799 Commits

Author SHA1 Message Date
wtc%google.com
4cf83d6235 Bug 838769: Run strsclnt with SSL2 enabled only when testing the six SSL2
cipher suites.  r=kaie.


git-svn-id: svn://10.0.0.236/trunk@264759 18797224-902f-48f8-a5cc-f745e15eee43
2013-02-18 23:25:11 +00:00
wtc%google.com
86e2ad1f64 Bug 841664: Remove a reference to the obsolete libfreebl_32int_3.so for
32-bit Solaris SPARC. r=kaie.


git-svn-id: svn://10.0.0.236/trunk@264758 18797224-902f-48f8-a5cc-f745e15eee43
2013-02-18 21:30:39 +00:00
kaie%kuix.de
e2c12581e7 Bug 360420, fix Windows deadlock bustage, add missing html request to tstclnt invocation, r=bustage
git-svn-id: svn://10.0.0.236/trunk@264746 18797224-902f-48f8-a5cc-f745e15eee43
2013-02-16 14:48:46 +00:00
wtc%google.com
0411015ffd Bug 838769: Run the ECC SSL tests with SSL2 disabled and with TLS enabled
because ECC cipher suites need the Supported Elliptic Curves Extension.
r=kaie.
Modified Files:
	sslcov.txt sslstress.txt


git-svn-id: svn://10.0.0.236/trunk@264743 18797224-902f-48f8-a5cc-f745e15eee43
2013-02-15 20:22:59 +00:00
kaie%kuix.de
fd3579fa78 Bug 811331 / Bug 360420, add selfsigned OCSP stapling to selfserv, stapling support for strsclnt, run self-contained stapling tests, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@264737 18797224-902f-48f8-a5cc-f745e15eee43
2013-02-15 17:57:01 +00:00
kaie%kuix.de
80289d8043 Bug 700701 (as part of Bug 360420), Enhance tstclnt and ssltap to support OCSP stapling, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@264734 18797224-902f-48f8-a5cc-f745e15eee43
2013-02-15 17:54:57 +00:00
kaie%kuix.de
2db34da325 Bug 839109 - Fix TLS version in NSS tests, patch by Wan-Teh Chang, r=kaie
git-svn-id: svn://10.0.0.236/trunk@264707 18797224-902f-48f8-a5cc-f745e15eee43
2013-02-07 16:47:44 +00:00
kaie%kuix.de
f0711f1e8e Bug 772144, add a comment to the bustage fix, requested by relyea
git-svn-id: svn://10.0.0.236/trunk@264634 18797224-902f-48f8-a5cc-f745e15eee43
2013-01-09 17:47:50 +00:00
kaie%kuix.de
74d3f6662b Bug 772144, fix Windows testing bustage (stuck forever, because kill httpserv fails, preventing main job from exiting)
git-svn-id: svn://10.0.0.236/trunk@264633 18797224-902f-48f8-a5cc-f745e15eee43
2013-01-09 17:28:37 +00:00
kaie%kuix.de
3cb16903a0 Bug 772144 - Run the NSS test suite on ARM/Android, Patch by rrelyea/kaie, r=kaie/rrelyea
git-svn-id: svn://10.0.0.236/trunk@264631 18797224-902f-48f8-a5cc-f745e15eee43
2013-01-08 16:19:11 +00:00
kaie%kuix.de
28ed8eb7d7 Bug 826627 - NSS cert tests fail, beause Android doesn't have /tmp directory, TBR=relyea, a=bustage
git-svn-id: svn://10.0.0.236/trunk@264629 18797224-902f-48f8-a5cc-f745e15eee43
2013-01-07 22:14:58 +00:00
ryan.sleevi%gmail.com
4eac635e00 BUG 816853: Add support for trusting the union of explicit trust anchors and
the trust DB.
r=rrelyea


