 36 X509 *cert, STACK_OF(X509) *ca, int nid_key, int nid_cert, in PKCS12_create_ex2() 62 if (pkey == NULL && cert == NULL && ca == NULL) { in PKCS12_create_ex2() 97 for (i = 0; i < sk_X509_num(ca); i++) { in PKCS12_create_ex2() 98 if ((bag = PKCS12_add_cert(&bags, sk_X509_value(ca, i))) == NULL) in PKCS12_create_ex2() 175 STACK_OF(X509) *ca, int nid_key, int nid_cert, int iter, in PKCS12_create_ex() 179 return PKCS12_create_ex2(pass, name, pkey, cert, ca, nid_key, nid_cert, in PKCS12_create_ex() 185 STACK_OF(X509) *ca, int nid_key, int nid_cert, int iter, in PKCS12_create() 188 return PKCS12_create_ex(pass, name, pkey, cert, ca, nid_key, nid_cert, in PKCS12_create()
|
H A D | p12_kiss.c | 36 STACK_OF(X509) **ca) in PKCS12_parse() 79 if ((cert != NULL || ca != NULL) in PKCS12_parse() 109 if (ca != NULL) { in PKCS12_parse() 110 if (!ossl_x509_add_cert_new(ca, x, X509_ADD_FLAG_DEFAULT)) in PKCS12_parse()
|
/openssl/crypto/x509/ |
H A D | v3_bcons.c | 39 ASN1_OPT(BASIC_CONSTRAINTS, ca, ASN1_FBOOLEAN), 50 X509V3_add_value_bool("CA", bcons->ca, &extlist); 70 if (!X509V3_get_value_bool(val, &bcons->ca)) in v2i_BASIC_CONSTRAINTS()
|
/openssl/test/smime-certs/ |
H A D | ca.cnf | 12 default_ca = ca 36 # These extensions are added when 'ca' signs a request for a normal end-entity 55 # These extensions are added when 'ca' signs a request for an end-entity 63 # These extensions are added when 'ca' signs a request for a code-signing
|
H A D | mksmime-certs.sh | 13 CONF=ca.cnf 22 CN="Test S/MIME RSA Root" $OPENSSL req -config ca.cnf -x509 -noenc \ 23 -keyout smroot.pem -out smroot.pem -key ../certs/ca-key.pem -days 36524
|
/openssl/test/quic-openssl-docker/ |
H A D | run_endpoint.sh | 42 SSL_CERT_FILE=/certs/ca.pem curl --config $CURLRC || exit 1 57 …SSLKEYLOGFILE=/logs/keys.log SSL_CERT_FILE=/certs/ca.pem SSL_CERT_DIR=/certs quic-hq-interop $HOST… 67 …SSL_SESSION_FILE=./session.db SSLKEYLOGFILE=/logs/keys.log SSL_CERT_FILE=/certs/ca.pem SSL_CERT_DI… 79 …ESSION_FILE=./session.db SSLKEYLOGFILE=/logs/keys.log SSL_CERT_FILE=/certs/ca.pem SSL_CERT_DIR=/ce…
|
/openssl/test/recipes/15-test_ml_kem_codecs_data/ |
H A D | prv-512-priv.txt | 32 5c:99:b7:8e:ca:09:69:03:8c:f7:c3:4d:d1:18:72: 33 4e:31:ca:e0:86:20:6b:34:30:2b:52:0f:5d:17:7a: 46 93:81:5a:a6:a4:09:75:f2:18:ad:ca:15:82:d6:4f: 58 53:e7:ca:57:01:69:9f:13:05:f1:e6:bc:6f:90:b0: 63 b1:80:7c:a4:ca:bd:a4:65:82:5a:31:c7:89:a1:b7: 68 8c:60:5e:56:3c:5d:20:95:72:e0:fc:75:32:ca:29: 90 73:ca:8a:7d:d2:67:5a:f4:1f:7a:17:b6:14:33:cd: 93 ca:80:35:07:25:b8:5f:83:a5:ea:c3:a4:a3:cc:16: 116 90:5a:7f:0a:c0:76:b0:c6:2e:fa:32:81:53:e7:ca: 122 a4:ca:bd:a4:65:82:5a:31:c7:89:a1:b7:a4:91:ab: [all …]
|
H A D | prv-512-seed.txt | 38 5c:99:b7:8e:ca:09:69:03:8c:f7:c3:4d:d1:18:72: 39 4e:31:ca:e0:86:20:6b:34:30:2b:52:0f:5d:17:7a: 52 93:81:5a:a6:a4:09:75:f2:18:ad:ca:15:82:d6:4f: 64 53:e7:ca:57:01:69:9f:13:05:f1:e6:bc:6f:90:b0: 69 b1:80:7c:a4:ca:bd:a4:65:82:5a:31:c7:89:a1:b7: 74 8c:60:5e:56:3c:5d:20:95:72:e0:fc:75:32:ca:29: 96 73:ca:8a:7d:d2:67:5a:f4:1f:7a:17:b6:14:33:cd: 99 ca:80:35:07:25:b8:5f:83:a5:ea:c3:a4:a3:cc:16: 122 90:5a:7f:0a:c0:76:b0:c6:2e:fa:32:81:53:e7:ca: 128 a4:ca:bd:a4:65:82:5a:31:c7:89:a1:b7:a4:91:ab: [all …]
|
H A D | prv-1024-priv.txt | 4 a1:9b:42:cd:46:3e:a9:fb:b9:84:ca:47:7a:77:b6: 57 a8:77:93:fa:fb:bf:ca:98:2e:66:bb:80:68:1c:83: 66 19:94:5d:a7:a1:67:c2:29:91:32:90:ca:d1:c8:0a: 73 f0:93:50:0c:f3:bf:35:37:4a:dc:39:20:35:ca:7c: 74 58:3b:99:68:5b:ca:54:1a:08:07:b1:63:ac:d0:88: 85 2e:c7:91:e5:07:52:d4:d0:34:cb:1c:95:15:72:ca: 95 82:59:7f:6f:c2:7a:00:51:c0:fb:00:b0:2c:01:ca: 96 20:f9:a4:27:f1:72:59:94:77:ca:69:0c:c1:32:7e: 108 ee:e5:ca:80:a7:3b:fc:e0:ba:f5:a5:4a:88:58:5a: 135 cc:d8:37:53:14:83:f2:41:ca:dc:d1:c1:d3:78:11: [all …]
|
H A D | prv-1024-seed.txt | 10 a1:9b:42:cd:46:3e:a9:fb:b9:84:ca:47:7a:77:b6: 63 a8:77:93:fa:fb:bf:ca:98:2e:66:bb:80:68:1c:83: 72 19:94:5d:a7:a1:67:c2:29:91:32:90:ca:d1:c8:0a: 79 f0:93:50:0c:f3:bf:35:37:4a:dc:39:20:35:ca:7c: 80 58:3b:99:68:5b:ca:54:1a:08:07:b1:63:ac:d0:88: 91 2e:c7:91:e5:07:52:d4:d0:34:cb:1c:95:15:72:ca: 101 82:59:7f:6f:c2:7a:00:51:c0:fb:00:b0:2c:01:ca: 102 20:f9:a4:27:f1:72:59:94:77:ca:69:0c:c1:32:7e: 114 ee:e5:ca:80:a7:3b:fc:e0:ba:f5:a5:4a:88:58:5a: 141 cc:d8:37:53:14:83:f2:41:ca:dc:d1:c1:d3:78:11: [all …]
|
/openssl/crypto/bn/ |
H A D | bn_recp.c | 58 const BIGNUM *ca; in BN_mod_mul_reciprocal() local 71 ca = a; in BN_mod_mul_reciprocal() 73 ca = x; /* Just do the mod */ in BN_mod_mul_reciprocal() 75 ret = BN_div_recp(NULL, r, ca, recp, ctx); in BN_mod_mul_reciprocal()
|
/openssl/test/recipes/15-test_ml_dsa_codecs_data/ |
H A D | prv-65-seed.txt | 110 9e:b0:4d:78:a7:33:27:11:11:7c:33:f1:8e:ca:21: 123 0d:9a:19:50:0d:70:a4:ca:f2:72:c6:9e:4e:ef:69: 177 87:04:0c:5f:61:93:06:eb:0b:6c:ca:2a:9c:e7:b2: 189 69:bf:98:18:81:ca:f9:e3:66:5f:c7:f7:ef:c6:78: 214 ca:40:12:5e:2d:65:29:00:71:c7:ae:f1:be:6a:99: 220 67:58:4e:06:ca:2e:08:cc:af:f1:61:8f:e0:1d:d0: 221 6d:f3:51:2e:0b:72:4d:ec:85:06:da:24:21:5a:ca: 226 7d:72:ca:8a:36:80:28:f4:97:df:ad:93:35:5c:bb: 239 d4:d1:b8:f4:15:79:fb:43:48:ed:e4:ca:05:f4:cd: 255 41:c3:db:66:8d:c6:ca:d4:5f:c9:3b:27:08:ca:2a: [all …]
|
H A D | prv-65-priv.txt | 106 9e:b0:4d:78:a7:33:27:11:11:7c:33:f1:8e:ca:21: 119 0d:9a:19:50:0d:70:a4:ca:f2:72:c6:9e:4e:ef:69: 173 87:04:0c:5f:61:93:06:eb:0b:6c:ca:2a:9c:e7:b2: 185 69:bf:98:18:81:ca:f9:e3:66:5f:c7:f7:ef:c6:78: 210 ca:40:12:5e:2d:65:29:00:71:c7:ae:f1:be:6a:99: 216 67:58:4e:06:ca:2e:08:cc:af:f1:61:8f:e0:1d:d0: 217 6d:f3:51:2e:0b:72:4d:ec:85:06:da:24:21:5a:ca: 222 7d:72:ca:8a:36:80:28:f4:97:df:ad:93:35:5c:bb: 235 d4:d1:b8:f4:15:79:fb:43:48:ed:e4:ca:05:f4:cd: 251 41:c3:db:66:8d:c6:ca:d4:5f:c9:3b:27:08:ca:2a: [all …]
|
H A D | pub-65.txt | 7 eb:4e:89:ee:67:d2:c0:32:09:54:d5:72:12:ca:c7: 73 fe:16:55:e3:04:ca:5b:c8:c2:7a:d0:e0:c6:a3:9d: 89 ee:b2:d0:62:ca:3c:21:5f:d3:60:02:6b:e7:c5:16: 95 39:ca:f0:83:a9:5b:83:3f:02:ad:10:a0:8c:1a:6d: 104 a9:b7:53:0d:c0:ca:86:48:c8:d9:73:73:8e:01:ba: 130 3a:0f:93:e7:9c:46:ca:5d:5a:6d:ca:3d:28:ca:50:
|
/openssl/doc/man1/ |
H A D | CA.pl.pod | 83 Creates a new CA hierarchy for use with the B<ca> program (or the B<-signcert> 88 Uses L<openssl-req(1)> and L<openssl-ca(1)>. 109 Calls the L<openssl-ca(1)> command to sign a certificate request. It expects the 119 a root CA. Extra params are passed to L<openssl-ca(1)>. 125 Extra params are passed to L<openssl-x509(1)> and L<openssl-ca(1)>. 129 Generate a CRL. Executes L<openssl-ca(1)>. 137 Leverages L<openssl-ca(1)>. 177 configuration option and value to the B<req> and B<ca> commands invoked by 185 L<openssl-ca(1)>,
|
/openssl/crypto/objects/ |
H A D | obj_dat.c | 121 static unsigned long added_obj_hash(const ADDED_OBJ *ca) in added_obj_hash() argument 128 a = ca->obj; in added_obj_hash() 129 switch (ca->type) { in added_obj_hash() 150 ret |= ((unsigned long)ca->type) << 30L; in added_obj_hash() 154 static int added_obj_cmp(const ADDED_OBJ *ca, const ADDED_OBJ *cb) in added_obj_cmp() argument 159 i = ca->type - cb->type; in added_obj_cmp() 162 a = ca->obj; in added_obj_cmp() 164 switch (ca->type) { in added_obj_cmp()
|