8ea126be4d
This change adds support for serving and receiving Signed Certificate Timestamps as described in RFC 6962. The server is now capable of serving SCTs listed in the Certificate structure. The client now asks for SCTs and, if any are received, they are exposed in the ConnectionState structure. Fixes #10201 Change-Id: Ib3adae98cb4f173bc85cec04d2bdd3aa0fec70bb Reviewed-on: https://go-review.googlesource.com/8988 Reviewed-by: Adam Langley <agl@golang.org> Run-TryBot: Adam Langley <agl@golang.org> Reviewed-by: Jonathan Rudenberg <jonathan@titanous.com>
135 lines
10 KiB
Plaintext
135 lines
10 KiB
Plaintext
>>> Flow 1 (client to server)
|
|
00000000 16 03 01 00 7d 01 00 00 79 03 03 00 00 00 00 00 |....}...y.......|
|
|
00000010 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................|
|
|
00000020 00 00 00 00 00 00 00 00 00 00 00 00 00 1e c0 2f |.............../|
|
|
00000030 c0 2b c0 30 c0 2c c0 11 c0 07 c0 13 c0 09 c0 14 |.+.0.,..........|
|
|
00000040 c0 0a 00 05 00 2f 00 35 c0 12 00 0a 01 00 00 32 |...../.5.......2|
|
|
00000050 00 05 00 05 01 00 00 00 00 00 0a 00 08 00 06 00 |................|
|
|
00000060 17 00 18 00 19 00 0b 00 02 01 00 00 0d 00 0a 00 |................|
|
|
00000070 08 04 01 04 03 02 01 02 03 ff 01 00 01 00 00 12 |................|
|
|
00000080 00 00 |..|
|
|
>>> Flow 2 (server to client)
|
|
00000000 16 03 03 00 59 02 00 00 55 03 03 6f 2d af 69 fa |....Y...U..o-.i.|
|
|
00000010 96 5a 48 db 6f b1 3e 33 02 be 0a 40 f8 f3 9d 65 |.ZH.o.>3...@...e|
|
|
00000020 98 04 63 87 ce c9 da 8c c8 40 fd 20 cc 2b 8c 8f |..c......@. .+..|
|
|
00000030 79 d3 b3 6e b9 8e a6 a3 e1 3b 35 f8 91 63 57 90 |y..n.....;5..cW.|
|
|
00000040 21 70 93 9e 17 98 a5 7b 18 37 2f 8e c0 09 00 00 |!p.....{.7/.....|
|
|
00000050 0d ff 01 00 01 00 00 0b 00 04 03 00 01 02 16 03 |................|
|
|
00000060 03 02 0e 0b 00 02 0a 00 02 07 00 02 04 30 82 02 |.............0..|
|
|
00000070 00 30 82 01 62 02 09 00 b8 bf 2d 47 a0 d2 eb f4 |.0..b.....-G....|
|
|
00000080 30 09 06 07 2a 86 48 ce 3d 04 01 30 45 31 0b 30 |0...*.H.=..0E1.0|
|
|
00000090 09 06 03 55 04 06 13 02 41 55 31 13 30 11 06 03 |...U....AU1.0...|
|
|
000000a0 55 04 08 13 0a 53 6f 6d 65 2d 53 74 61 74 65 31 |U....Some-State1|
|
|
000000b0 21 30 1f 06 03 55 04 0a 13 18 49 6e 74 65 72 6e |!0...U....Intern|
|
|
000000c0 65 74 20 57 69 64 67 69 74 73 20 50 74 79 20 4c |et Widgits Pty L|
|
|
000000d0 74 64 30 1e 17 0d 31 32 31 31 32 32 31 35 30 36 |td0...1211221506|
|
|
000000e0 33 32 5a 17 0d 32 32 31 31 32 30 31 35 30 36 33 |32Z..22112015063|
|
|
000000f0 32 5a 30 45 31 0b 30 09 06 03 55 04 06 13 02 41 |2Z0E1.0...U....A|
|
|
00000100 55 31 13 30 11 06 03 55 04 08 13 0a 53 6f 6d 65 |U1.0...U....Some|
|
|
