ruby / ruby/openssl

OCSP does not expose extension manipulation functions

Open
#30 0 comments 1 reaction 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
C
Stars
276
Forks
200
Avg merge
1d 19h
Merged PRs (30d)
7

Description

OCSP responses can have extensions. While rarely used in the past, Certificate Transparency (http://tools.ietf.org/html/rfc6962) is using them to deliver information. Currently the only way to add extensions form ruby is to manually modify the ASN.1. It would be nice there was an easier way.

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

The issue names no files, tests, or entry points. Start by locating OCSP response handling and the Ruby OpenSSL bindings for ASN.1 extensions, then review existing extension APIs. Done means Ruby exposes a simpler way to add or manipulate OCSP extensions without manually editing ASN.1.

Written by the indexing model from the issue text.

Assessment

Tech stack
c, ruby
Domain
cryptography, security
Issue type
Feature
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.