-
Notifications
You must be signed in to change notification settings - Fork 2.1k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Generate sample revoked DACs and PAI certs for 0xFFF1 vendor ID #26582
Labels
Milestone
Comments
FYI @CBonnell |
Also add a set of CRLs and certs for the indirect CRL signing use cases. Please see #36838 (review) for more details |
Checklist:
|
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Need to generate CRLs for revocation testing.
3x DACs with different serial numbers for VID 0xFFF1, PID 0x8001
./credentials/development/attestation/Matter-Development-PAI-FFF1-noPID-Cert.pem
and/credentials/development/attestation/Matter-Development-PAI-FFF1-noPID-Key.pem
Create 1 new PAI with the test VID=FFF1 PAA (
./credentials/development/paa-root-certs/Chip-Test-PAA-FFF1-Cert.pem
and./credentials/test/attestation/Chip-Test-PAA-FFF1-Key.pem
The CRLs will need to be hosted permanently in a CDN. The CRLs need to list a reasonably long NextUpdate time.
The text was updated successfully, but these errors were encountered: