Certificates expire on 2027-02-04.
Extended with the instructions in security/manager/ssl/tests/unit/test_cert_expiration_canary.js
If this test and only this test fails, do the following:
1. Create a bug for the issue in "Core :: Security: PSM".
2. Write a patch to temporarily disable the test.
3. Land the patch.
4. Write a patch to reenable the test but don't land it.
5. Needinfo the triage owner of Bugzilla's "Core :: Security: PSM" component
in the bug.
6. Patches to update certificates get created.
6.1. Update certificates in security/manager/ssl/tests/unit with
./mach generate-test-certs
6.2. Update more certificates with
./mach python build/pgo/genpgocert.py
6.3. Temporarily uncomment the code in security/manager/ssl/tests/unit/test_signed_apps/moz.build,
build Firefox with |./mach build| and copy the relevant non-build files
from the related object directory folder into this folder.
6.4. Update the certificate fingerprints mentioned in
security/manager/ssl/tests/unit/test_cert_override_read.js with
openssl x509 -noout -fingerprint -sha256 -in security/manager/ssl/tests/unit/bad_certs/certName.pem
6.5. Update the base64 encoded serial numbers of test-int.pem and other-test-ca.pem in
security/manager/ssl/tests/unit/test_cert_storage.js
6.5.1. Get the serial number value
openssl x509 -noout -in security/manager/ssl/tests/unit/bad_certs/test-int.pem -serial
6.5.2. base64 encode the hex value without the prefix
6.5.3. Update base64 encoded value in the test file.
7. Commit the changes: Mention the year of the update, the date of the
next expiration and add these instructions to the commit message.
8. Test the patches with a Try push.
9. Land the patches on all trees whose code will still be used when the
certificates expire in 3 weeks.
Differential Revision: https://phabricator.services.mozilla.com/D278888
19 lines
1.0 KiB
Plaintext
19 lines
1.0 KiB
Plaintext
-----BEGIN CERTIFICATE-----
|
|
MIIC4DCCAcigAwIBAgIUd/VyPORF+Ljj45q4h6BbUG5SuPYwDQYJKoZIhvcNAQEL
|
|
BQAwEjEQMA4GA1UEAwwHVGVzdCBDQTAiGA8yMDI0MTEyNzAwMDAwMFoYDzIwMjcw
|
|
MjA1MDAwMDAwWjAfMR0wGwYDVQQDDBRNaXNzaW5nIEludGVybWVkaWF0ZTCCASIw
|
|
DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALqIUahEjhbWQf1utogGNhA9PBPZ
|
|
6uQ1SrTs9WhXbCR7wcclqODYH72xnAabbhqG8mvir1p1a2pkcQh6pVqnRYf3HNUk
|
|
nAJ+zUP8HmnQOCApk6sgw0nk27lMwmtsDu0Vgg/xfq1pGrHTAjqLKkHup3DgDw2N
|
|
/WYLK7AkkqR9uYhheZCxV5A90jvF4LhIH6g304hD7ycW2FW3ZlqqfgKQLzp7EIAG
|
|
JMwcbJetlmFbt+KWEsB1MaMMkd20yvf8rR0l0wnvuRcOp2jhs3svIm9p47SKlWEd
|
|
7ibWJZ2rkQhONsscJAQsvxaLL+Xxj5kXMbiz/kkj+nJRxDHVA6zaGAo17Y0CAwEA
|
|
AaMdMBswDAYDVR0TBAUwAwEB/zALBgNVHQ8EBAMCAQYwDQYJKoZIhvcNAQELBQAD
|
|
ggEBALNrGlu62FAlc4WQe71QcE7cE9PlvE2hy/ocG3gc2S5ByDdlHTcSkbV38jmz
|
|
BLPq69fsAX1snAdVciFSLLEJbormjkegDKXgc74FGh2RrGhee/DZtLwO5Auk3iy2
|
|
7pDY/bZAEseyZRYaF1pCzmy5wpTVrRRaJ8h8dAk+nBT3yfar0+mAcuQCec02PX6s
|
|
8FvemG6a7l6jA0k9MglHhgdh/DAb84LCGkwiUY9G31eDBrnpKxsCDaoshxaTurfC
|
|
7OlOB7lrHTsSFVquqPEGvRPr+px/nCihLl5q3QQUtDNlQDjQgkNsrI5BuWvkfZLC
|
|
0wGUGmnxyHd5n77tjLxx1PD2sJ0=
|
|
-----END CERTIFICATE-----
|