blob: 4c75204d4626f8b639018a50b793f585fc26fb6f [file] [log] [blame]
Yingdi Yub263f152015-07-12 16:50:13 -07001/* -*- Mode:C++; c-file-style:"gnu"; indent-tabs-mode:nil; -*- */
Davide Pesavento6158f472017-08-11 18:55:09 -04002/*
Laqin Fan0fe72ea2019-05-22 16:42:59 -05003 * Copyright (c) 2013-2019 Regents of the University of California.
Yingdi Yub263f152015-07-12 16:50:13 -07004 *
5 * This file is part of ndn-cxx library (NDN C++ library with eXperimental eXtensions).
6 *
7 * ndn-cxx library is free software: you can redistribute it and/or modify it under the
8 * terms of the GNU Lesser General Public License as published by the Free Software
9 * Foundation, either version 3 of the License, or (at your option) any later version.
10 *
11 * ndn-cxx library is distributed in the hope that it will be useful, but WITHOUT ANY
12 * WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A
13 * PARTICULAR PURPOSE. See the GNU Lesser General Public License for more details.
14 *
15 * You should have received copies of the GNU General Public License and GNU Lesser
16 * General Public License along with ndn-cxx, e.g., in COPYING.md file. If not, see
17 * <http://www.gnu.org/licenses/>.
18 *
19 * See AUTHORS.md for complete list of ndn-cxx authors and contributors.
20 */
21
Davide Pesavento7e780642018-11-24 15:51:34 -050022#include "ndn-cxx/security/transform/signer-filter.hpp"
Yingdi Yub263f152015-07-12 16:50:13 -070023
Davide Pesavento7e780642018-11-24 15:51:34 -050024#include "ndn-cxx/encoding/buffer-stream.hpp"
Laqin Fan0fe72ea2019-05-22 16:42:59 -050025#include "ndn-cxx/security/key-params.hpp"
Davide Pesavento7e780642018-11-24 15:51:34 -050026#include "ndn-cxx/security/transform/base64-decode.hpp"
27#include "ndn-cxx/security/transform/buffer-source.hpp"
28#include "ndn-cxx/security/transform/private-key.hpp"
29#include "ndn-cxx/security/transform/stream-sink.hpp"
30#include "ndn-cxx/security/verification-helpers.hpp"
Yingdi Yub263f152015-07-12 16:50:13 -070031
Davide Pesavento7e780642018-11-24 15:51:34 -050032#include "tests/boost-test.hpp"
Yingdi Yub263f152015-07-12 16:50:13 -070033
34namespace ndn {
35namespace security {
36namespace transform {
37namespace tests {
38
39BOOST_AUTO_TEST_SUITE(Security)
40BOOST_AUTO_TEST_SUITE(Transform)
41BOOST_AUTO_TEST_SUITE(TestSignerFilter)
42
Laqin Fan0fe72ea2019-05-22 16:42:59 -050043const uint8_t DATA[] = {0x01, 0x02, 0x03, 0x04};
44
