X509KeyUsageExtensionTest.cs 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251
  1. //
  2. // X509KeyUsageExtensionTest.cs - NUnit tests for X509KeyUsageExtension
  3. //
  4. // Author:
  5. // Sebastien Pouliot <[email protected]>
  6. //
  7. // Copyright (C) 2005 Novell, Inc (http://www.novell.com)
  8. //
  9. // Permission is hereby granted, free of charge, to any person obtaining
  10. // a copy of this software and associated documentation files (the
  11. // "Software"), to deal in the Software without restriction, including
  12. // without limitation the rights to use, copy, modify, merge, publish,
  13. // distribute, sublicense, and/or sell copies of the Software, and to
  14. // permit persons to whom the Software is furnished to do so, subject to
  15. // the following conditions:
  16. //
  17. // The above copyright notice and this permission notice shall be
  18. // included in all copies or substantial portions of the Software.
  19. //
  20. // THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
  21. // EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
  22. // MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
  23. // NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE
  24. // LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION
  25. // OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION
  26. // WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
  27. //
  28. #if NET_2_0
  29. using NUnit.Framework;
  30. using System;
  31. using System.Security.Cryptography;
  32. using System.Security.Cryptography.X509Certificates;
  33. namespace MonoTests.System.Security.Cryptography.X509Certificates {
  34. [TestFixture]
  35. public class X509KeyUsageExtensionTest {
  36. private const string oid = "2.5.29.15";
  37. private const string fname = "Key Usage";
  38. [Test]
  39. public void ConstructorEmpty ()
  40. {
  41. X509KeyUsageExtension ku = new X509KeyUsageExtension ();
  42. Assert.IsFalse (ku.Critical , "Critical");
  43. Assert.IsNull (ku.RawData, "RawData");
  44. Assert.AreEqual (oid, ku.Oid.Value, "Oid.Value");
  45. Assert.AreEqual (fname, ku.Oid.FriendlyName, "Oid.FriendlyName");
  46. Assert.AreEqual (String.Empty, ku.Format (true), "Format(true)");
  47. Assert.AreEqual (String.Empty, ku.Format (false), "Format(false)");
  48. }
  49. [Test]
  50. [Category ("NotDotNet")] // MS bug reported as http://lab.msdn.microsoft.com/ProductFeedback/viewfeedback.aspx?feedbackid=34cdc5e9-c7f9-4f55-b390-288bfef6e44e
  51. public void ConstructorEmpty_KeyUsage ()
  52. {
  53. X509KeyUsageExtension ku = new X509KeyUsageExtension ();
  54. Assert.AreEqual (0, (int)ku.KeyUsages, "KeyUsages");
  55. }
  56. [Test]
  57. public void ConstructorAsnEncodedData ()
  58. {
  59. AsnEncodedData aed = new AsnEncodedData ("1.2.3", new byte[] { 0x03, 0x01, 0x00 });
  60. X509KeyUsageExtension ku = new X509KeyUsageExtension (aed, true);
  61. Assert.IsTrue (ku.Critical, "Critical");
  62. Assert.AreEqual (3, ku.RawData.Length, "RawData"); // original Oid ignored
  63. Assert.AreEqual (oid, ku.Oid.Value, "Oid.Value");
  64. Assert.AreEqual (fname, ku.Oid.FriendlyName, "Oid.FriendlyName");
  65. Assert.AreEqual ("Information Not Available", ku.Format (true), "Format(true)");
  66. Assert.AreEqual ("Information Not Available", ku.Format (false), "Format(false)");
  67. }
  68. [Test]
  69. [ExpectedException (typeof (CryptographicException))]
  70. public void ConstructorAsnEncodedData_BadAsn ()
  71. {
  72. AsnEncodedData aed = new AsnEncodedData ("1.2.3", new byte[0]);
  73. X509KeyUsageExtension ku = new X509KeyUsageExtension (aed, true);
  74. Assert.AreEqual (String.Empty, ku.Format (true), "Format(true)");
  75. Assert.AreEqual (String.Empty, ku.Format (false), "Format(false)");
  76. X509KeyUsageFlags kuf = ku.KeyUsages;
  77. }
  78. [Test]
  79. [ExpectedException (typeof (CryptographicException))]
  80. public void ConstructorAsnEncodedData_BadAsnTag ()
  81. {
  82. AsnEncodedData aed = new AsnEncodedData ("1.2.3", new byte[] { 0x05, 0x00 });
  83. X509KeyUsageExtension ku = new X509KeyUsageExtension (aed, true);
  84. Assert.AreEqual ("0500", ku.Format (true), "Format(true)");
  85. Assert.AreEqual ("0500", ku.Format (false), "Format(false)");
  86. X509KeyUsageFlags kuf = ku.KeyUsages;
  87. }
  88. [Test]
  89. [ExpectedException (typeof (CryptographicException))]
  90. public void ConstructorAsnEncodedData_BadAsnLength ()
  91. {
  92. AsnEncodedData aed = new AsnEncodedData ("1.2.3", new byte[] { 0x03, 0x01 });
  93. X509KeyUsageExtension ku = new X509KeyUsageExtension (aed, true);
  94. Assert.AreEqual ("0301", ku.Format (true), "Format(true)");
  95. Assert.AreEqual ("0301", ku.Format (false), "Format(false)");
  96. X509KeyUsageFlags kuf = ku.KeyUsages;
  97. }
  98. [Test]
  99. [ExpectedException (typeof (NullReferenceException))]
  100. public void ConstructorAsnEncodedData_Null ()
  101. {
  102. X509KeyUsageExtension ku = new X509KeyUsageExtension (null, true);
  103. }
  104. [Test]
  105. // [ExpectedException (typeof (...))]
