diff options
author | Jay Satiro <raysatiro@yahoo.com> | 2016-01-18 03:10:10 -0500 |
---|---|---|
committer | Jay Satiro <raysatiro@yahoo.com> | 2016-01-18 03:10:10 -0500 |
commit | d56637113092ebc6721601812510ef5e3e5126e4 (patch) | |
tree | d2e22abbe342dab8fdd19e7bd90c83c3820deb48 /tests/data/test2048 | |
parent | 1074cca8cd420eddf724e6e0b40e60e6a080ada1 (diff) |
tests: Add a test for pinnedpubkey fail even when insecure
Because disabling the peer verification (--insecure) must not disable
the public key pinning check (--pinnedpubkey).
Diffstat (limited to 'tests/data/test2048')
-rw-r--r-- | tests/data/test2048 | 40 |
1 files changed, 40 insertions, 0 deletions
diff --git a/tests/data/test2048 b/tests/data/test2048 new file mode 100644 index 000000000..eb2b1df75 --- /dev/null +++ b/tests/data/test2048 @@ -0,0 +1,40 @@ +<testcase> +<info> +<keywords> +HTTPS +HTTP GET +PEM certificate +</keywords> +</info> + +# +# Server-side +<reply> +</reply> + +# +# Client-side +<client> +<features> +SSL +SSLpinning +</features> +<server> +https Server-localhost-sv.pem +</server> +<name> +pinnedpubkey no-match must fail even when insecure +</name> +<command> +--insecure --cacert %SRCDIR/certs/EdelCurlRoot-ca.crt --pinnedpubkey %SRCDIR/certs/Server-localhost.nn-sv.pub.der https://localhost:%HTTPSPORT/2034 +</command> +</client> + +# +# Verify data after the test has been "shot" +<verify> +<errorcode> +90 +</errorcode> +</verify> +</testcase> |