Yingdi Yub263f152015-07-12 16:50:13 -070045BOOST_AUTO_TEST_CASE(Rsa)
46{
Davide Pesavento6158f472017-08-11 18:55:09 -040047 const std::string publicKeyPkcs8 =
Yingdi Yub263f152015-07-12 16:50:13 -070048 "MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAw0WM1/WhAxyLtEqsiAJg\n"
49 "WDZWuzkYpeYVdeeZcqRZzzfRgBQTsNozS5t4HnwTZhwwXbH7k3QN0kRTV826Xobw\n"
50 "s3iigohnM9yTK+KKiayPhIAm/+5HGT6SgFJhYhqo1/upWdueojil6RP4/AgavHho\n"
51 "pxlAVbk6G9VdVnlQcQ5Zv0OcGi73c+EnYD/YgURYGSngUi/Ynsh779p2U69/te9g\n"
52 "ZwIL5PuE9BiO6I39cL9z7EK1SfZhOWvDe/qH7YhD/BHwcWit8FjRww1glwRVTJsA\n"
53 "9rH58ynaAix0tcR/nBMRLUX+e3rURHg6UbSjJbdb9qmKM1fTGHKUzL/5pMG6uBU0\n"
54 "ywIDAQAB\n";
Davide Pesavento6158f472017-08-11 18:55:09 -040055 const std::string privateKeyPkcs1 =
Yingdi Yub263f152015-07-12 16:50:13 -070056 "MIIEpAIBAAKCAQEAw0WM1/WhAxyLtEqsiAJgWDZWuzkYpeYVdeeZcqRZzzfRgBQT\n"
57 "sNozS5t4HnwTZhwwXbH7k3QN0kRTV826Xobws3iigohnM9yTK+KKiayPhIAm/+5H\n"
58 "GT6SgFJhYhqo1/upWdueojil6RP4/AgavHhopxlAVbk6G9VdVnlQcQ5Zv0OcGi73\n"
59 "c+EnYD/YgURYGSngUi/Ynsh779p2U69/te9gZwIL5PuE9BiO6I39cL9z7EK1SfZh\n"
60 "OWvDe/qH7YhD/BHwcWit8FjRww1glwRVTJsA9rH58ynaAix0tcR/nBMRLUX+e3rU\n"
61 "RHg6UbSjJbdb9qmKM1fTGHKUzL/5pMG6uBU0ywIDAQABAoIBADQkckOIl4IZMUTn\n"
62 "W8LFv6xOdkJwMKC8G6bsPRFbyY+HvC2TLt7epSvfS+f4AcYWaOPcDu2E49vt2sNr\n"
63 "cASly8hgwiRRAB3dHH9vcsboiTo8bi2RFvMqvjv9w3tK2yMxVDtmZamzrrnaV3YV\n"
64 "Q+5nyKo2F/PMDjQ4eUAKDOzjhBuKHsZBTFnA1MFNI+UKj5X4Yp64DFmKlxTX/U2b\n"
65 "wzVywo5hzx2Uhw51jmoLls4YUvMJXD0wW5ZtYRuPogXvXb/of9ef/20/wU11WFKg\n"
66 "Xb4gfR8zUXaXS1sXcnVm3+24vIs9dApUwykuoyjOqxWqcHRec2QT2FxVGkFEraze\n"
67 "CPa4rMECgYEA5Y8CywomIcTgerFGFCeMHJr8nQGqY2V/owFb3k9maczPnC9p4a9R\n"
68 "c5szLxA9FMYFxurQZMBWSEG2JS1HR2mnjigx8UKjYML/A+rvvjZOMe4M6Sy2ggh4\n"
69 "SkLZKpWTzjTe07ByM/j5v/SjNZhWAG7sw4/LmPGRQkwJv+KZhGojuOkCgYEA2cOF\n"
70 "T6cJRv6kvzTz9S0COZOVm+euJh/BXp7oAsAmbNfOpckPMzqHXy8/wpdKl6AAcB57\n"
71 "OuztlNfV1D7qvbz7JuRlYwQ0cEfBgbZPcz1p18HHDXhwn57ZPb8G33Yh9Omg0HNA\n"
72 "Imb4LsVuSqxA6NwSj7cpRekgTedrhLFPJ+Ydb5MCgYEAsM3Q7OjILcIg0t6uht9e\n"
73 "vrlwTsz1mtCV2co2I6crzdj9HeI2vqf1KAElDt6G7PUHhglcr/yjd8uEqmWRPKNX\n"
74 "ddnnfVZB10jYeP/93pac6z/Zmc3iU4yKeUe7U10ZFf0KkiiYDQd59CpLef/2XScS\n"
75 "HB0oRofnxRQjfjLc4muNT+ECgYEAlcDk06MOOTly+F8lCc1bA1dgAmgwFd2usDBd\n"
76 "Y07a3e0HGnGLN3Kfl7C5i0tZq64HvxLnMd2vgLVxQlXGPpdQrC1TH+XLXg+qnlZO\n"
77 "ivSH7i0/gx75bHvj75eH1XK65V8pDVDEoSPottllAIs21CxLw3N1ObOZWJm2EfmR\n"
78 "cuHICmsCgYAtFJ1idqMoHxES3mlRpf2JxyQudP3SCm2WpGmqVzhRYInqeatY5sUd\n"
