Skip to content

Commit d0a9be7

Browse files
committed
Move CRL checks from internal storage to directory
1 parent 6d830e0 commit d0a9be7

File tree

17 files changed

+260
-40
lines changed

17 files changed

+260
-40
lines changed
Lines changed: 35 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,35 @@
1+
-----BEGIN CERTIFICATE-----
2+
MIIGEDCCA/igAwIBAgICEAIwDQYJKoZIhvcNAQELBQAwgY0xCzAJBgNVBAYTAkVF
3+
MREwDwYDVQQIDAhIYXJqdW1hYTEQMA4GA1UEBwwHVGFsbGlubjEjMCEGA1UECgwa
4+
RWVzdGkgSW50ZXJuZXRpIFNpaHRhc3V0dXMxEjAQBgNVBAMMCWxvY2FsaG9zdDEg
5+
MB4GCSqGSIb3DQEJARYRaGVsbG9AaW50ZXJuZXQuZWUwHhcNMjAwNzIxMDczODEy
6+
WhcNMzAwNzE5MDczODEyWjB8MQswCQYDVQQGEwJFRTERMA8GA1UECAwISGFyanVt
7+
YWExIzAhBgNVBAoMGkVlc3RpIEludGVybmV0aSBTaWh0YXN1dHVzMRMwEQYDVQQD
8+
DApsb2NhbGhvc3QzMSAwHgYJKoZIhvcNAQkBFhFoZWxsb0BpbnRlcm5ldC5lZTCC
9+
AiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAJ9WvaOOx8qB0/+zJ23hp9R2
10+
r6QUNMJWg3JDU2qJZuHZ19DWn47+fDjQORqmiFvNTDCp1EKskk4pykWEGtnwm7sn
11+
E2N9ovoNEmKfYkPiKHtweiHr0IoUsB9tZojSyaolGXxSLSXglXSp3zwB5v1boVOj
12+
7dEHxvK6QeLy/bYqzdVOsZEKcjz5UAjgnd4CfdS6IBW4Dgk1JMHZGMTFbrrVunB/
13+
No6FARisO+Aq11S3Ak9WyBoe2uUPS7RLdyy/EVGhbft6QE+ENc3gL7LHlQ2LjVUF
14+
2ISwG8ULl4f0A8tmyk3deD/SPGklQVG9M/1Yv7z5aTSB+1o03SPb4abJieY+RF3L
15+
zZO7oa7vzn52Z8gziNo5rMHX6Q+kLqkgnqRvR0Vk+qkbhsZHny68oFNZm8+TWqDW
16+
mZpMKR3vQEC19wfAuCxrBAC5XHLH/wY7kSng2PKUuRoACAsta9JmAnTeQtKFMj66
17+
wIe+nbr9Q03da3adVAOVRTrlsIuk/9vo5u4pOs2M+s5Q8kisI41Cm9EkNgmVAweY
18+
1LbyZXV1n/smzsHtjSkNco95dZtOVlAHW5GB7v1zj7Ensx96JMBvBq+0XCUMgCJX
19+
NYYvcB9YMLVfZuBaoe15wAx93utSefPgFHFYJ7/pjZMt088SbR9SCyNkYFOkNrdx
20+
abbntYS98CXFI4gB62rLAgMBAAGjgYkwgYYwCQYDVR0TBAIwADALBgNVHQ8EBAMC
21+
BeAwLAYJYIZIAYb4QgENBB8WHU9wZW5TU0wgR2VuZXJhdGVkIENlcnRpZmljYXRl
22+
MB0GA1UdDgQWBBQuphYluIrOLAaufOBOUUa3jqI/hzAfBgNVHSMEGDAWgBQrl0tO
23+
QaRq54QX5qF/OeLWzWZT9TANBgkqhkiG9w0BAQsFAAOCAgEAdTAqjYLbIBHOvcDW
24+
x1twozGlmtlob20TrmLaHq4jdv2azIcUK5RZukTaI2wbUWeDRmBe91m4m70KiEDp
25+
ToS1l6pJLzPl6y8Uh7yWRjpaMFnEOMMqYI5HoiBzSPC8JAp+JqKlb3Y0jU5/hOIt
26+
eT9C31tzuazShpdM1QR8H1SNT301hAlqIoy9gnCCfbaSg3qYciHUj/tMLvHUhAVy
27+
IFeceLPl+38zxxk2YD6Ed5YhUqeuIR/2ZViPBaLfPvPw4rIqEu0MkPM9TxJ45+xF
28+
OX+esXExCb+EoG6ZHjup3Re5kevxYAo3QKU+xbYCFlTTEv/UgHIyajCk8x1/flhC
29+
CZmfQVF/C9Lpv35MfaDWkzQ2zVcdQGoH8Q0mELpYgoN8npb33mahVP8qxqWHzAdT
30+
o99CZMuUhVsbEtgDsZjxp6CrRDL8X99dxVEWwDwXzY3RgKuxLhCAUH7bhg0+ul0L
31+
xGId9GjHqX46/bN9UCOtrFh8eJlGnFw6I2shNiPauV2CW4SOi/Awzjm2lAN0KFXX
32+
iuGzVH9jVDtiGeLreGehXKByyjX3Zrwv3eMkhF+aJUuin/i5APRe4OWBGp4sfDra
33+
MlFPI+JKDO5011RGgIB75PiqnRIDUtGe8ybjjXlGdnJ7WPW1YfygWXGCVkH19Iyt
34+
aMmvcKiYLxhrpUFiSXj78qBN/Pw=
35+
-----END CERTIFICATE-----
Lines changed: 20 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,20 @@
1+
-----BEGIN X509 CRL-----
2+
MIIDNjCCAR4CAQEwDQYJKoZIhvcNAQELBQAwgY0xCzAJBgNVBAYTAkVFMREwDwYD
3+
VQQIDAhIYXJqdW1hYTEQMA4GA1UEBwwHVGFsbGlubjEjMCEGA1UECgwaRWVzdGkg
4+
SW50ZXJuZXRpIFNpaHRhc3V0dXMxEjAQBgNVBAMMCWxvY2FsaG9zdDEgMB4GCSqG
5+
SIb3DQEJARYRaGVsbG9AaW50ZXJuZXQuZWUXDTIwMDcyMTA3MzgyOFoXDTMwMDcx
6+
OTA3MzgyOFowKjATAgIQARcNMjAwNzE3MTExMjAyWjATAgIQAhcNMjAwNzIxMDcz
7+
ODIyWqAwMC4wHwYDVR0jBBgwFoAUK5dLTkGkaueEF+ahfzni1s1mU/UwCwYDVR0U
8+
BAQCAhABMA0GCSqGSIb3DQEBCwUAA4ICAQAfqwrQHPHnj/QDS2zIlEn3YxfpCnla
9+
x3oaqryp8NRFwj49xkvH2gKrZlLj0yjO3mw0ZJXAsGbADIdqm8nVkFLg+2DyIXlp
10+
nvF9xpXk5sCMqXggcvm1qWXr76xgoq7DMRNw6usynej5ez1xWlPwcVunjJIUKk+x
11+
IM/9l6FyJpeuRv3xWlXdBGLz/WtH0+ycS/Ekl03fsMNaI4ZTefTt3tvORiK5apT8
12+
4oVnjEWneGfDFfIdj/N/wFphGwxLqo9RuITzupqg/RrXbe1/Z06V7TDPhXMGQyZx
13+
xM8kw4Cikj+VeQw/5nKWeuYD8/wnbex9XFK797HFjG+ReOGaPgFHu/A9ux35FM+6
14+
hXL1AS1Dv/04U5Siu8i9TatFUEgaLn0VAPoarPiy6kaa9wEne9dJ6C+LlQVxPQsr
15+
Yhjpp9DRtbmvJxuWredmI7sPmIcLdbpRu7gyxQYgFsQT7dcRCGgPR+viIfOkiquq
16+
dx2mhV4mHZxSLegXsLZ2X7bqXgb04YSBKxfRxfWizQfEJLonW+VI8enKh210Aw4R
17+
rch+igPxLHrZKBG/QcRzLI1wh5fZwW4ML5b4dMnJeDv7/8AfJufTtmpYg/AXAI80
18+
6SJsbHxJ242e3zzmO7FQ7aUz+Y24zrNsdtJvdTgEB0TTzrSfAJZoeZ6y8YCm4pyw
19+
pJeV6jyetNaivw==
20+
-----END X509 CRL-----
Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
crl.pem
Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
crl2.pem
Lines changed: 19 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,19 @@
1+
-----BEGIN X509 CRL-----
2+
MIIDITCCAQkCAQEwDQYJKoZIhvcNAQELBQAwgY0xCzAJBgNVBAYTAkVFMREwDwYD
3+
VQQIDAhIYXJqdW1hYTEQMA4GA1UEBwwHVGFsbGlubjEjMCEGA1UECgwaRWVzdGkg
4+
SW50ZXJuZXRpIFNpaHRhc3V0dXMxEjAQBgNVBAMMCWxvY2FsaG9zdDEgMB4GCSqG
5+
SIb3DQEJARYRaGVsbG9AaW50ZXJuZXQuZWUXDTIwMDcxNzExMTIwOVoXDTMwMDcx
6+
NTExMTIwOVowFTATAgIQARcNMjAwNzE3MTExMjAyWqAwMC4wHwYDVR0jBBgwFoAU
7+
K5dLTkGkaueEF+ahfzni1s1mU/UwCwYDVR0UBAQCAhAAMA0GCSqGSIb3DQEBCwUA
8+
A4ICAQA8EGqpuVnqlM04otgIoFPDYGqYhv7wTCQFx3iIS5KgEh2E96iHACVi3Q6m
9+
5RmYv1LIrcrrY9GGW8Vgv4lOyPOzpGawCWfrnhGABe5nE5MG591O2X2CQmCjZmL7
10+
ga0ZPRzHfXTs9XTxBFslcmUXQipy2/sG623Db7/OIZQio7c9F6zfC6cb8ebVxpPD
11+
nstrMOtzpU/nJqytT5KiBeA5Kr2zJqmpwvqZKzRmrM4gFQBtuy2x2qXbjr+CfSIA
12+
DDpkE/Q90aRNqZ1dGvMl+GvOqabndoTlUBwBkRt5SkxXDNiYfLaj3y6CiMR3TAVV
13+
W0pryjUXJ/s2VVCnqSsC2y7jCMSQk7dkcjOlmIJidoJTyqwrAnRptKoLEBp24qe+
14+
o8DCaWW4jcQSwCgZK3M5YxvOfugZ1I91zuK9HIIRZNJhANiKuzPi+4uwK1JxOzY4
15+
uI/9Q7bkhDrPSea9b3vdsO+5kfdjnxx/21mVSLqsllm8Gnl2cA80IBXSYOB9JTTV
16+
5vn0+QAW1GrRH5VzmVo/lTW+qj73EfejLy/g6s+I5W9dQcQl9IRerDR90mXsE1ll
17+
MPRQQHxNERtHDg2Rg8flwYl5gE3e7OO2xKlr1jyI1F9QSTsQHQQJCpOJsevJzIkO
18+
jJ+LfUfVcjp+uxa/KOulfgBi13Lco1Yfn9oEgIMPd+zUQvL9HQ==
19+
-----END X509 CRL-----
Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
crl.pem
Lines changed: 20 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,20 @@
1+
-----BEGIN X509 CRL-----
2+
MIIDNjCCAR4CAQEwDQYJKoZIhvcNAQELBQAwgY0xCzAJBgNVBAYTAkVFMREwDwYD
3+
VQQIDAhIYXJqdW1hYTEQMA4GA1UEBwwHVGFsbGlubjEjMCEGA1UECgwaRWVzdGkg
4+
SW50ZXJuZXRpIFNpaHRhc3V0dXMxEjAQBgNVBAMMCWxvY2FsaG9zdDEgMB4GCSqG
5+
SIb3DQEJARYRaGVsbG9AaW50ZXJuZXQuZWUXDTIwMDcyMTA3MzgyOFoXDTMwMDcx
6+
OTA3MzgyOFowKjATAgIQARcNMjAwNzE3MTExMjAyWjATAgIQAhcNMjAwNzIxMDcz
7+
ODIyWqAwMC4wHwYDVR0jBBgwFoAUK5dLTkGkaueEF+ahfzni1s1mU/UwCwYDVR0U
8+
BAQCAhABMA0GCSqGSIb3DQEBCwUAA4ICAQAfqwrQHPHnj/QDS2zIlEn3YxfpCnla
9+
x3oaqryp8NRFwj49xkvH2gKrZlLj0yjO3mw0ZJXAsGbADIdqm8nVkFLg+2DyIXlp
10+
nvF9xpXk5sCMqXggcvm1qWXr76xgoq7DMRNw6usynej5ez1xWlPwcVunjJIUKk+x
11+
IM/9l6FyJpeuRv3xWlXdBGLz/WtH0+ycS/Ekl03fsMNaI4ZTefTt3tvORiK5apT8
12+
4oVnjEWneGfDFfIdj/N/wFphGwxLqo9RuITzupqg/RrXbe1/Z06V7TDPhXMGQyZx
13+
xM8kw4Cikj+VeQw/5nKWeuYD8/wnbex9XFK797HFjG+ReOGaPgFHu/A9ux35FM+6
14+
hXL1AS1Dv/04U5Siu8i9TatFUEgaLn0VAPoarPiy6kaa9wEne9dJ6C+LlQVxPQsr
15+
Yhjpp9DRtbmvJxuWredmI7sPmIcLdbpRu7gyxQYgFsQT7dcRCGgPR+viIfOkiquq
16+
dx2mhV4mHZxSLegXsLZ2X7bqXgb04YSBKxfRxfWizQfEJLonW+VI8enKh210Aw4R
17+
