summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorDmitry Shachnev <mitya57@gmail.com>2023-12-08 14:15:43 +0300
committerDmitry Shachnev <mitya57@gmail.com>2023-12-09 14:29:00 +0300
commit61de9d2e7659aacd5044b6fb035b73aca8091473 (patch)
treee0e7d979ad7078654fa2ec97dff59e05d4000cda
parent1b0f4be5d8580e2f2033653f022a79e2fab805ac (diff)
Explain why our test certificates are valid only for 825 days
Change-Id: I2a6ec8c2ec7ad94d33701b0b496244bb3a3de33c Reviewed-by: Edward Welbourne <edward.welbourne@qt.io>
-rw-r--r--tests/auto/external_IODevice/cert/generate.sh2
1 files changed, 2 insertions, 0 deletions
diff --git a/tests/auto/external_IODevice/cert/generate.sh b/tests/auto/external_IODevice/cert/generate.sh
index cb344aa..4aabfab 100644
--- a/tests/auto/external_IODevice/cert/generate.sh
+++ b/tests/auto/external_IODevice/cert/generate.sh
@@ -16,6 +16,8 @@ genFiles () {
# Generate certificate-signing request
openssl req -new -key $stem.key -out $stem.csr -subj "/CN=127.0.0.1"
# Generate and sign the certificate
+ # Apple requires that TLS certificates have a validity period of at most 825 days:
+ # https://support.apple.com/en-us/103769
openssl x509 -req -in $stem.csr -out $stem.crt \
-CA rootCA.pem -CAkey rootCA.key -CAcreateserial -days 825 -sha256 "$@"
# Delete the signing request, no longer needed