dogtagpki / pki

The Dogtag Certificate System is an enterprise-class Certificate Authority (CA) which supports all aspects of certificate lifecycle management, including key archival, OCSP and smartcard management.
https://www.dogtagpki.org
GNU General Public License v2.0
371 stars 137 forks source link

pki cert-find return results when invalid date is passed to --revokedonTo and --revokedOnFrom #3335

Open pki-bot opened 4 years ago

pki-bot commented 4 years ago

This issue was migrated from Pagure Issue #1072. Originally filed by mrniranjan (@mrniranjan) on 2014-07-17 08:30:24:


When invalid date is passed to --revokedOnTo and --revokedOnFrom, i still see results getting returned

[root@dhcp207-176 dogtag]# pki cert-find --revokedOnTo 2044-33-33 --size 1000
---------------
2 entries found
---------------
  Serial Number: 0xe
  Subject DN: UID=CA_adminR,E=CA_adminR@example.com,CN=CA_Admin_RevokedCert,OU=Engineering,O=Example,C=US
  Status: REVOKED
  Type: X.509 version 3
  Key Algorithm: PKCS 1 RSA with 2048-bit key
  Not Valid Before: Tue Jul 15 10:56:38 EDT 2014
  Not Valid After: Sun Jan 11 09:56:38 EST 2015
  Issued On: Tue Jul 15 10:56:42 EDT 2014
  Issued By: caadmin

  Serial Number: 0x11
  Subject DN: UID=CA_agentR,E=CA_agentR@example.com,CN=CA_Agent_RevokedCert,OU=Engineering,O=Example,C=US
  Status: REVOKED
  Type: X.509 version 3
  Key Algorithm: PKCS 1 RSA with 2048-bit key
  Not Valid Before: Tue Jul 15 10:58:29 EDT 2014
  Not Valid After: Sun Jan 11 09:58:29 EST 2015
  Issued On: Tue Jul 15 10:58:31 EDT 2014
  Issued By: caadmin
----------------------------
Number of entries returned 2
----------------------------
[root@dhcp207-176 dogtag]# pki cert-find --revokedOnFrom 02-2014-07 --size 1000
---------------
2 entries found
---------------
  Serial Number: 0xe
  Subject DN: UID=CA_adminR,E=CA_adminR@example.com,CN=CA_Admin_RevokedCert,OU=Engineering,O=Example,C=US
  Status: REVOKED
  Type: X.509 version 3
  Key Algorithm: PKCS 1 RSA with 2048-bit key
  Not Valid Before: Tue Jul 15 10:56:38 EDT 2014
  Not Valid After: Sun Jan 11 09:56:38 EST 2015
  Issued On: Tue Jul 15 10:56:42 EDT 2014
  Issued By: caadmin

  Serial Number: 0x11
  Subject DN: UID=CA_agentR,E=CA_agentR@example.com,CN=CA_Agent_RevokedCert,OU=Engineering,O=Example,C=US
  Status: REVOKED
  Type: X.509 version 3
  Key Algorithm: PKCS 1 RSA with 2048-bit key
  Not Valid Before: Tue Jul 15 10:58:29 EDT 2014
  Not Valid After: Sun Jan 11 09:58:29 EST 2015
  Issued On: Tue Jul 15 10:58:31 EDT 2014
  Issued By: caadmin
----------------------------
Number of entries returned 2
----------------------------
pki-bot commented 4 years ago

Comment from mharmsen (@mharmsen) at 2014-07-17 23:19:49

proposing Milestone 10.2.2

pki-bot commented 4 years ago

Comment from mharmsen (@mharmsen) at 2014-09-18 04:56:00

Proposed Milestone: 10.2.3 (per CS Meeting of 09/17/2014)

remains low priority

pki-bot commented 4 years ago

Comment from mharmsen (@mharmsen) at 2015-01-15 01:31:26

Per Dogtag 10.2.X meeting of 01/14/2015: Milestone 10.2 Backlog

pki-bot commented 4 years ago

Comment from mharmsen (@mharmsen) at 2015-03-03 04:05:47

Per 10.2.3 TRIAGE meeting of 02/26/2015: 10.3

NOTE: Moved from 10.2 Backlog since it was not a documentation/man page issue.

pki-bot commented 4 years ago

Comment from mharmsen (@mharmsen) at 2016-05-04 18:30:20

Per Bug Triage of 05/03/2016: 10.4

pki-bot commented 4 years ago

Comment from mrniranjan (@mrniranjan) at 2017-02-27 13:59:57

Metadata Update from @mrniranjan:

pki-bot commented 4 years ago

Comment from mharmsen (@mharmsen) at 2017-08-31 00:30:36

Metadata Update from @mharmsen:

pki-bot commented 4 years ago

Comment from mharmsen (@mharmsen) at 2018-04-18 20:02:22

Per 10.5.x/10.6 Triage: FUTURE

RHBZ: CLOSED UPSTREAM

pki-bot commented 4 years ago

Comment from mharmsen (@mharmsen) at 2018-04-18 20:02:23

Metadata Update from @mharmsen: