wolfssl/certs
Anthony Hu 82a900b438 Initial commit to add Dilithium NIST PQC winner.
Also:

* added HAVE_FALCON guards as needed.
* corrected minor falcon bugs as I found them.
* handling OID sum collision between DILITHIUM_LEVEL5 and DILITHIUM_AES_LEVEL3

Tested with the following commands:

examples/server/server -v 4 -l TLS_AES_256_GCM_SHA384 \
    -c ~/tmp/dilithium_aes_level5_entity_cert.pem \
    -k ~/tmp/dilithium_aes_level5_entity_key.pem \
    -A ~/tmp/dilithium_aes_level5_root_cert.pem --pqc P521_KYBER_LEVEL5

examples/client/client -v 4 -l TLS_AES_256_GCM_SHA384 \
    -c ~/tmp/dilithium_aes_level5_entity_cert.pem \
    -k ~/tmp/dilithium_aes_level5_entity_key.pem \
    -A ~/tmp/dilithium_aes_level5_root_cert.pem --pqc P521_KYBER_LEVEL5

with permutations of SHAKE,AES variants and levels 2,3,5
2022-08-11 11:38:31 -04:00
..
1024 Add cert test for UID name component 2022-02-15 14:05:46 +01:00
3072 Add cert test for UID name component 2022-02-15 14:05:46 +01:00
4096 Add cert test for UID name component 2022-02-15 14:05:46 +01:00
crl Add cert test for UID name component 2022-02-15 14:05:46 +01:00
dilithium Initial commit to add Dilithium NIST PQC winner. 2022-08-11 11:38:31 -04:00
ecc script cleanup: use #!/bin/bash on all scripts that use "echo -e" (/bin/sh is sometimes a non-Bourne/non-POSIX shell, e.g. dash/ash, with no support for "echo -e"); fix whitespace. 2022-03-09 12:28:22 -06:00
ed448 Add cert test for UID name component 2022-02-15 14:05:46 +01:00
ed25519 Add cert test for UID name component 2022-02-15 14:05:46 +01:00
external Put both `DigiCert Global Root CA` and `GlobalSign Root CA` into the Google CA list. Fixes `--enable-dtls --enable-ocsp` ./scripts/ocsp.test`. 2021-12-20 11:47:34 -08:00
falcon include.am 2021-11-10 18:01:40 -05:00
intermediate global fixes for shellcheck warnings SC2027, SC2069, SC2154, SC2141, SC3014, SC3037 (all true positives). note, does not fix SC2057 in ocsp-stapling.test, which is addressed by PR #5174 . 2022-05-24 12:13:14 -05:00
ocsp Add cert test for UID name component 2022-02-15 14:05:46 +01:00
p521 Add cert test for UID name component 2022-02-15 14:05:46 +01:00
renewcerts add UPN other name parsing and updating skip 2022-06-09 21:32:55 -06:00
rsapss Certs with RSA-PSS sig 2022-08-11 09:43:01 +10:00
statickeys
test script cleanup: use #!/bin/bash on all scripts that use "echo -e" (/bin/sh is sometimes a non-Bourne/non-POSIX shell, e.g. dash/ash, with no support for "echo -e"); fix whitespace. 2022-03-09 12:28:22 -06:00
test-pathlen script cleanup: use #!/bin/bash on all scripts that use "echo -e" (/bin/sh is sometimes a non-Bourne/non-POSIX shell, e.g. dash/ash, with no support for "echo -e"); fix whitespace. 2022-03-09 12:28:22 -06:00
ca-cert-chain.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
ca-cert.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
ca-cert.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
ca-ecc-cert.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
ca-ecc-cert.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
ca-ecc-key.der
ca-ecc-key.pem
ca-ecc384-cert.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
ca-ecc384-cert.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
ca-ecc384-key.der
ca-ecc384-key.pem
ca-key.der
ca-key.pem
check_dates.sh
client-ca.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
client-cert-ext.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
client-cert-ext.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
client-cert.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
client-cert.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
client-crl-dist.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
client-crl-dist.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
client-ecc-cert.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
client-ecc-cert.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
client-ecc384-cert.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
client-ecc384-cert.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
client-ecc384-key.der
client-ecc384-key.pem
client-key.der
client-key.pem
client-keyEnc.pem
client-keyPub.der
client-keyPub.pem
client-relative-uri.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
client-uri-cert.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
csr.attr.der
csr.dsa.pem
csr.ext.der
csr.signed.der
dh-pubkey-2048.der
dh2048.der
dh2048.pem
dh3072.der
dh3072.pem
dh4096.der
dh4096.pem
dsa-pubkey-2048.der
dsa2048.der
dsa3072.der
dsaparams.der
dsaparams.pem
ecc-client-key.der
ecc-client-key.pem
ecc-client-keyPub.der
ecc-client-keyPub.pem
ecc-key-comp.pem
ecc-key.der
ecc-key.pem
ecc-keyPkcs8.der
ecc-keyPkcs8.pem
ecc-keyPkcs8Enc.der
ecc-keyPkcs8Enc.pem
ecc-keyPub.der
ecc-keyPub.pem
ecc-privOnlyCert.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
ecc-privOnlyKey.pem
ecc-privkey.pem
ecc-privkeyPkcs8.der
ecc-privkeyPkcs8.pem
ecc-rsa-server.p12 Add cert test for UID name component 2022-02-15 14:05:46 +01:00
entity-no-ca-bool-cert.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
entity-no-ca-bool-key.pem
fpki-cert.der add UPN other name parsing and updating skip 2022-06-09 21:32:55 -06:00
gen_revoked.sh script cleanup: use #!/bin/bash on all scripts that use "echo -e" (/bin/sh is sometimes a non-Bourne/non-POSIX shell, e.g. dash/ash, with no support for "echo -e"); fix whitespace. 2022-03-09 12:28:22 -06:00
include.am Initial commit to add Dilithium NIST PQC winner. 2022-08-11 11:38:31 -04:00
renewcerts.sh Certs with RSA-PSS sig 2022-08-11 09:43:01 +10:00
rsa-pub-2048.pem
rsa2048.der
rsa3072.der
server-cert-chain.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-cert.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-cert.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-ecc-comp.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-ecc-comp.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-ecc-rsa.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-ecc-rsa.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-ecc-self.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-ecc-self.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-ecc.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-ecc.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-ecc384-cert.der Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-ecc384-cert.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-ecc384-key.der
server-ecc384-key.pem
server-key.der
server-key.pem
server-keyEnc.pem
server-keyPkcs8.der
server-keyPkcs8.pem
server-keyPkcs8Enc.der
server-keyPkcs8Enc.pem
server-keyPkcs8Enc2.pem
server-keyPkcs8Enc12.pem
server-keyPub.pem
server-revoked-cert.pem Add cert test for UID name component 2022-02-15 14:05:46 +01:00
server-revoked-key.pem
taoCert.txt
test-ber-exp02-05-2022.p7b
test-degenerate.p7b Add cert test for UID name component 2022-02-15 14:05:46 +01:00
test-servercert-rc2.p12 Add cert test for UID name component 2022-02-15 14:05:46 +01:00
test-servercert.p12 Add cert test for UID name component 2022-02-15 14:05:46 +01:00
wolfssl-website-ca.pem
x942dh2048.pem