blob: 8d733d3ff52cc9998a507a00670e2bbe68837e64 [file] [log] [blame]
Yingdi Yub263f152015-07-12 16:50:13 -07001/* -*- Mode:C++; c-file-style:"gnu"; indent-tabs-mode:nil; -*- */
Davide Pesavento6158f472017-08-11 18:55:09 -04002/*
Laqin Fan0fe72ea2019-05-22 16:42:59 -05003 * Copyright (c) 2013-2019 Regents of the University of California.
Yingdi Yub263f152015-07-12 16:50:13 -07004 *
5 * This file is part of ndn-cxx library (NDN C++ library with eXperimental eXtensions).
6 *
7 * ndn-cxx library is free software: you can redistribute it and/or modify it under the
8 * terms of the GNU Lesser General Public License as published by the Free Software
9 * Foundation, either version 3 of the License, or (at your option) any later version.
10 *
11 * ndn-cxx library is distributed in the hope that it will be useful, but WITHOUT ANY
12 * WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A
13 * PARTICULAR PURPOSE. See the GNU Lesser General Public License for more details.
14 *
15 * You should have received copies of the GNU General Public License and GNU Lesser
16 * General Public License along with ndn-cxx, e.g., in COPYING.md file. If not, see
17 * <http://www.gnu.org/licenses/>.
18 *
19 * See AUTHORS.md for complete list of ndn-cxx authors and contributors.
20 */
21
Davide Pesavento7e780642018-11-24 15:51:34 -050022#include "ndn-cxx/security/transform/verifier-filter.hpp"
Yingdi Yub263f152015-07-12 16:50:13 -070023
Davide Pesavento7e780642018-11-24 15:51:34 -050024#include "ndn-cxx/encoding/buffer-stream.hpp"
Laqin Fan0fe72ea2019-05-22 16:42:59 -050025#include "ndn-cxx/security/key-params.hpp"
Davide Pesavento7e780642018-11-24 15:51:34 -050026#include "ndn-cxx/security/transform/base64-decode.hpp"
27#include "ndn-cxx/security/transform/bool-sink.hpp"
28#include "ndn-cxx/security/transform/buffer-source.hpp"
29#include "ndn-cxx/security/transform/private-key.hpp"
30#include "ndn-cxx/security/transform/public-key.hpp"
31#include "ndn-cxx/security/transform/signer-filter.hpp"
32#include "ndn-cxx/security/transform/stream-sink.hpp"
Yingdi Yub263f152015-07-12 16:50:13 -070033
Davide Pesavento7e780642018-11-24 15:51:34 -050034#include "tests/boost-test.hpp"
Yingdi Yub263f152015-07-12 16:50:13 -070035
36namespace ndn {
37namespace security {
38namespace transform {
39namespace tests {
40
41BOOST_AUTO_TEST_SUITE(Security)
42BOOST_AUTO_TEST_SUITE(Transform)
43BOOST_AUTO_TEST_SUITE(TestVerifierFilter)
44
Laqin Fan0fe72ea2019-05-22 16:42:59 -050045const uint8_t DATA[] = {0x01, 0x02, 0x03, 0x04};
46
Yingdi Yub263f152015-07-12 16:50:13 -070047BOOST_AUTO_TEST_CASE(Rsa)
48{
Davide Pesavento6158f472017-08-11 18:55:09 -040049 const std::string publicKeyPkcs8 =
Yingdi Yub263f152015-07-12 16:50:13 -070050 "MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAw0WM1/WhAxyLtEqsiAJg\n"
