gecko-dev/security/certverifier
Dana Keeler e2267a307d Bug 1735386 - adjust revocation checking for EV certificate intermediates to match Baseline Requirements r=jschanck
The Baseline Requirements no longer require an OCSP URI for EV certificate
intermediates. Since OneCRL covers intermediates anyways, OCSP checking for
intermediates can be skipped entirely.

Differential Revision: https://phabricator.services.mozilla.com/D142369
2022-03-30 01:35:26 +00:00
..
tests/gtest Bug 1713602 - Use NSS only on the socket thread in NSSCertDBTrustDomain::IsChainValid r=keeler 2021-08-14 02:11:30 +00:00
BRNameMatchingPolicy.cpp
BRNameMatchingPolicy.h
CRLiteTimestamp.h Bug 1747320 - Only query CRLite on covered certificates. r=keeler 2022-01-20 18:09:24 +00:00
CertVerifier.cpp Bug 1747320 - Only query CRLite on covered certificates. r=keeler 2022-01-20 18:09:24 +00:00
CertVerifier.h Bug 1753071 - Add a "confirm revocations" mode to CRLite. r=keeler 2022-02-14 18:55:21 +00:00
ExtendedValidation.cpp Bug 1754896 - Enable EV Treatment for D-TRUST EV Root CA 1 2020. r=keeler 2022-03-25 21:26:17 +00:00
ExtendedValidation.h Bug 1694649 - Rewrite GetFirstEVPolicy with pkix r=keeler 2021-04-16 22:32:35 +00:00
NSSCertDBTrustDomain.cpp Bug 1735386 - adjust revocation checking for EV certificate intermediates to match Baseline Requirements r=jschanck 2022-03-30 01:35:26 +00:00
NSSCertDBTrustDomain.h Bug 1088140 - support RSA-PSS signatures on certificates in the certificate verifier r=jschanck 2022-03-24 21:34:21 +00:00
OCSPCache.cpp Bug 1207753 - security/certverifier thread-safety annotations r=keeler 2022-03-21 20:06:01 +00:00
OCSPCache.h Bug 1207753 - security/certverifier thread-safety annotations r=keeler 2022-03-21 20:06:01 +00:00
OCSPVerificationTrustDomain.cpp Bug 1088140 - support RSA-PSS signatures on certificates in the certificate verifier r=jschanck 2022-03-24 21:34:21 +00:00
OCSPVerificationTrustDomain.h Bug 1088140 - support RSA-PSS signatures on certificates in the certificate verifier r=jschanck 2022-03-24 21:34:21 +00:00
TrustOverride-AppleGoogleDigiCertData.inc
TrustOverride-SymantecData.inc Bug 1686856 - Remove GeoTrust PCA-G2 and VeriSign Universal root certs from TrustOverride-SymantecData.inc. r=keeler 2021-03-08 07:43:55 +00:00
TrustOverrideUtils.h Bug 1713602 - Use NSS only on the socket thread in NSSCertDBTrustDomain::IsChainValid r=keeler 2021-08-14 02:11:30 +00:00
moz.build Bug 1725145 - Preparation for the hybrid build env. r=necko-reviewers,firefox-build-system-reviewers,valentin,glandium 2021-08-25 10:46:17 +00:00