git-svn-id: svn://10.0.0.236/trunk@264625 18797224-902f-48f8-a5cc-f745e15eee43
2013-01-07 03:56:15 +00:00
kaie%kuix.de
b6b0e9d90b Bug 762198, patch to report the system's FIPS setting in the test output, r=emaldona
git-svn-id: svn://10.0.0.236/trunk@264557 18797224-902f-48f8-a5cc-f745e15eee43
2012-12-12 20:47:18 +00:00
kaie%kuix.de
55be6fb728 Bug 762198, patch to fix the mode output when running the lowhash text, r=emaldona
git-svn-id: svn://10.0.0.236/trunk@264556 18797224-902f-48f8-a5cc-f745e15eee43
2012-12-12 20:46:46 +00:00
kaie%kuix.de
e85df48c7e Bug 777699 - NSS test "Reloading CRL for group 43 - 48" fails on Android, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@264540 18797224-902f-48f8-a5cc-f745e15eee43
2012-12-09 16:11:06 +00:00
kaie%kuix.de
ad9fcf4c0d Bug 811317, Add code to create a signed OCSP response, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@264459 18797224-902f-48f8-a5cc-f745e15eee43
2012-11-17 11:52:39 +00:00
kaie%kuix.de
d236ac61da Bug 777394 - Avoid listening-port collisisions with AIA testing, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@264361 18797224-902f-48f8-a5cc-f745e15eee43
2012-10-19 20:18:41 +00:00
rrelyea%redhat.com
8067e24523 Bug 475578 - Implement Extended DSA as defined in FIPS 186-3 (DSS) (edit)
r=wtc. partial review also by brian

Fix problem when generating pqg < 512. Switch to Shawe/Taylor pqg generation


git-svn-id: svn://10.0.0.236/trunk@264317 18797224-902f-48f8-a5cc-f745e15eee43
2012-10-11 00:10:27 +00:00
wtc%google.com
f2223d329d Bug 795145: Set the max version to TLS 1.0 when testing the export cipher
suites f and g because they are disallowed in TLS 1.1. r=kaie.


git-svn-id: svn://10.0.0.236/trunk@264277 18797224-902f-48f8-a5cc-f745e15eee43
2012-09-28 15:09:54 +00:00
kaie%kuix.de
1cecb6d137 Bug 785170 - Enhance NSS to run an initial set of TLS 1.1 tests
r=rrelyea


git-svn-id: svn://10.0.0.236/trunk@264265 18797224-902f-48f8-a5cc-f745e15eee43
2012-09-27 17:21:15 +00:00
kaie%kuix.de
46bc676332 Bug 785169 - Change tools to use a version range for SSL/TLS versions + adjust the test suite
r=wtc


