The tests load certificate chains from files. The CA chains contain a past or future certificate and an invalid certificate. The test then checks that the flags set are BADCERT_EXPIRED or BADCERT_FUTURE.