1 // Copyright (c) 2012 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file.
5 #ifndef NET_TEST_CERT_TEST_UTIL_H_
6 #define NET_TEST_CERT_TEST_UTIL_H_
10 #include "base/memory/ref_counted.h"
11 #include "net/cert/x509_cert_types.h"
12 #include "net/cert/x509_certificate.h"
15 #include "base/memory/scoped_ptr.h"
18 typedef struct PK11SlotInfoStr PK11SlotInfo
;
31 class EVRootCAMetadata
;
34 // Imports a private key from file |key_filename| in |dir|. The file must
35 // contain a PKCS#8 PrivateKeyInfo in DER encoding. The key is imported to
37 scoped_ptr
<crypto::RSAPrivateKey
> ImportSensitiveKeyFromFile(
38 const base::FilePath
& dir
,
39 const std::string
& key_filename
,
43 // Imports all of the certificates in |cert_file|, a file in |certs_dir|, into a
45 CertificateList
CreateCertificateListFromFile(const base::FilePath
& certs_dir
,
46 const std::string
& cert_file
,
49 // Imports all of the certificates in |cert_file|, a file in |certs_dir|, into
50 // a new X509Certificate. The first certificate in the chain will be used for
51 // the returned cert, with any additional certificates configured as
52 // intermediate certificates.
53 scoped_refptr
<X509Certificate
> CreateCertificateChainFromFile(
54 const base::FilePath
& certs_dir
,
55 const std::string
& cert_file
,
58 // Imports a single certificate from |cert_file|.
59 // |certs_dir| represents the test certificates directory. |cert_file| is the
60 // name of the certificate file. If cert_file contains multiple certificates,
61 // the first certificate found will be returned.
62 scoped_refptr
<X509Certificate
> ImportCertFromFile(const base::FilePath
& certs_dir
,
63 const std::string
& cert_file
);
65 // ScopedTestEVPolicy causes certificates marked with |policy|, issued from a
66 // root with the given fingerprint, to be treated as EV. |policy| is expressed
67 // as a string of dotted numbers: i.e. "1.2.3.4".
68 // This should only be used in unittests as adding a CA twice causes a CHECK
70 class ScopedTestEVPolicy
{
72 ScopedTestEVPolicy(EVRootCAMetadata
* ev_root_ca_metadata
,
73 const SHA1HashValue
& fingerprint
,
75 ~ScopedTestEVPolicy();
78 SHA1HashValue fingerprint_
;
79 EVRootCAMetadata
* const ev_root_ca_metadata_
;
84 #endif // NET_TEST_CERT_TEST_UTIL_H_