git-svn-id: svn://10.0.0.236/trunk@264264 18797224-902f-48f8-a5cc-f745e15eee43
2012-09-27 17:13:36 +00:00
emaldona%redhat.com
0565f292b9 Bug 762198 - softoken sha224 powerup self-test fails on fips mode, r=kaie
git-svn-id: svn://10.0.0.236/trunk@264166 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-29 00:56:52 +00:00
kaie%kuix.de
18e6ed97c2 Bug 767146 - Update run_niscc.sh into a working state. The majority of this work was contributed by Jiri Pospisil, r=kaie. Some tweaks by me.
git-svn-id: svn://10.0.0.236/trunk@264027 18797224-902f-48f8-a5cc-f745e15eee43
2012-07-13 20:30:25 +00:00
kaie%kuix.de
d9d646cf24 Bug 748020 - Implement self-contained testing of AIA fetching, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@263999 18797224-902f-48f8-a5cc-f745e15eee43
2012-06-28 11:15:17 +00:00
emaldona%redhat.com
a1182473ea Bug 762198 - fix tinderbox, testlowhash not supprted everywhere
git-svn-id: svn://10.0.0.236/trunk@263942 18797224-902f-48f8-a5cc-f745e15eee43
2012-06-14 14:56:02 +00:00
emaldona%redhat.com
c21013d1c7 Bug 762198 - softoken sha224 powerup self-test fails on fips mode, r=rrleyea
git-svn-id: svn://10.0.0.236/trunk@263935 18797224-902f-48f8-a5cc-f745e15eee43
2012-06-13 18:16:40 +00:00
emaldona%redhat.com
dba09ae33a Bug 755108 - Typo in ssl.sh CLIETNDIR should be CLIENTDIR, r=wtc
git-svn-id: svn://10.0.0.236/trunk@263819 18797224-902f-48f8-a5cc-f745e15eee43
2012-05-15 01:07:12 +00:00
kaie%kuix.de
2fc75660bc Bug 741873 - If the OCSP server is unreachable during NSS test suite execution, return a failure, 2 patches, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@263786 18797224-902f-48f8-a5cc-f745e15eee43
2012-05-03 10:35:19 +00:00
kaie%kuix.de
c1c1b703c5 Bug 747343 - Enable 64bit memleak testing on Linux + update the known leaks whitelist for newer GLIBC
git-svn-id: svn://10.0.0.236/trunk@263725 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-20 14:38:33 +00:00
kaie%kuix.de
0290d69d71 Backing out bug 741873
git-svn-id: svn://10.0.0.236/trunk@263705 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-18 12:03:11 +00:00
kaie%kuix.de
b6cb699f95 bustage fix attempt, try to increase ping timeout to 60 seconds
git-svn-id: svn://10.0.0.236/trunk@263703 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-17 23:22:09 +00:00
kaie%kuix.de
b7278cd172 Attempt test failure bustage fix, bug 741873, use 10 second timeout for ping response
git-svn-id: svn://10.0.0.236/trunk@263697 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-17 13:45:01 +00:00
kaie%kuix.de
a0439dcf0c Bug 741873, test suite should fail if OCSP server cannot be reached, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@263695 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-16 14:49:58 +00:00
kaie%kuix.de
44ca940e0b Bug 741870, Update OCSP server testing, update the cert generation script and ocsp server config file template, r=rrelyea - not part of the build
git-svn-id: svn://10.0.0.236/trunk@263669 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-11 19:30:16 +00:00
kaie%kuix.de
36451e4a2b Bug 741870, Update OCSP server testing. Landing new test certificates. No code change, no review.
git-svn-id: svn://10.0.0.236/trunk@263665 18797224-902f-48f8-a5cc-f745e15eee43
2012-04-11 12:59:36 +00:00
gerv%gerv.net
be9740d220 Bug 716563 - upgrade licence to MPL 2. r=rrelyea.
git-svn-id: svn://10.0.0.236/trunk@263588 18797224-902f-48f8-a5cc-f745e15eee43
2012-03-20 14:49:16 +00:00
kaie%kuix.de
3eb26a664c Bug 542832, again landing Brian Smith's test changes, same as before. Intention is to figure out if our tinderboxes are configured correctly.
git-svn-id: svn://10.0.0.236/trunk@263392 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-13 13:00:09 +00:00
kaie%kuix.de
0a5db5749f Bug 542832, backout the changes to tests, as an attempt to fix tinderbox orange.
git-svn-id: svn://10.0.0.236/trunk@263391 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-11 17:58:34 +00:00
kaie%kuix.de
7f0fbbdd65 Bug 542832 - SSL_RestartHandshakeAfterServerCert is broken, patch by Brian Smith, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@263388 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-11 13:27:07 +00:00
christophe.ravel.bugs%sun.com
9d743a69ca Bug 699605 - PKITS tests need to pass certdb password to crlutil command
r=christophe.

