mirror of
https://github.com/zeek/zeek.git
synced 2025-10-02 14:48:21 +00:00
![]() This is much more complex than the TLS Extension/OCSP cases. We need to first alter the certificate and remove the extension from it, before extracting the tbscert. Furthermore, we need the key hash of the issuing certificate to be able to validate the proof - which means that we need a valid certificate chain. Missing: documentation, nice integration so that we can just add a script and use this in Bro. |
||
---|---|---|
.. | ||
expiring-certs.bro | ||
extract-certs-pem.bro | ||
heartbleed.bro | ||
known-certs.bro | ||
log-hostcerts-only.bro | ||
notary.bro | ||
ocsp-stapling.bro | ||
validate-certs.bro | ||
validate-ocsp.bro | ||
weak-keys.bro |