00000110 2d 53 74 61 74 65 31 21 30 1f 06 03 55 04 0a 13 |-State1!0...U...|
|
|
00000120 18 49 6e 74 65 72 6e 65 74 20 57 69 64 67 69 74 |.Internet Widgit|
|
|
00000130 73 20 50 74 79 20 4c 74 64 30 81 9b 30 10 06 07 |s Pty Ltd0..0...|
|
|
00000140 2a 86 48 ce 3d 02 01 06 05 2b 81 04 00 23 03 81 |*.H.=....+...#..|
|
|
00000150 86 00 04 00 c4 a1 ed be 98 f9 0b 48 73 36 7e c3 |...........Hs6~.|
|
|
00000160 16 56 11 22 f2 3d 53 c3 3b 4d 21 3d cd 6b 75 e6 |.V.".=S.;M!=.ku.|
|
|
00000170 f6 b0 dc 9a df 26 c1 bc b2 87 f0 72 32 7c b3 64 |.....&.....r2|.d|
|
|
00000180 2f 1c 90 bc ea 68 23 10 7e fe e3 25 c0 48 3a 69 |/....h#.~..%.H:i|
|
|
00000190 e0 28 6d d3 37 00 ef 04 62 dd 0d a0 9c 70 62 83 |.(m.7...b....pb.|
|
|
000001a0 d8 81 d3 64 31 aa 9e 97 31 bd 96 b0 68 c0 9b 23 |...d1...1...h..#|
|
|
000001b0 de 76 64 3f 1a 5c 7f e9 12 0e 58 58 b6 5f 70 dd |.vd?.\....XX._p.|
|
|
000001c0 9b d8 ea d5 d7 f5 d5 cc b9 b6 9f 30 66 5b 66 9a |...........0f[f.|
|
|
000001d0 20 e2 27 e5 bf fe 3b 30 09 06 07 2a 86 48 ce 3d | .'...;0...*.H.=|
|
|
000001e0 04 01 03 81 8c 00 30 81 88 02 42 01 88 a2 4f eb |......0...B...O.|
|
|
000001f0 e2 45 c5 48 7d 1b ac f5 ed 98 9d ae 47 70 c0 5e |.E.H}.......Gp.^|
|
|
00000200 1b b6 2f bd f1 b6 4d b7 61 40 d3 11 a2 ce ee 0b |../...M.a@......|
|
|
00000210 7e 92 7e ff 76 9d c3 3b 7e a5 3f ce fa 10 e2 59 |~.~.v..;~.?....Y|
|
|
00000220 ec 47 2d 7c ac da 4e 97 0e 15 a0 6f d0 02 42 01 |.G-|..N....o..B.|
|
|
00000230 4d fc be 67 13 9c 2d 05 0e bd 3f a3 8c 25 c1 33 |M..g..-...?..%.3|
|
|
00000240 13 83 0d 94 06 bb d4 37 7a f6 ec 7a c9 86 2e dd |.......7z..z....|
|
|
00000250 d7 11 69 7f 85 7c 56 de fb 31 78 2b e4 c7 78 0d |..i..|V..1x+..x.|
|
|
00000260 ae cb be 9e 4e 36 24 31 7b 6a 0f 39 95 12 07 8f |....N6$1{j.9....|
|
|
00000270 2a 16 03 03 00 d7 0c 00 00 d3 03 00 17 41 04 ec |*............A..|
|
|
00000280 19 dd 2a 42 f5 3b 56 da f8 35 65 29 79 02 19 bb |..*B.;V..5e)y...|
|
|
00000290 82 b4 da 2e b0 58 6b 98 9d d4 03 18 fb 7e dd 25 |.....Xk......~.%|
|
|
000002a0 e1 ae 6e c4 28 ff 20 5a d6 75 0a 64 4f ad 0a c0 |..n.(. Z.u.dO...|
|
|
000002b0 40 cd 4a c6 28 0b f0 26 36 ea 7d e4 68 67 ca 04 |@.J.(..&6.}.hg..|
|
|
000002c0 03 00 8a 30 81 87 02 41 6a 32 0c 87 22 e5 b3 c2 |...0...Aj2.."...|
|
|
000002d0 38 85 95 8a ce 55 4d 99 8c 2f ef 68 f5 7c 65 3a |8....UM../.h.|e:|
|
|
000002e0 5a 1a 52 12 02 af b5 7a 22 0e 0a 6a ad 6d 81 21 |Z.R....z"..j.m.!|
|
|
000002f0 21 39 d1 4e f0 cc d9 8b 11 b6 44 46 75 17 58 71 |!9.N......DFu.Xq|
|
|
00000300 de 86 2d ae f7 34 a3 2d b3 02 42 00 fb ff 3b 91 |..-..4.-..B...;.|
|
|
00000310 dd 84 ba 74 c6 f6 43 97 de a3 70 10 00 1e 18 29 |...t..C...p....)|
|
|
00000320 3f 99 a8 cc 22 d9 9f d7 e6 d7 19 16 19 68 52 f8 |?..."........hR.|
|
|
00000330 3a 55 b7 5b 4b fa a6 f2 4f f7 ce 0e 1e 86 a1 b7 |:U.[K...O.......|
|
|
00000340 e0 c1 6e bd 2b 16 20 4e 6b a5 e7 20 14 16 03 03 |..n.+. Nk.. ....|
|
|
00000350 00 2e 0d 00 00 26 03 01 02 40 00 1e 06 01 06 02 |.....&...@......|
|
|
00000360 06 03 05 01 05 02 05 03 04 01 04 02 04 03 03 01 |................|
|
|
00000370 03 02 03 03 02 01 02 02 02 03 00 00 0e 00 00 00 |................|
|
|
>>> Flow 3 (client to server)
|
|
00000000 16 03 03 02 0a 0b 00 02 06 00 02 03 00 02 00 30 |...............0|
|
|
00000010 82 01 fc 30 82 01 5e 02 09 00 9a 30 84 6c 26 35 |...0..^....0.l&5|
|
|
00000020 d9 17 30 09 06 07 2a 86 48 ce 3d 04 01 30 45 31 |..0...*.H.=..0E1|
|
|
00000030 0b 30 09 06 03 55 04 06 13 02 41 55 31 13 30 11 |.0...U....AU1.0.|
|
|
00000040 06 03 55 04 08 13 0a 53 6f 6d 65 2d 53 74 61 74 |..U....Some-Stat|
|
|
00000050 65 31 21 30 1f 06 03 55 04 0a 13 18 49 6e 74 65 |e1!0...U....Inte|
|
|
00000060 72 6e 65 74 20 57 69 64 67 69 74 73 20 50 74 79 |rnet Widgits Pty|
|
|
00000070 20 4c 74 64 30 1e 17 0d 31 32 31 31 31 34 31 33 | Ltd0...12111413|
|
|
00000080 32 35 35 33 5a 17 0d 32 32 31 31 31 32 31 33 32 |2553Z..221112132|
|
|
00000090 35 35 33 5a 30 41 31 0b 30 09 06 03 55 04 06 13 |553Z0A1.0...U...|
|
|
000000a0 02 41 55 31 0c 30 0a 06 03 55 04 08 13 03 4e 53 |.AU1.0...U....NS|
|
|
000000b0 57 31 10 30 0e 06 03 55 04 07 13 07 50 79 72 6d |W1.0...U....Pyrm|
|
|
000000c0 6f 6e 74 31 12 30 10 06 03 55 04 03 13 09 4a 6f |ont1.0...U....Jo|
|
|
000000d0 65 6c 20 53 69 6e 67 30 81 9b 30 10 06 07 2a 86 |el Sing0..0...*.|
|
|
000000e0 48 ce 3d 02 01 06 05 2b 81 04 00 23 03 81 86 00 |H.=....+...#....|
|
|
000000f0 04 00 95 8c 91 75 14 c0 5e c4 57 b4 d4 c3 6f 8d |.....u..^.W...o.|
|
|
00000100 ae 68 1e dd 6f ce 86 e1 7e 6e b2 48 3e 81 e5 4e |.h..o...~n.H>..N|
|
|
00000110 e2 c6 88 4b 64 dc f5 30 bb d3 ff 65 cc 5b f4 dd |...Kd..0...e.[..|
|
|
00000120 b5 6a 3e 3e d0 1d de 47 c3 76 ad 19 f6 45 2c 8c |.j>>...G.v...E,.|
|
|
00000130 bc d8 1d 01 4c 1f 70 90 46 76 48 8b 8f 83 cc 4a |....L.p.FvH....J|
|
|
00000140 5c 8f 40 76 da e0 89 ec 1d 2b c4 4e 30 76 28 41 |\.@v.....+.N0v(A|
|
|
00000150 b2 62 a8 fb 5b f1 f9 4e 7a 8d bd 09 b8 ae ea 8b |.b..[..Nz.......|
|
|
00000160 18 27 4f 2e 70 fe 13 96 ba c3 d3 40 16 cd 65 4e |.'O.p......@..eN|
|
|
00000170 ac 11 1e e6 f1 30 09 06 07 2a 86 48 ce 3d 04 01 |.....0...*.H.=..|
|
|
00000180 03 81 8c 00 30 81 88 02 42 00 e0 14 c4 60 60 0b |....0...B....``.|
|
|
00000190 72 68 b0 32 5d 61 4a 02 74 5c c2 81 b9 16 a8 3f |rh.2]aJ.t\.....?|
|
|
000001a0 29 c8 36 c7 81 ff 6c b6 5b d9 70 f1 38 3b 50 48 |).6...l.[.p.8;PH|
|
|
000001b0 28 94 cb 09 1a 52 f1 5d ee 8d f2 b9 f0 f0 da d9 |(....R.]........|
|
|
000001c0 15 3a f9 bd 03 7a 87 a2 23 35 ec 02 42 01 a3 d4 |.:...z..#5..B...|
|
|
000001d0 8a 78 35 1c 4a 9a 23 d2 0a be 2b 10 31 9d 9c 5f |.x5.J.#...+.1.._|
