testssl.sh/t
Dirk Wetter 828af39053 Backporting Make sure control chars from HTTP header don't end up in html,csv,json
This is for 3.0. For 3.1dev, see #2332 .

This PR addresses the bug #2330 by implementing a function which removes control characters from the file output format html,csv,json in the output.
In every instance called there's a check before whether the string contains control chars, hoping it'll save a few milli seconds.

A tr function is used, omitting LF.
It doesn't filter the terminal output and the log file output, yet. It provides a function though which is not being called.
2023-03-12 17:40:02 +01:00
..
00_testssl_help.t Move debugging remainders detection to t/00_testssl_help.t 2020-01-22 21:04:23 +01:00
01_testssl_banner.t removed comment 2020-01-18 21:45:32 +01:00
02_clientsim_txt_parsable.t Output adjustments closer to a more common format 2020-01-14 18:44:11 +01:00
05_ca_hashes_up_to_date.t Output adjustments closer to a more common format 2020-01-14 18:44:11 +01:00
07_isJSON_valid.t add unlink / start with a clean state 2020-01-18 21:47:44 +01:00
08_isHTML_valid.t Backporting Make sure control chars from HTTP header don't end up in html,csv,json 2023-03-12 17:40:02 +01:00
09_isJSON_severitylevel_valid.t add unlink / start with a clean state 2020-01-18 21:47:44 +01:00
20_baseline_ipv4_http.t Update to newest template 2019-05-06 11:20:28 +02:00
21_baseline_ipv6_http.t.DISABLED Update to newest template 2019-05-06 11:20:28 +02:00
23_client_simulation.t Update to newest template 2019-05-06 11:20:28 +02:00
25_baseline_starttls.t Fix banner and remove STARTTLS NNTP CI check 2022-05-04 10:56:16 +02:00
51_badssl.com.t Rename file according to new scheme 2019-05-05 13:44:02 +02:00
59_hpkp.t.tmpDISABLED Rename file according to new scheme 2019-05-05 13:44:02 +02:00
Readme.md Redefine numbering scheme 2020-01-13 23:00:10 +01:00

Naming scheme

  • 00-05: Does the bare testssl.sh work at all?
  • 06-09: Does the reporting work at all?
  • 20-39: Do scans work fine (client side)?
  • 50-69: Are the results what I expect (server side)?

Please help to write Travis/CI tests! Documentation can be found here. You can consult the existing code here. Feel free to use 20_baseline_ipv4_http.t or 23_client_simulation.t as a template.