  106. public void ConstructorKeyUsage_Invalid ()
  107. {
  108. X509KeyUsageFlags kuf = (X509KeyUsageFlags)Int32.MinValue;
  109. X509KeyUsageExtension ku = new X509KeyUsageExtension (kuf, false);
  110. Assert.AreEqual (0, (int)ku.KeyUsages, "KeyUsages");
  111. Assert.AreEqual ("03-01-00", BitConverter.ToString (ku.RawData), "RawData");
  112. Assert.AreEqual ("Information Not Available", ku.Format (true), "Format(true)");
  113. Assert.AreEqual ("Information Not Available", ku.Format (false), "Format(false)");
  114. }
  115. private X509KeyUsageExtension ValidateKeyUsage (X509KeyUsageFlags kuf, string rawdata)
  116. {
  117. X509KeyUsageExtension ku = new X509KeyUsageExtension (kuf, false);
  118. Assert.IsFalse (ku.Critical, kuf.ToString () + ".Critical");
  119. Assert.AreEqual (rawdata, BitConverter.ToString (ku.RawData), kuf.ToString () + ".RawData");
  120. Assert.AreEqual (oid, ku.Oid.Value, kuf.ToString () + ".Oid.Value");
  121. Assert.AreEqual (fname, ku.Oid.FriendlyName, kuf.ToString () + ".Oid.FriendlyName");
  122. Assert.AreEqual (kuf, ku.KeyUsages, kuf.ToString () + ".KeyUsages");
  123. return ku;
  124. }
  125. [Test]
  126. public void ConstructorKeyUsage_CRLSign ()
  127. {
  128. X509KeyUsageExtension ku = ValidateKeyUsage (X509KeyUsageFlags.CRLSign, "03-02-01-02");
  129. Assert.AreEqual ("Off-line CRL Signing, CRL Signing (02)", ku.Format (false), "CRLSign");
  130. ku = ValidateKeyUsage (X509KeyUsageFlags.DataEncipherment, "03-02-04-10");
  131. Assert.AreEqual ("Data Encipherment (10)", ku.Format (false), "DataEncipherment");
  132. ku = ValidateKeyUsage (X509KeyUsageFlags.DecipherOnly, "03-03-07-00-80");
  133. Assert.AreEqual ("Decipher Only (00 80)", ku.Format (false), "DecipherOnly");
  134. ku = ValidateKeyUsage (X509KeyUsageFlags.DigitalSignature, "03-02-07-80");
  135. Assert.AreEqual ("Digital Signature (80)", ku.Format (false), "DigitalSignature");
  136. ku = ValidateKeyUsage (X509KeyUsageFlags.EncipherOnly, "03-02-00-01");
  137. Assert.AreEqual ("Encipher Only (01)", ku.Format (false), "EncipherOnly");
  138. ku = ValidateKeyUsage (X509KeyUsageFlags.KeyAgreement, "03-02-03-08");
  139. Assert.AreEqual ("Key Agreement (08)", ku.Format (false), "KeyAgreement");
  140. ku = ValidateKeyUsage (X509KeyUsageFlags.KeyCertSign, "03-02-02-04");
  141. Assert.AreEqual ("Certificate Signing (04)", ku.Format (false), "KeyCertSign");
  142. ku = ValidateKeyUsage (X509KeyUsageFlags.KeyEncipherment, "03-02-05-20");
  143. Assert.AreEqual ("Key Encipherment (20)", ku.Format (false), "KeyEncipherment");
  144. ku = ValidateKeyUsage (X509KeyUsageFlags.NonRepudiation, "03-02-06-40");
  145. Assert.AreEqual ("Non-Repudiation (40)", ku.Format (false), "NonRepudiation");
  146. ValidateKeyUsage (X509KeyUsageFlags.DataEncipherment | X509KeyUsageFlags.DecipherOnly, "03-03-07-10-80");
  147. ValidateKeyUsage (X509KeyUsageFlags.DigitalSignature | X509KeyUsageFlags.DecipherOnly, "03-03-07-80-80");
  148. ValidateKeyUsage (X509KeyUsageFlags.EncipherOnly | X509KeyUsageFlags.DecipherOnly, "03-03-07-01-80");
  149. ValidateKeyUsage (X509KeyUsageFlags.NonRepudiation | X509KeyUsageFlags.DataEncipherment, "03-02-04-50");
  150. ku = ValidateKeyUsage (X509KeyUsageFlags.CRLSign | X509KeyUsageFlags.DataEncipherment | X509KeyUsageFlags.DecipherOnly |
