untestable/thttpclient_ssl: some tests are no longer broken

With the changes to the default cipher suites, certain tests are no
longer broken and are acting as they should.
This commit is contained in:
Leorize
2020-06-03 17:39:17 -05:00
committed by Andreas Rumpf
parent 23cc4091d9
commit 3d4d3f4ac2

View File

@@ -42,7 +42,7 @@ const certificate_tests: array[0..55, CertTest] = [
("https://no-common-name.badssl.com/", dubious_broken, "no-common-name"),
("https://no-subject.badssl.com/", dubious_broken, "no-subject"),
("https://incomplete-chain.badssl.com/", dubious_broken, "incomplete-chain"),
("https://sha1-intermediate.badssl.com/", bad_broken, "sha1-intermediate"),
("https://sha1-intermediate.badssl.com/", bad, "sha1-intermediate"),
("https://sha256.badssl.com/", good, "sha256"),
("https://sha384.badssl.com/", good, "sha384"),
("https://sha512.badssl.com/", good, "sha512"),
@@ -54,7 +54,7 @@ const certificate_tests: array[0..55, CertTest] = [
("https://rsa8192.badssl.com/", dubious_broken, "rsa8192"),
("http://http.badssl.com/", good, "regular http"),
("https://http.badssl.com/", bad_broken, "http on https URL"), # FIXME
("https://cbc.badssl.com/", dubious_broken, "cbc"),
("https://cbc.badssl.com/", dubious, "cbc"),
("https://rc4-md5.badssl.com/", bad, "rc4-md5"),
("https://rc4.badssl.com/", bad, "rc4"),
("https://3des.badssl.com/", bad, "3des"),
@@ -68,10 +68,10 @@ const certificate_tests: array[0..55, CertTest] = [
("https://dh2048.badssl.com/", good, "dh2048"),
("https://dh-small-subgroup.badssl.com/", bad_broken, "dh-small-subgroup"),
("https://dh-composite.badssl.com/", bad_broken, "dh-composite"),
("https://static-rsa.badssl.com/", dubious_broken, "static-rsa"),
("https://tls-v1-0.badssl.com:1010/", dubious_broken, "tls-v1-0"),
("https://tls-v1-1.badssl.com:1011/", dubious_broken, "tls-v1-1"),
("https://invalid-expected-sct.badssl.com/", bad_broken, "invalid-expected-sct"),
("https://static-rsa.badssl.com/", dubious, "static-rsa"),
("https://tls-v1-0.badssl.com:1010/", dubious, "tls-v1-0"),
("https://tls-v1-1.badssl.com:1011/", dubious, "tls-v1-1"),
("https://invalid-expected-sct.badssl.com/", bad, "invalid-expected-sct"),
("https://hsts.badssl.com/", good, "hsts"),
("https://upgrade.badssl.com/", good, "upgrade"),
("https://preloaded-hsts.badssl.com/", good, "preloaded-hsts"),