Committed on behalf of Thanigai.


git-svn-id: svn://10.0.0.236/trunk@263046 18797224-902f-48f8-a5cc-f745e15eee43
2011-11-03 22:58:05 +00:00
wtc%google.com
eb4bc9818e Bug 679524: fixed a typo in the previous checkin: nss_init => nss_Init.
git-svn-id: svn://10.0.0.236/trunk@262879 18797224-902f-48f8-a5cc-f745e15eee43
2011-09-16 01:19:17 +00:00
rrelyea%redhat.com
c27efb3701 bug 679424 -- creating a one time lock at init creates a new one-time leak.
git-svn-id: svn://10.0.0.236/trunk@262877 18797224-902f-48f8-a5cc-f745e15eee43
2011-09-15 22:47:24 +00:00
wtc%google.com
731bd799ab Bug 642503: Generic blacklisting mechanism for bogus certs (NSS trust
module), patch 2 part 2: revoke certs in libpkix and add test cases.  The
patch is written by Bob Relyea <rrelyea@redhat.com>.  r=wtc.
Modified Files:
	lib/certdb/certi.h lib/libpkix/include/pkix_pl_pki.h
	lib/libpkix/pkix/top/pkix_build.c
	lib/libpkix/pkix_pl_nss/pki/pkix_pl_cert.c tests/cert/cert.sh
	tests/common/init.sh


git-svn-id: svn://10.0.0.236/trunk@262874 18797224-902f-48f8-a5cc-f745e15eee43
2011-09-14 23:16:16 +00:00
wtc%google.com
613a840d29 Bug 668397: Remove all Fortezza support from lib/pkcs7, lib/smime, and
tests/ssl. The patch is written by Brian Smith <bsmith@mozilla.com>. r=wtc.
Modified Files:
	lib/pkcs7/p7decode.c lib/pkcs7/p7encode.c lib/pkcs7/p7local.c
	lib/pkcs7/p7local.h lib/pkcs7/pkcs7t.h lib/pkcs7/secmime.c
	lib/smime/cmsasn1.c lib/smime/cmsencode.c lib/smime/cmslocal.h
	lib/smime/cmspubkey.c lib/smime/cmsrecinfo.c
	lib/smime/cmssiginfo.c lib/smime/cmst.h lib/smime/smime.h
	lib/smime/smimeutil.c tests/ssl/sslcov.txt


git-svn-id: svn://10.0.0.236/trunk@262723 18797224-902f-48f8-a5cc-f745e15eee43
2011-08-21 01:14:19 +00:00
emaldona%redhat.com
44f2e32775 Fix Bug 6172051 - Add localizable error messages for NSS error codes, r=rrelyea
git-svn-id: svn://10.0.0.236/trunk@262711 18797224-902f-48f8-a5cc-f745e15eee43
2011-08-17 14:41:48 +00:00
rrelyea%redhat.com
bdf17876e6 Bug 642503 - Generic blacklisting mechanism for bogus certs (NSS trust module)
remove the 'prohibitted' bit (formerly called 'peer' bit) from the cert.

We've now turned on prohibited for email certs. (this will keep tinderbox green)


git-svn-id: svn://10.0.0.236/trunk@262485 18797224-902f-48f8-a5cc-f745e15eee43
2011-07-12 21:34:20 +00:00
kaie%kuix.de
0abd888ca6 Bug 647746, expired PayPal cert, only affects testing
git-svn-id: svn://10.0.0.236/trunk@262133 18797224-902f-48f8-a5cc-f745e15eee43
2011-04-04 22:14:36 +00:00
christophe.ravel.bugs%sun.com
b5c075406b Update instructions to generate the OCSP server certs.
git-svn-id: svn://10.0.0.236/trunk@262011 18797224-902f-48f8-a5cc-f745e15eee43
2011-03-07 19:05:37 +00:00
christophe.ravel.bugs%sun.com
47e584d916 Update OCSP cert with new domain name for the OCSP server.
git-svn-id: svn://10.0.0.236/trunk@262010 18797224-902f-48f8-a5cc-f745e15eee43
2011-03-07 19:01:59 +00:00
christophe.ravel.bugs%sun.com
1c49cfdbb5 Backing out the previous OCSP cert update. They don't seem to match exactly the certs used by the OCSP server.
git-svn-id: svn://10.0.0.236/trunk@261963 18797224-902f-48f8-a5cc-f745e15eee43
2011-02-22 21:41:31 +00:00