rch+igPxLHrZKBG/QcRzLI1wh5fZwW4ML5b4dMnJeDv7/8AfJufTtmpYg/AXAI80
18+
6SJsbHxJ242e3zzmO7FQ7aUz+Y24zrNsdtJvdTgEB0TTzrSfAJZoeZ6y8YCm4pyw
19+
pJeV6jyetNaivw==
20+
-----END X509 CRL-----
Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
crl2.pem
Lines changed: 28 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,28 @@
1+
-----BEGIN CERTIFICATE REQUEST-----
2+
MIIE1DCCArwCAQAwgY4xCzAJBgNVBAYTAkVFMREwDwYDVQQIDAhIYXJqdW1hYTEQ
3+
MA4GA1UEBwwHVGFsbGlubjEjMCEGA1UECgwaRWVzdGkgSW50ZXJuZXRpIFNpaHRh
4+
c3V0dXMxEzARBgNVBAMMCmxvY2FsaG9zdDMxIDAeBgkqhkiG9w0BCQEWEWhlbGxv
5+
QGludGVybmV0LmVlMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAn1a9
6+
o47HyoHT/7MnbeGn1HavpBQ0wlaDckNTaolm4dnX0Nafjv58ONA5GqaIW81MMKnU
7+
QqySTinKRYQa2fCbuycTY32i+g0SYp9iQ+Ioe3B6IevQihSwH21miNLJqiUZfFIt
8+
JeCVdKnfPAHm/VuhU6Pt0QfG8rpB4vL9tirN1U6xkQpyPPlQCOCd3gJ91LogFbgO
9+
CTUkwdkYxMVuutW6cH82joUBGKw74CrXVLcCT1bIGh7a5Q9LtEt3LL8RUaFt+3pA
10+
T4Q1zeAvsseVDYuNVQXYhLAbxQuXh/QDy2bKTd14P9I8aSVBUb0z/Vi/vPlpNIH7
11+
WjTdI9vhpsmJ5j5EXcvNk7uhru/OfnZnyDOI2jmswdfpD6QuqSCepG9HRWT6qRuG
12+
xkefLrygU1mbz5NaoNaZmkwpHe9AQLX3B8C4LGsEALlccsf/BjuRKeDY8pS5GgAI
13+
Cy1r0mYCdN5C0oUyPrrAh76duv1DTd1rdp1UA5VFOuWwi6T/2+jm7ik6zYz6zlDy
14+
SKwjjUKb0SQ2CZUDB5jUtvJldXWf+ybOwe2NKQ1yj3l1m05WUAdbkYHu/XOPsSez
15+
H3okwG8Gr7RcJQyAIlc1hi9wH1gwtV9m4Fqh7XnADH3e61J58+AUcVgnv+mNky3T
16+
zxJtH1ILI2RgU6Q2t3Fptue1hL3wJcUjiAHrassCAwEAAaAAMA0GCSqGSIb3DQEB
17+
CwUAA4ICAQApchMGYc4YX8s67DrFX0xZkP/ofRpq3OPrWvAGHtsWEUGvy/ItzCSc
18+
OxUNMlrE3f+eOGObZFllS2T+KFEeE+V54wVDIj7OtNup9Np0M2keIu5A5nVEOYiN
19+
fjFjM/NyeKbWwtLzUJitbhxWGXR1WLGCM98k3qF40siCBvsIGINUx7N9g1c/VmaA
20+
//Pifihlm7gvfBuiYHCU8mOuxQs2JMYfdh/MJ3fo8iqGY7dfY+aH7Cx3y1WCbR7v
21+
54RNJylGXTapI81bRe5AHIFQohzUf3LzHS7EeBSMzEMOmEXhAoy4MJk9uI27L96E
22+
2hYIr20Xza43dq2JWQKgshl5FDtcGrVD6JMg1+/mDaZCxVENrDelRXD7TaAUo8Sh
23+
BPHixdsjNzxWaE8njhDilZ4xY8id3UHRtCtK6TRrmbvuiUoD+VWu7SW7ZLXmnHLq
24+
5OIcZv40gMKiBJOQuvgChM3h0hxuH11elFChk7CyzyUU/xa4qzvdkFFMrVOaO41p
25+
jtVLppMIdA34XFqmxufZoi5UsjZqQKaOG8uVKYbLCQks0mLYfhs8ArFugsVu6jdl
26+
sXMp3tDrSukNZOrgoS5SenJ1nNew17hSr+hH1n6I4cccsg39izRNGUF7mHyib713
27+
ugaNnZFBeZ29W71dvJtnLa+sNISjGVbbBwDQ4P+1kCNokGhifoVPgA==
28+
-----END CERTIFICATE REQUEST-----

