X509KeyUsageExtensionTest.cs 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251
  1. //
  2. // X509KeyUsageExtensionTest.cs - NUnit tests for X509KeyUsageExtension
  3. //
  4. // Author:
  5. // Sebastien Pouliot <[email protected]>
  6. //
  7. // Copyright (C) 2005 Novell, Inc (http://www.novell.com)
  8. //
  9. // Permission is hereby granted, free of charge, to any person obtaining
  10. // a copy of this software and associated documentation files (the
  11. // "Software"), to deal in the Software without restriction, including
  12. // without limitation the rights to use, copy, modify, merge, publish,
  13. // distribute, sublicense, and/or sell copies of the Software, and to
  14. // permit persons to whom the Software is furnished to do so, subject to
  15. // the following conditions:
  16. //
  17. // The above copyright notice and this permission notice shall be
  18. // included in all copies or substantial portions of the Software.
  19. //
  20. // THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
  21. // EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
  22. // MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
  23. // NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE
  24. // LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION
  25. // OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION
  26. // WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
  27. //
  28. #if NET_2_0
  29. using NUnit.Framework;
  30. using System;
  31. using System.Security.Cryptography;
  32. using System.Security.Cryptography.X509Certificates;
  33. namespace MonoTests.System.Security.Cryptography.X509Certificates {
  34. [TestFixture]
  35. public class X509KeyUsageExtensionTest {
  36. private const string oid = "2.5.29.15";
  37. private const string fname = "Key Usage";
  38. [Test]
  39. public void ConstructorEmpty ()
  40. {
  41. X509KeyUsageExtension ku = new X509KeyUsageExtension ();
  42. Assert.IsFalse (ku.Critical , "Critical");
  43. Assert.IsNull (ku.RawData, "RawData");
  44. Assert.AreEqual (oid, ku.Oid.Value, "Oid.Value");
  45. Assert.AreEqual (fname, ku.Oid.FriendlyName, "Oid.FriendlyName");
  46. Assert.AreEqual (String.Empty, ku.Format (true), "Format(true)");
  47. Assert.AreEqual (String.Empty, ku.Format (false), "Format(false)");
  48. }
  49. [Test]
  50. [Category ("NotDotNet")] // MS bug reported as http://lab.msdn.microsoft.com/ProductFeedback/viewfeedback.aspx?feedbackid=34cdc5e9-c7f9-4f55-b390-288bfef6e44e
  51. public void ConstructorEmpty_KeyUsage ()
  52. {
  53. X509KeyUsageExtension ku = new X509KeyUsageExtension ();
  54. Assert.AreEqual (0, (int)ku.KeyUsages, "KeyUsages");
  55. }
  56. [Test]
  57. public void ConstructorAsnEncodedData ()
  58. {
  59. AsnEncodedData aed = new AsnEncodedData ("1.2.3", new byte[] { 0x03, 0x01, 0x00 });
  60. X509KeyUsageExtension ku = new X509KeyUsageExtension (aed, true);
  61. Assert.IsTrue (ku.Critical, "Critical");
  62. Assert.AreEqual (3, ku.RawData.Length, "RawData"); // original Oid ignored
  63. Assert.AreEqual (oid, ku.Oid.Value, "Oid.Value");
  64. Assert.AreEqual (fname, ku.Oid.FriendlyName, "Oid.FriendlyName");
  65. Assert.AreEqual ("Information Not Available", ku.Format (true), "Format(true)");
  66. Assert.AreEqual ("Information Not Available", ku.Format (false), "Format(false)");
  67. Assert.AreEqual (0, (int)ku.KeyUsages, "KeyUsages");
  68. }
  69. [Test]
  70. [ExpectedException (typeof (CryptographicException))]
  71. public void ConstructorAsnEncodedData_BadAsn ()
  72. {
  73. AsnEncodedData aed = new AsnEncodedData ("1.2.3", new byte[0]);
  74. X509KeyUsageExtension ku = new X509KeyUsageExtension (aed, true);
  75. Assert.AreEqual (String.Empty, ku.Format (true), "Format(true)");
  76. Assert.AreEqual (String.Empty, ku.Format (false), "Format(false)");
  77. X509KeyUsageFlags kuf = ku.KeyUsages;
  78. }
  79. [Test]
  80. [ExpectedException (typeof (CryptographicException))]
  81. public void ConstructorAsnEncodedData_BadAsnTag ()
  82. {
  83. AsnEncodedData aed = new AsnEncodedData ("1.2.3", new byte[] { 0x05, 0x00 });
  84. X509KeyUsageExtension ku = new X509KeyUsageExtension (aed, true);
  85. Assert.AreEqual ("0500", ku.Format (true), "Format(true)");
  86. Assert.AreEqual ("0500", ku.Format (false), "Format(false)");
  87. X509KeyUsageFlags kuf = ku.KeyUsages;
  88. }
  89. [Test]
  90. [ExpectedException (typeof (CryptographicException))]
  91. public void ConstructorAsnEncodedData_BadAsnLength ()
  92. {
  93. AsnEncodedData aed = new AsnEncodedData ("1.2.3", new byte[] { 0x03, 0x01 });
  94. X509KeyUsageExtension ku = new X509KeyUsageExtension (aed, true);
  95. Assert.AreEqual ("0301", ku.Format (true), "Format(true)");
  96. Assert.AreEqual ("0301", ku.Format (false), "Format(false)");
  97. X509KeyUsageFlags kuf = ku.KeyUsages;
  98. }
  99. [Test]
  100. [ExpectedException (typeof (NullReferenceException))]
  101. public void ConstructorAsnEncodedData_Null ()
  102. {
  103. X509KeyUsageExtension ku = new X509KeyUsageExtension (null, true);
  104. }
  105. [Test]
  106. // [ExpectedException (typeof (...))]