79 "lPLHm/p77RT7EyxQHTlwn8FJPuM/4ZH1rQd/vB+Y8qAtYJCexDMsbvLW+Js+VOvk\n"
80 "jweEC0nrcL31j9mF0vz5E6tfRu4hhJ6L4yfWs0gSejskeVB/w8QY4g==\n";
Yingdi Yub263f152015-07-12 16:50:13 -070081
82 OBufferStream os1;
83 bufferSource(publicKeyPkcs8) >> base64Decode() >> streamSink(os1);
Davide Pesavento6158f472017-08-11 18:55:09 -040084 auto pubKey = os1.buf();
Yingdi Yub263f152015-07-12 16:50:13 -070085
86 PrivateKey sKey;
Davide Pesavento6158f472017-08-11 18:55:09 -040087 sKey.loadPkcs1Base64(reinterpret_cast<const uint8_t*>(privateKeyPkcs1.data()), privateKeyPkcs1.size());
Yingdi Yub263f152015-07-12 16:50:13 -070088
Davide Pesavento06f1bdf2017-09-16 18:59:15 -040089 BOOST_CHECK_THROW(SignerFilter(DigestAlgorithm::NONE, sKey), Error);
90
Davide Pesavento6158f472017-08-11 18:55:09 -040091 OBufferStream os2;
Laqin Fan0fe72ea2019-05-22 16:42:59 -050092 bufferSource(DATA, sizeof(DATA)) >> signerFilter(DigestAlgorithm::SHA256, sKey) >> streamSink(os2);
Davide Pesavento6158f472017-08-11 18:55:09 -040093 auto sig = os2.buf();
Yingdi Yub263f152015-07-12 16:50:13 -070094
Laqin Fan0fe72ea2019-05-22 16:42:59 -050095 BOOST_CHECK(verifySignature(DATA, sizeof(DATA), sig->data(), sig->size(), pubKey->data(), pubKey->size()));
Yingdi Yub263f152015-07-12 16:50:13 -070096}
97
98BOOST_AUTO_TEST_CASE(Ecdsa)
99{
Davide Pesavento6158f472017-08-11 18:55:09 -0400100 const std::string privateKeyPkcs1 =
Yingdi Yub263f152015-07-12 16:50:13 -0700101 "MIIBaAIBAQQgRxwcbzK9RV6AHYFsDcykI86o3M/a1KlJn0z8PcLMBZOggfowgfcC\n"
102 "AQEwLAYHKoZIzj0BAQIhAP////8AAAABAAAAAAAAAAAAAAAA////////////////\n"
103 "MFsEIP////8AAAABAAAAAAAAAAAAAAAA///////////////8BCBaxjXYqjqT57Pr\n"
104 "vVV2mIa8ZR0GsMxTsPY7zjw+J9JgSwMVAMSdNgiG5wSTamZ44ROdJreBn36QBEEE\n"
105 "axfR8uEsQkf4vOblY6RA8ncDfYEt6zOg9KE5RdiYwpZP40Li/hp/m47n60p8D54W\n"
106 "K84zV2sxXs7LtkBoN79R9QIhAP////8AAAAA//////////+85vqtpxeehPO5ysL8\n"
107 "YyVRAgEBoUQDQgAEaG4WJuDAt0QkEM4t29KDUdzkQlMPGrqWzkWhgt9OGnwc6O7A\n"
108 "ZLPSrDyhwyrKS7XLRXml5DisQ93RvByll32y8A==\n";
Davide Pesavento6158f472017-08-11 18:55:09 -0400109 const std::string publicKeyPkcs8 =
Yingdi Yub263f152015-07-12 16:50:13 -0700110 "MIIBSzCCAQMGByqGSM49AgEwgfcCAQEwLAYHKoZIzj0BAQIhAP////8AAAABAAAA\n"
111 "AAAAAAAAAAAA////////////////MFsEIP////8AAAABAAAAAAAAAAAAAAAA////\n"
112 "///////////8BCBaxjXYqjqT57PrvVV2mIa8ZR0GsMxTsPY7zjw+J9JgSwMVAMSd\n"
113 "NgiG5wSTamZ44ROdJreBn36QBEEEaxfR8uEsQkf4vOblY6RA8ncDfYEt6zOg9KE5\n"
114 "RdiYwpZP40Li/hp/m47n60p8D54WK84zV2sxXs7LtkBoN79R9QIhAP////8AAAAA\n"