|
|
000001e0 be e8 91 b3 da 1a f5 5d a3 23 f5 26 8b 45 70 8d |.......].#.&.Ep.|
|
|
000001f0 65 62 9b 7e 01 99 3d 18 f6 10 9a 38 61 9b 2e 57 |eb.~..=....8a..W|
|
|
00000200 e4 fa cc b1 8a ce e2 23 a0 87 f0 e1 67 51 eb 16 |.......#....gQ..|
|
|
00000210 03 03 00 46 10 00 00 42 41 04 1e 18 37 ef 0d 19 |...F...BA...7...|
|
|
00000220 51 88 35 75 71 b5 e5 54 5b 12 2e 8f 09 67 fd a7 |Q.5uq..T[....g..|
|
|
00000230 24 20 3e b2 56 1c ce 97 28 5e f8 2b 2d 4f 9e f1 |$ >.V...(^.+-O..|
|
|
00000240 07 9f 6c 4b 5b 83 56 e2 32 42 e9 58 b6 d7 49 a6 |..lK[.V.2B.X..I.|
|
|
00000250 b5 68 1a 41 03 56 6b dc 5a 89 16 03 03 00 91 0f |.h.A.Vk.Z.......|
|
|
00000260 00 00 8d 04 03 00 89 30 81 86 02 41 2e 15 7c e7 |.......0...A..|.|
|
|
00000270 f3 7c 50 ee d1 d9 3c 7a 12 e2 e0 94 9c 2a cf 7b |.|P...<z.....*.{|
|
|
00000280 d3 4a 1e d1 5a 4a be 62 da d2 88 a2 36 04 51 67 |.J..ZJ.b....6.Qg|
|
|
00000290 88 61 2d ee 87 f8 9b d0 cb b8 a6 80 55 0c 61 45 |.a-.........U.aE|
|
|
000002a0 6c 2a f8 01 cb 38 7a 09 e1 0a 52 0f 7a 02 41 3f |l*...8z...R.z.A?|
|
|
000002b0 ae 8e 30 b9 2e c2 47 54 e4 4c bd e9 c0 c1 3d 10 |..0...GT.L....=.|
|
|
000002c0 4b 95 32 ca 0d 3e 83 f6 9c 64 db 37 21 17 b4 9a |K.2..>...d.7!...|
|
|
000002d0 34 09 2a ba 2f 80 cf c1 dd 3f 2f 50 02 bf ce a8 |4.*./....?/P....|
|
|
000002e0 e5 f6 cc 61 76 58 4d d1 1d 26 e1 82 66 69 ef 55 |...avXM..&..fi.U|
|
|
000002f0 14 03 03 00 01 01 16 03 03 00 40 00 00 00 00 00 |..........@.....|
|
|
00000300 00 00 00 00 00 00 00 00 00 00 00 4c 18 de 1b ca |...........L....|
|
|
00000310 a6 e5 8b a1 69 0f 39 f5 85 61 e5 b9 44 12 03 76 |....i.9..a..D..v|
|
|
00000320 fc 9b 73 b7 53 1c 1c 82 84 28 98 7e 8e 1f c2 1b |..s.S....(.~....|
|
|
00000330 d1 e3 aa 19 33 f6 3c 69 3b 66 c0 |....3.<i;f.|
|
|
>>> Flow 4 (server to client)
|
|
00000000 14 03 03 00 01 01 16 03 03 00 40 b8 46 3c e2 4c |..........@.F<.L|
|
|
00000010 63 30 a7 77 0f 9e 0a 89 0b 47 62 a6 6b e2 75 48 |c0.w.....Gb.k.uH|
|
|
00000020 7f df a7 f0 19 9e 79 ed df fb be 19 f3 11 29 e9 |......y.......).|
|
|
00000030 db 32 05 1c 7d a6 09 c6 d3 7b 53 76 6b 4a b7 80 |.2..}....{SvkJ..|
|
|
00000040 03 33 7d 13 fb 17 51 e1 ca 8a 2e |.3}...Q....|
|
|
>>> Flow 5 (client to server)
|
|
00000000 17 03 03 00 30 00 00 00 00 00 00 00 00 00 00 00 |....0...........|
|
|
00000010 00 00 00 00 00 1b 3b d7 04 0d 4b 39 bd 4f 92 e4 |......;...K9.O..|
|
|
00000020 1a c4 bc c8 5a 71 f7 5b 1d 23 55 fb 6e 96 58 09 |....Zq.[.#U.n.X.|
|
|
00000030 d2 eb 03 86 dd 15 03 03 00 30 00 00 00 00 00 00 |.........0......|
|
|
00000040 00 00 00 00 00 00 00 00 00 00 f1 99 7b 4c 35 1c |............{L5.|
|
|
00000050 4b 2d c4 24 d8 1e 7f c9 23 00 ac 18 53 23 82 3f |K-.$....#...S#.?|
|
|
00000060 0a d8 4d f3 04 7a 6f 2f 89 2c |..M..zo/.,|
|