  107. public void ConstructorKeyUsage_Invalid ()
  108. {
  109. X509KeyUsageFlags kuf = (X509KeyUsageFlags)Int32.MinValue;
  110. X509KeyUsageExtension ku = new X509KeyUsageExtension (kuf, false);
  111. Assert.AreEqual (0, (int)ku.KeyUsages, "KeyUsages");
  112. Assert.AreEqual ("03-01-00", BitConverter.ToString (ku.RawData), "RawData");
  113. Assert.AreEqual ("Information Not Available", ku.Format (true), "Format(true)");
  114. Assert.AreEqual ("Information Not Available", ku.Format (false), "Format(false)");
  115. }
  116. private X509KeyUsageExtension ValidateKeyUsage (X509KeyUsageFlags kuf, string rawdata)
  117. {
  118. X509KeyUsageExtension ku = new X509KeyUsageExtension (kuf, false);
  119. Assert.IsFalse (ku.Critical, kuf.ToString () + ".Critical");
  120. Assert.AreEqual (rawdata, BitConverter.ToString (ku.RawData), kuf.ToString () + ".RawData");
  121. Assert.AreEqual (oid, ku.Oid.Value, kuf.ToString () + ".Oid.Value");
  122. Assert.AreEqual (fname, ku.Oid.FriendlyName, kuf.ToString () + ".Oid.FriendlyName");
  123. Assert.AreEqual (kuf, ku.KeyUsages, kuf.ToString () + ".KeyUsages");
  124. return ku;
  125. }
  126. [Test]
  127. public void ConstructorKeyUsage_CRLSign ()
  128. {
  129. X509KeyUsageExtension ku = ValidateKeyUsage (X509KeyUsageFlags.CrlSign, "03-02-01-02");
  130. Assert.AreEqual ("Off-line CRL Signing, CRL Signing (02)", ku.Format (false), "CRLSign");
  131. ku = ValidateKeyUsage (X509KeyUsageFlags.DataEncipherment, "03-02-04-10");
  132. Assert.AreEqual ("Data Encipherment (10)", ku.Format (false), "DataEncipherment");
  133. ku = ValidateKeyUsage (X509KeyUsageFlags.DecipherOnly, "03-03-07-00-80");
  134. Assert.AreEqual ("Decipher Only (00 80)", ku.Format (false), "DecipherOnly");
  135. ku = ValidateKeyUsage (X509KeyUsageFlags.DigitalSignature, "03-02-07-80");
  136. Assert.AreEqual ("Digital Signature (80)", ku.Format (false), "DigitalSignature");
  137. ku = ValidateKeyUsage (X509KeyUsageFlags.EncipherOnly, "03-02-00-01");
  138. Assert.AreEqual ("Encipher Only (01)", ku.Format (false), "EncipherOnly");
  139. ku = ValidateKeyUsage (X509KeyUsageFlags.KeyAgreement, "03-02-03-08");
  140. Assert.AreEqual ("Key Agreement (08)", ku.Format (false), "KeyAgreement");
  141. ku = ValidateKeyUsage (X509KeyUsageFlags.KeyCertSign, "03-02-02-04");
  142. Assert.AreEqual ("Certificate Signing (04)", ku.Format (false), "KeyCertSign");
  143. ku = ValidateKeyUsage (X509KeyUsageFlags.KeyEncipherment, "03-02-05-20");
  144. Assert.AreEqual ("Key Encipherment (20)", ku.Format (false), "KeyEncipherment");
  145. ku = ValidateKeyUsage (X509KeyUsageFlags.NonRepudiation, "03-02-06-40");
  146. Assert.AreEqual ("Non-Repudiation (40)", ku.Format (false), "NonRepudiation");
  147. ValidateKeyUsage (X509KeyUsageFlags.DataEncipherment | X509KeyUsageFlags.DecipherOnly, "03-03-07-10-80");
  148. ValidateKeyUsage (X509KeyUsageFlags.DigitalSignature | X509KeyUsageFlags.DecipherOnly, "03-03-07-80-80");
  149. ValidateKeyUsage (X509KeyUsageFlags.EncipherOnly | X509KeyUsageFlags.DecipherOnly, "03-03-07-01-80");
  150. ValidateKeyUsage (X509KeyUsageFlags.NonRepudiation | X509KeyUsageFlags.DataEncipherment, "03-02-04-50");