115 "//////////+85vqtpxeehPO5ysL8YyVRAgEBA0IABGhuFibgwLdEJBDOLdvSg1Hc\n"
116 "5EJTDxq6ls5FoYLfThp8HOjuwGSz0qw8ocMqyku1y0V5peQ4rEPd0bwcpZd9svA=\n";
Yingdi Yub263f152015-07-12 16:50:13 -0700117
118 OBufferStream os1;
119 bufferSource(publicKeyPkcs8) >> base64Decode() >> streamSink(os1);
Davide Pesavento6158f472017-08-11 18:55:09 -0400120 auto pubKey = os1.buf();
Yingdi Yub263f152015-07-12 16:50:13 -0700121
122 PrivateKey sKey;
Davide Pesavento6158f472017-08-11 18:55:09 -0400123 sKey.loadPkcs1Base64(reinterpret_cast<const uint8_t*>(privateKeyPkcs1.data()), privateKeyPkcs1.size());
Yingdi Yub263f152015-07-12 16:50:13 -0700124
Davide Pesavento06f1bdf2017-09-16 18:59:15 -0400125 BOOST_CHECK_THROW(SignerFilter(DigestAlgorithm::NONE, sKey), Error);
126
Davide Pesavento6158f472017-08-11 18:55:09 -0400127 OBufferStream os2;
Laqin Fan0fe72ea2019-05-22 16:42:59 -0500128 bufferSource(DATA, sizeof(DATA)) >> signerFilter(DigestAlgorithm::SHA256, sKey) >> streamSink(os2);
Davide Pesavento6158f472017-08-11 18:55:09 -0400129 auto sig = os2.buf();
Yingdi Yub263f152015-07-12 16:50:13 -0700130
Laqin Fan0fe72ea2019-05-22 16:42:59 -0500131 BOOST_CHECK(verifySignature(DATA, sizeof(DATA), sig->data(), sig->size(), pubKey->data(), pubKey->size()));
132}
133
134BOOST_AUTO_TEST_CASE(Hmac)
135{
136 auto sKey = generatePrivateKey(HmacKeyParams());
137
138 BOOST_CHECK_THROW(SignerFilter(DigestAlgorithm::NONE, *sKey), Error);
139
140 OBufferStream os;
141 bufferSource(DATA, sizeof(DATA)) >> signerFilter(DigestAlgorithm::SHA256, *sKey) >> streamSink(os);
142 auto sig = os.buf();
143
144 BOOST_CHECK_EQUAL(sig->size(), 32);
145}
146
147BOOST_AUTO_TEST_CASE(HmacKeyTooShort)
148{
149 auto sKey = generatePrivateKey(HmacKeyParams(256));
150
151 OBufferStream os;
152 BOOST_CHECK_THROW(bufferSource(DATA, sizeof(DATA)) >>
153 signerFilter(DigestAlgorithm::SHA512, *sKey) >>
154 streamSink(os),
155 Error);
Yingdi Yub263f152015-07-12 16:50:13 -0700156}
157
Davide Pesavento06f1bdf2017-09-16 18:59:15 -0400158BOOST_AUTO_TEST_CASE(InvalidKey)
159{
160 PrivateKey sKey;
161 BOOST_CHECK_THROW(SignerFilter(DigestAlgorithm::SHA256, sKey), Error);
162}
163
Yingdi Yub263f152015-07-12 16:50:13 -0700164BOOST_AUTO_TEST_SUITE_END() // TestSignerFilter
165BOOST_AUTO_TEST_SUITE_END() // Transform
166BOOST_AUTO_TEST_SUITE_END() // Security
167
168} // namespace tests
169} // namespace transform
170} // namespace security
171} // namespace ndn