Show More
@@ -1,41 +1,46 b'' | |||
|
1 | 1 | #!/usr/bin/env python |
|
2 | import sys | |
|
3 | try: | |
|
4 | import ssl | |
|
5 | except ImportError: | |
|
6 | sys.exit(80) | |
|
2 | 7 | |
|
3 | 8 | def check(a, b): |
|
4 | 9 | if a != b: |
|
5 | 10 | print (a, b) |
|
6 | 11 | |
|
7 | 12 | from mercurial.url import _verifycert |
|
8 | 13 | |
|
9 | 14 | # Test non-wildcard certificates |
|
10 | 15 | check(_verifycert({'subject': ((('commonName', 'example.com'),),)}, 'example.com'), |
|
11 | 16 | None) |
|
12 | 17 | check(_verifycert({'subject': ((('commonName', 'example.com'),),)}, 'www.example.com'), |
|
13 | 18 | 'certificate is for example.com') |
|
14 | 19 | check(_verifycert({'subject': ((('commonName', 'www.example.com'),),)}, 'example.com'), |
|
15 | 20 | 'certificate is for www.example.com') |
|
16 | 21 | |
|
17 | 22 | # Test wildcard certificates |
|
18 | 23 | check(_verifycert({'subject': ((('commonName', '*.example.com'),),)}, 'www.example.com'), |
|
19 | 24 | None) |
|
20 | 25 | check(_verifycert({'subject': ((('commonName', '*.example.com'),),)}, 'example.com'), |
|
21 | 26 | 'certificate is for *.example.com') |
|
22 | 27 | check(_verifycert({'subject': ((('commonName', '*.example.com'),),)}, 'w.w.example.com'), |
|
23 | 28 | 'certificate is for *.example.com') |
|
24 | 29 | |
|
25 | 30 | # Avoid some pitfalls |
|
26 | 31 | check(_verifycert({'subject': ((('commonName', '*.foo'),),)}, 'foo'), |
|
27 | 32 | 'certificate is for *.foo') |
|
28 | 33 | check(_verifycert({'subject': ((('commonName', '*o'),),)}, 'foo'), |
|
29 | 34 | 'certificate is for *o') |
|
30 | 35 | |
|
31 | 36 | import time |
|
32 | 37 | lastyear = time.gmtime().tm_year - 1 |
|
33 | 38 | nextyear = time.gmtime().tm_year + 1 |
|
34 | 39 | check(_verifycert({'notAfter': 'May 9 00:00:00 %s GMT' % lastyear}, 'example.com'), |
|
35 | 40 | 'certificate expired May 9 00:00:00 %s GMT' % lastyear) |
|
36 | 41 | check(_verifycert({'notBefore': 'May 9 00:00:00 %s GMT' % nextyear}, 'example.com'), |
|
37 | 42 | 'certificate not valid before May 9 00:00:00 %s GMT' % nextyear) |
|
38 | 43 | check(_verifycert({'notAfter': 'Sep 29 15:29:48 %s GMT' % nextyear, 'subject': ()}, 'example.com'), |
|
39 | 44 | 'no commonName found in certificate') |
|
40 | 45 | check(_verifycert(None, 'example.com'), |
|
41 | 46 | 'no certificate received') |
General Comments 0
You need to be logged in to leave comments.
Login now