  151. ku = ValidateKeyUsage (X509KeyUsageFlags.CrlSign | X509KeyUsageFlags.DataEncipherment | X509KeyUsageFlags.DecipherOnly |
  152. X509KeyUsageFlags.DigitalSignature | X509KeyUsageFlags.EncipherOnly | X509KeyUsageFlags.KeyAgreement |
  153. X509KeyUsageFlags.KeyCertSign | X509KeyUsageFlags.KeyEncipherment | X509KeyUsageFlags.NonRepudiation, "03-03-07-FF-80");
  154. Assert.AreEqual ("Digital Signature, Non-Repudiation, Key Encipherment, Data Encipherment, Key Agreement, Certificate Signing, Off-line CRL Signing, CRL Signing, Encipher Only, Decipher Only (ff 80)" + Environment.NewLine,
  155. ku.Format (true), "All");
  156. }
  157. [Test]
  158. [ExpectedException (typeof (ArgumentNullException))]
  159. public void WrongExtension_X509EnhancedKeyUsageExtension ()
  160. {
  161. X509EnhancedKeyUsageExtension eku = new X509EnhancedKeyUsageExtension ();
  162. X509KeyUsageExtension ku = new X509KeyUsageExtension ();
  163. ku.CopyFrom (eku);
  164. }
  165. [Test]
  166. public void WrongExtension_X509Extension ()
  167. {
  168. X509Extension ex = new X509Extension ("1.2.3", new byte [0], true);
  169. X509KeyUsageExtension ku = new X509KeyUsageExtension (X509KeyUsageFlags.CrlSign, true);
  170. ku.CopyFrom (ex);
  171. Assert.IsTrue (ku.Critical, "Critical");
  172. Assert.AreEqual (String.Empty, BitConverter.ToString (ku.RawData), "RawData");
  173. Assert.AreEqual ("1.2.3", ku.Oid.Value, "Oid.Value");
  174. Assert.IsNull (ku.Oid.FriendlyName, "Oid.FriendlyName");
  175. }
  176. [Test]
  177. [ExpectedException (typeof (CryptographicException))]
  178. public void WrongExtension_X509Extension_KeyUsages ()
  179. {
  180. X509Extension ex = new X509Extension ("1.2.3", new byte[0], true);
  181. X509KeyUsageExtension ku = new X509KeyUsageExtension ();
  182. ku.CopyFrom (ex);
  183. Assert.AreEqual (0, ku.KeyUsages, "KeyUsages");
  184. }
  185. [Test]
  186. [ExpectedException (typeof (ArgumentException))]
  187. public void WrongAsnEncodedData ()
  188. {
  189. AsnEncodedData aed = new AsnEncodedData (new byte[0]);
  190. X509KeyUsageExtension ku = new X509KeyUsageExtension (X509KeyUsageFlags.CrlSign, true);
  191. ku.CopyFrom (aed); // note: not the same behaviour than using the constructor!
  192. }
  193. [Test]
  194. [ExpectedException (typeof (ArgumentNullException))]
  195. public void CopyFrom_Null ()
  196. {
  197. X509KeyUsageExtension eku = new X509KeyUsageExtension ();
  198. eku.CopyFrom (null);
  199. }
  200. [Test]
  201. public void CopyFrom_Self ()
  202. {
  203. X509KeyUsageExtension ku = new X509KeyUsageExtension (X509KeyUsageFlags.CrlSign, true);
  204. Assert.IsTrue (ku.Critical, "Critical");
  205. byte[] raw = ku.RawData;
  206. Assert.AreEqual ("03-02-01-02", BitConverter.ToString (raw), "RawData");
  207. AsnEncodedData aed = new AsnEncodedData (raw);
  208. X509KeyUsageExtension copy = new X509KeyUsageExtension (aed, false);
  209. Assert.IsFalse (copy.Critical, "Critical");
  210. Assert.AreEqual (4, copy.RawData.Length, "RawData"); // original Oid ignored
  211. Assert.AreEqual (oid, copy.Oid.Value, "Oid.Value");
  212. Assert.AreEqual (fname, copy.Oid.FriendlyName, "Oid.FriendlyName");
  213. Assert.AreEqual (X509KeyUsageFlags.CrlSign, copy.KeyUsages, "KeyUsages");
  214. }
  215. }
  216. }
  217. #endif