zeek/testing/btest/scripts/policy/protocols/ssl
Johanna Amann 8f1cbb8b0a Fix ocsp reply validation - there were a few things that definitely were wrong.
Now the right signer certificate for the reply is looked up (and no longer assumed that it is the first one) and a few compares are fixed. Plus - there are more test cases that partially send certificates in the ocsp message and partially do not - and it seems to work fine in all cases.

Addresses BIT-1212
2014-09-04 12:22:55 -07:00
..
expiring-certs.bro Finishing touches of the x509 file analyzer. 2014-03-13 15:21:30 -07:00
extract-certs-pem.bro Finishing touches of the x509 file analyzer. 2014-03-13 15:21:30 -07:00
heartbleed.bro Add new features from other branch to the heartbleed-detector (and clean them up). 2014-05-14 15:42:27 -07:00
known-certs.bro Finishing touches of the x509 file analyzer. 2014-03-13 15:21:30 -07:00
log-hostcerts-only.bro Add policy script to suppress non host-certificate logging in x509.log 2014-03-19 21:32:01 -07:00
validate-certs.bro Finishing touches of the x509 file analyzer. 2014-03-13 15:21:30 -07:00
validate-ocsp.bro Fix ocsp reply validation - there were a few things that definitely were wrong. 2014-09-04 12:22:55 -07:00
weak-keys.bro Polish changes for ecdhe/dhe 2014-04-27 00:15:49 -07:00