  151. X509KeyUsageFlags.DigitalSignature | X509KeyUsageFlags.EncipherOnly | X509KeyUsageFlags.KeyAgreement |
  152. X509KeyUsageFlags.KeyCertSign | X509KeyUsageFlags.KeyEncipherment | X509KeyUsageFlags.NonRepudiation, "03-03-07-FF-80");
  153. Assert.AreEqual ("Digital Signature, Non-Repudiation, Key Encipherment, Data Encipherment, Key Agreement, Certificate Signing, Off-line CRL Signing, CRL Signing, Encipher Only, Decipher Only (ff 80)" + Environment.NewLine,
  154. ku.Format (true), "All");
  155. }
  156. [Test]
  157. [ExpectedException (typeof (ArgumentNullException))]
  158. public void WrongExtension_X509EnhancedKeyUsageExtension ()
  159. {
  160. X509EnhancedKeyUsageExtension eku = new X509EnhancedKeyUsageExtension ();
  161. X509KeyUsageExtension ku = new X509KeyUsageExtension ();
  162. ku.CopyFrom (eku);
  163. }
  164. [Test]
  165. public void WrongExtension_X509Extension ()
  166. {
  167. X509Extension ex = new X509Extension ("1.2.3", new byte [0], true);
  168. X509KeyUsageExtension ku = new X509KeyUsageExtension (X509KeyUsageFlags.CRLSign, true);
  169. ku.CopyFrom (ex);
  170. Assert.IsTrue (ku.Critical, "Critical");
  171. Assert.AreEqual (String.Empty, BitConverter.ToString (ku.RawData), "RawData");
  172. Assert.AreEqual ("1.2.3", ku.Oid.Value, "Oid.Value");
  173. Assert.IsNull (ku.Oid.FriendlyName, "Oid.FriendlyName");
  174. }
  175. [Test]
  176. [ExpectedException (typeof (CryptographicException))]
  177. public void WrongExtension_X509Extension_KeyUsages ()
  178. {
  179. X509Extension ex = new X509Extension ("1.2.3", new byte[0], true);
  180. X509KeyUsageExtension ku = new X509KeyUsageExtension ();
  181. ku.CopyFrom (ex);
  182. Assert.AreEqual (0, ku.KeyUsages, "KeyUsages");
  183. }
  184. [Test]
  185. [ExpectedException (typeof (ArgumentException))]
  186. public void WrongAsnEncodedData ()
  187. {
  188. AsnEncodedData aed = new AsnEncodedData (new byte[0]);
  189. X509KeyUsageExtension ku = new X509KeyUsageExtension (X509KeyUsageFlags.CRLSign, true);
  190. ku.CopyFrom (aed); // note: not the same behaviour than using the constructor!
  191. }
  192. [Test]
  193. [ExpectedException (typeof (ArgumentException))]
  194. // [ExpectedException (typeof (ArgumentNullException))]
  195. public void CopyFrom_Null ()
  196. {
  197. X509KeyUsageExtension eku = new X509KeyUsageExtension ();
  198. eku.CopyFrom (null);
  199. }
  200. [Test]
  201. public void CopyFrom_Self ()
  202. {
  203. X509KeyUsageExtension ku = new X509KeyUsageExtension (X509KeyUsageFlags.CRLSign, true);
  204. Assert.IsTrue (ku.Critical, "Critical");
  205. byte[] raw = ku.RawData;
  206. Assert.AreEqual ("03-02-01-02", BitConverter.ToString (raw), "RawData");
  207. AsnEncodedData aed = new AsnEncodedData (raw);
  208. X509KeyUsageExtension copy = new X509KeyUsageExtension (aed, false);
  209. Assert.IsFalse (copy.Critical, "Critical");
  210. Assert.AreEqual (4, copy.RawData.Length, "RawData"); // original Oid ignored
  211. Assert.AreEqual (oid, copy.Oid.Value, "Oid.Value");
  212. Assert.AreEqual (fname, copy.Oid.FriendlyName, "Oid.FriendlyName");
  213. Assert.AreEqual (X509KeyUsageFlags.CRLSign, copy.KeyUsages, "KeyUsages");
  214. }
  215. }
  216. }
  217. #endif