51 "WDZWuzkYpeYVdeeZcqRZzzfRgBQTsNozS5t4HnwTZhwwXbH7k3QN0kRTV826Xobw\n"
52 "s3iigohnM9yTK+KKiayPhIAm/+5HGT6SgFJhYhqo1/upWdueojil6RP4/AgavHho\n"
53 "pxlAVbk6G9VdVnlQcQ5Zv0OcGi73c+EnYD/YgURYGSngUi/Ynsh779p2U69/te9g\n"
54 "ZwIL5PuE9BiO6I39cL9z7EK1SfZhOWvDe/qH7YhD/BHwcWit8FjRww1glwRVTJsA\n"
55 "9rH58ynaAix0tcR/nBMRLUX+e3rURHg6UbSjJbdb9qmKM1fTGHKUzL/5pMG6uBU0\n"
56 "ywIDAQAB\n";
Davide Pesavento6158f472017-08-11 18:55:09 -040057 const std::string privateKeyPkcs1 =
Yingdi Yub263f152015-07-12 16:50:13 -070058 "MIIEvgIBADANBgkqhkiG9w0BAQEFAASCBKgwggSkAgEAAoIBAQDDRYzX9aEDHIu0\n"
59 "SqyIAmBYNla7ORil5hV155lypFnPN9GAFBOw2jNLm3gefBNmHDBdsfuTdA3SRFNX\n"
60 "zbpehvCzeKKCiGcz3JMr4oqJrI+EgCb/7kcZPpKAUmFiGqjX+6lZ256iOKXpE/j8\n"
61 "CBq8eGinGUBVuTob1V1WeVBxDlm/Q5waLvdz4SdgP9iBRFgZKeBSL9ieyHvv2nZT\n"
62 "r3+172BnAgvk+4T0GI7ojf1wv3PsQrVJ9mE5a8N7+oftiEP8EfBxaK3wWNHDDWCX\n"
63 "BFVMmwD2sfnzKdoCLHS1xH+cExEtRf57etREeDpRtKMlt1v2qYozV9MYcpTMv/mk\n"
64 "wbq4FTTLAgMBAAECggEANCRyQ4iXghkxROdbwsW/rE52QnAwoLwbpuw9EVvJj4e8\n"
65 "LZMu3t6lK99L5/gBxhZo49wO7YTj2+3aw2twBKXLyGDCJFEAHd0cf29yxuiJOjxu\n"
66 "LZEW8yq+O/3De0rbIzFUO2ZlqbOuudpXdhVD7mfIqjYX88wONDh5QAoM7OOEG4oe\n"
67 "xkFMWcDUwU0j5QqPlfhinrgMWYqXFNf9TZvDNXLCjmHPHZSHDnWOaguWzhhS8wlc\n"
68 "PTBblm1hG4+iBe9dv+h/15//bT/BTXVYUqBdviB9HzNRdpdLWxdydWbf7bi8iz10\n"
69 "ClTDKS6jKM6rFapwdF5zZBPYXFUaQUStrN4I9riswQKBgQDljwLLCiYhxOB6sUYU\n"
70 "J4wcmvydAapjZX+jAVveT2ZpzM+cL2nhr1FzmzMvED0UxgXG6tBkwFZIQbYlLUdH\n"
71 "aaeOKDHxQqNgwv8D6u++Nk4x7gzpLLaCCHhKQtkqlZPONN7TsHIz+Pm/9KM1mFYA\n"
72 "buzDj8uY8ZFCTAm/4pmEaiO46QKBgQDZw4VPpwlG/qS/NPP1LQI5k5Wb564mH8Fe\n"
73 "nugCwCZs186lyQ8zOodfLz/Cl0qXoABwHns67O2U19XUPuq9vPsm5GVjBDRwR8GB\n"
74 "tk9zPWnXwccNeHCfntk9vwbfdiH06aDQc0AiZvguxW5KrEDo3BKPtylF6SBN52uE\n"
75 "sU8n5h1vkwKBgQCwzdDs6MgtwiDS3q6G316+uXBOzPWa0JXZyjYjpyvN2P0d4ja+\n"
76 "p/UoASUO3obs9QeGCVyv/KN3y4SqZZE8o1d12ed9VkHXSNh4//3elpzrP9mZzeJT\n"
77 "jIp5R7tTXRkV/QqSKJgNB3n0Kkt5//ZdJxIcHShGh+fFFCN+Mtzia41P4QKBgQCV\n"
78 "wOTTow45OXL4XyUJzVsDV2ACaDAV3a6wMF1jTtrd7QcacYs3cp+XsLmLS1mrrge/\n"
79 "Eucx3a+AtXFCVcY+l1CsLVMf5cteD6qeVk6K9IfuLT+DHvlse+Pvl4fVcrrlXykN\n"
80 "UMShI+i22WUAizbULEvDc3U5s5lYmbYR+ZFy4cgKawKBgC0UnWJ2oygfERLeaVGl\n"
81 "/YnHJC50/dIKbZakaapXOFFgiep5q1jmxR2U8seb+nvtFPsTLFAdOXCfwUk+4z/h\n"
82 "kfWtB3+8H5jyoC1gkJ7EMyxu8tb4mz5U6+SPB4QLSetwvfWP2YXS/PkTq19G7iGE\n"
83 "novjJ9azSBJ6OyR5UH/DxBji\n";
Yingdi Yub263f152015-07-12 16:50:13 -070084
85 OBufferStream os1;
86 bufferSource(publicKeyPkcs8) >> base64Decode() >> streamSink(os1);
Davide Pesavento8a14b9b2017-09-17 01:26:06 -040087 auto pubKey = os1.buf();
Yingdi Yub263f152015-07-12 16:50:13 -070088
89 PublicKey pKey;
Davide Pesavento5d0b0102017-10-07 13:43:16 -040090 pKey.loadPkcs8(pubKey->data(), pubKey->size());
