summaryrefslogtreecommitdiffstats
path: root/tests/auto/network/ssl/qsslcertificate/verify-certs/README
diff options
context:
space:
mode:
authorTimur Pocheptsov <timur.pocheptsov@qt.io>2021-08-06 07:47:06 +0200
committerJukka Jokiniva <jukka.jokiniva@qt.io>2022-04-25 06:01:23 +0000
commitffdd372c7bbda62e9d937f406319f38e3e982774 (patch)
treeae26983c6082621847b4b35b17e678683ee4ceab /tests/auto/network/ssl/qsslcertificate/verify-certs/README
parente89a6f03c4d24f18db36a906a7320035388504ba (diff)
tst_QSslCertificate::verify - remove QSKIPv5.15.4-lts-lgpl
And re-generate certificates. Fixes: QTBUG-95429 Change-Id: Id970a0a9315d146d6dd1e66c9cff9b7d75657e2d Reviewed-by: MÃ¥rten Nordheim <marten.nordheim@qt.io> (cherry picked from commit e7ab17ade170a8fbc5061fffe5334b26cdc54ed3) (cherry picked from commit f0107abea31c9a046ea3827b6b70c5056195bfe2) Reviewed-by: Timur Pocheptsov <timur.pocheptsov@qt.io>
Diffstat (limited to 'tests/auto/network/ssl/qsslcertificate/verify-certs/README')
-rw-r--r--tests/auto/network/ssl/qsslcertificate/verify-certs/README7
1 files changed, 7 insertions, 0 deletions
diff --git a/tests/auto/network/ssl/qsslcertificate/verify-certs/README b/tests/auto/network/ssl/qsslcertificate/verify-certs/README
index 87cb293ef6..f4317331b6 100644
--- a/tests/auto/network/ssl/qsslcertificate/verify-certs/README
+++ b/tests/auto/network/ssl/qsslcertificate/verify-certs/README
@@ -1,2 +1,9 @@
openssl verify -CAfile cacert.pem -untrusted test-intermediate-ca-cert.pem test-intermediate-is-ca-cert.pem
openssl verify -CAfile cacert.pem -untrusted test-ocsp-good-cert.pem test-intermediate-not-ca-cert.pem
+
+1. cacert.pem is, obviously, a root CA certificate.
+2. test-intermediate-ca-cert.pem is a certificate, signed by the root CA, an intermediate CA.
+3. test-intermediate-is-ca-cert.pem is a certificate, signed by test-intermediate-ca-cert.pem.
+4. test-ocsp-good-cert.pem is signed by root CA, it has CA:FALSE but keyUsage allowing to sign
+ CSRs - this is how OpenSSL would report us 'invalid CA certificate' instead of 'No issuer found'.
+5. test-intermediate-not-ca-cert.pem is signed by test-ocsp-good-cert.pem.