apps/epp_proxy/priv/test_ca/generate_certificates.sh

Lines changed: 7 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -11,5 +11,12 @@ openssl ca -config openssl.cnf -keyfile private/ca.key.pem -cert certs/ca.crt.pe
1111

1212
openssl ca -config openssl.cnf -keyfile private/ca.key.pem -cert certs/ca.crt.pem -crldays 3650 -gencrl -out crl/crl.pem
1313

14+
openssl genrsa -out private/revoked2.key.pem 4096
15+
openssl req -sha256 -config openssl.cnf -new -days 3650 -key private/revoked2.key.pem -out csrs/revoked2.csr.pem
16+
openssl ca -config openssl.cnf -keyfile private/ca.key.pem -cert certs/ca.crt.pem -extensions usr_cert -notext -md sha256 -in csrs/revoked2.csr.pem -days 3650 -out certs/revoked2.crt.pem
17+
openssl ca -config openssl.cnf -keyfile private/ca.key.pem -cert certs/ca.crt.pem -revoke certs/revoked2.crt.pem
18+
19+
openssl ca -config openssl.cnf -keyfile private/ca.key.pem -cert certs/ca.crt.pem -crldays 3650 -gencrl -out crl/crl2.pem
20+
1421
openssl req -config openssl.cnf -new -sha256 -nodes -out server.csr -newkey rsa:2048 -keyout private/apache.key -config server.csr.cnf
1522
openssl x509 -req -in server.csr -CA certs/ca.crt.pem -CAkey private/ca.key.pem -CAcreateserial -out certs/apache.crt -days 3650 -sha256 -extfile v3.ext

0 commit comments

Comments
 (0)