Davide Pesavento6158f472017-08-11 18:55:09 -040091
92 PrivateKey sKey;
93 sKey.loadPkcs1Base64(reinterpret_cast<const uint8_t*>(privateKeyPkcs1.data()), privateKeyPkcs1.size());
94
95 OBufferStream os2;
Laqin Fan0fe72ea2019-05-22 16:42:59 -050096 bufferSource(DATA, sizeof(DATA)) >> signerFilter(DigestAlgorithm::SHA256, sKey) >> streamSink(os2);
Davide Pesavento6158f472017-08-11 18:55:09 -040097 auto sig = os2.buf();
98
Davide Pesavento5d0b0102017-10-07 13:43:16 -040099 BOOST_CHECK_THROW(VerifierFilter(DigestAlgorithm::NONE, pKey, sig->data(), sig->size()), Error);
Laqin Fan0fe72ea2019-05-22 16:42:59 -0500100 BOOST_CHECK_THROW(VerifierFilter(DigestAlgorithm::SHA256, sKey, sig->data(), sig->size()), Error);
Davide Pesavento8a14b9b2017-09-17 01:26:06 -0400101
Davide Pesavento6158f472017-08-11 18:55:09 -0400102 bool result = false;
Laqin Fan0fe72ea2019-05-22 16:42:59 -0500103 bufferSource(DATA, sizeof(DATA)) >>
Davide Pesavento5d0b0102017-10-07 13:43:16 -0400104 verifierFilter(DigestAlgorithm::SHA256, pKey, sig->data(), sig->size()) >>
Davide Pesavento6158f472017-08-11 18:55:09 -0400105 boolSink(result);
Yingdi Yub263f152015-07-12 16:50:13 -0700106
107 BOOST_CHECK_EQUAL(result, true);
108}
109
110BOOST_AUTO_TEST_CASE(Ecdsa)
111{
Davide Pesavento6158f472017-08-11 18:55:09 -0400112 const std::string privateKeyPkcs1 =
Yingdi Yub263f152015-07-12 16:50:13 -0700113 "MIIBeQIBADCCAQMGByqGSM49AgEwgfcCAQEwLAYHKoZIzj0BAQIhAP////8AAAAB\n"
114 "AAAAAAAAAAAAAAAA////////////////MFsEIP////8AAAABAAAAAAAAAAAAAAAA\n"
115 "///////////////8BCBaxjXYqjqT57PrvVV2mIa8ZR0GsMxTsPY7zjw+J9JgSwMV\n"
116 "AMSdNgiG5wSTamZ44ROdJreBn36QBEEEaxfR8uEsQkf4vOblY6RA8ncDfYEt6zOg\n"
117 "9KE5RdiYwpZP40Li/hp/m47n60p8D54WK84zV2sxXs7LtkBoN79R9QIhAP////8A\n"
118 "AAAA//////////+85vqtpxeehPO5ysL8YyVRAgEBBG0wawIBAQQgRxwcbzK9RV6A\n"
119 "HYFsDcykI86o3M/a1KlJn0z8PcLMBZOhRANCAARobhYm4MC3RCQQzi3b0oNR3ORC\n"
120 "Uw8aupbORaGC304afBzo7sBks9KsPKHDKspLtctFeaXkOKxD3dG8HKWXfbLw\n";
Davide Pesavento6158f472017-08-11 18:55:09 -0400121 const std::string publicKeyPkcs8 =
Yingdi Yub263f152015-07-12 16:50:13 -0700122 "MIIBSzCCAQMGByqGSM49AgEwgfcCAQEwLAYHKoZIzj0BAQIhAP////8AAAABAAAA\n"
123 "AAAAAAAAAAAA////////////////MFsEIP////8AAAABAAAAAAAAAAAAAAAA////\n"
124 "///////////8BCBaxjXYqjqT57PrvVV2mIa8ZR0GsMxTsPY7zjw+J9JgSwMVAMSd\n"
125 "NgiG5wSTamZ44ROdJreBn36QBEEEaxfR8uEsQkf4vOblY6RA8ncDfYEt6zOg9KE5\n"
126 "RdiYwpZP40Li/hp/m47n60p8D54WK84zV2sxXs7LtkBoN79R9QIhAP////8AAAAA\n"
127 "//////////+85vqtpxeehPO5ysL8YyVRAgEBA0IABGhuFibgwLdEJBDOLdvSg1Hc\n"
128 "5EJTDxq6ls5FoYLfThp8HOjuwGSz0qw8ocMqyku1y0V5peQ4rEPd0bwcpZd9svA=\n";
Yingdi Yub263f152015-07-12 16:50:13 -0700129
130 OBufferStream os1;
131 bufferSource(publicKeyPkcs8) >> base64Decode() >> streamSink(os1);
Davide Pesavento8a14b9b2017-09-17 01:26:06 -0400132 auto pubKey = os1.buf();
Yingdi Yub263f152015-07-12 16:50:13 -0700133
134 PublicKey pKey;
Davide Pesavento5d0b0102017-10-07 13:43:16 -0400135 pKey.loadPkcs8(pubKey->data(), pubKey->size());
Davide Pesavento6158f472017-08-11 18:55:09 -0400136
137 PrivateKey sKey;
138 sKey.loadPkcs1Base64(reinterpret_cast<const uint8_t*>(privateKeyPkcs1.data()), privateKeyPkcs1.size());
139
140 OBufferStream os2;
Laqin Fan0fe72ea2019-05-22 16:42:59 -0500141 bufferSource(DATA, sizeof(DATA)) >> signerFilter(DigestAlgorithm::SHA256, sKey) >> streamSink(os2);
Davide Pesavento6158f472017-08-11 18:55:09 -0400142 auto sig = os2.buf();
143
Davide Pesavento5d0b0102017-10-07 13:43:16 -0400144 BOOST_CHECK_THROW(VerifierFilter(DigestAlgorithm::NONE, pKey, sig->data(), sig->size()), Error);
Laqin Fan0fe72ea2019-05-22 16:42:59 -0500145 BOOST_CHECK_THROW(VerifierFilter(DigestAlgorithm::SHA256, sKey, sig->data(), sig->size()), Error);
Davide Pesavento8a14b9b2017-09-17 01:26:06 -0400146
Davide Pesavento6158f472017-08-11 18:55:09 -0400147 bool result = false;
Laqin Fan0fe72ea2019-05-22 16:42:59 -0500148 bufferSource(DATA, sizeof(DATA)) >>
Davide Pesavento5d0b0102017-10-07 13:43:16 -0400149 verifierFilter(DigestAlgorithm::SHA256, pKey, sig->data(), sig->size()) >>
Davide Pesavento6158f472017-08-11 18:55:09 -0400150 boolSink(result);
Yingdi Yub263f152015-07-12 16:50:13 -0700151
152 BOOST_CHECK_EQUAL(result, true);
153}
154
Laqin Fan0fe72ea2019-05-22 16:42:59 -0500155BOOST_AUTO_TEST_CASE(Hmac)
156{
157 auto sKey = generatePrivateKey(HmacKeyParams());
158
159 OBufferStream os;
160 bufferSource(DATA, sizeof(DATA)) >> signerFilter(DigestAlgorithm::SHA256, *sKey) >> streamSink(os);
161 auto sig = os.buf();
162
163 BOOST_CHECK_THROW(VerifierFilter(DigestAlgorithm::NONE, *sKey, sig->data(), sig->size()), Error);
164
165 bool result = false;
166 bufferSource(DATA, sizeof(DATA)) >>
167 verifierFilter(DigestAlgorithm::SHA256, *sKey, sig->data(), sig->size()) >>
168 boolSink(result);
169
170 BOOST_CHECK_EQUAL(result, true);
171}
172
Davide Pesavento8a14b9b2017-09-17 01:26:06 -0400173BOOST_AUTO_TEST_CASE(InvalidKey)
174{
Laqin Fan0fe72ea2019-05-22 16:42:59 -0500175 PublicKey pubKey;
176 BOOST_CHECK_THROW(VerifierFilter(DigestAlgorithm::SHA256, pubKey, nullptr, 0), Error);
177 PrivateKey privKey;
178 BOOST_CHECK_THROW(VerifierFilter(DigestAlgorithm::SHA256, privKey, nullptr, 0), Error);
Davide Pesavento8a14b9b2017-09-17 01:26:06 -0400179}
180
Yingdi Yub263f152015-07-12 16:50:13 -0700181BOOST_AUTO_TEST_SUITE_END() // TestVerifierFilter
182BOOST_AUTO_TEST_SUITE_END() // Transform
183BOOST_AUTO_TEST_SUITE_END() // Security
184
185} // namespace tests
186} // namespace transform
187} // namespace security
188} // namespace ndn