summaryrefslogtreecommitdiffstats
path: root/certService/src/test/java/org
diff options
context:
space:
mode:
authorPiotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com>2021-01-26 10:45:10 +0100
committerJoanna Jeremicz <joanna.jeremicz@nokia.com>2021-01-27 10:00:16 +0100
commitb4030c1d7ebd848f28fb5000ac1d8f7e4fbfca85 (patch)
treec9e29afab63029c1dce1a6772dfd270ff3237642 /certService/src/test/java/org
parent26ef1a575d819de4e1dae9f9044b1ab715f41b13 (diff)
[OOM-CERT-SERVICE] Fix KeyUsage extention sent to CMPv2 server2.3.3
- fix setting key usage to digitalSignature & keyEncipherment & nonRepudiation - set extended key usage to clientAuth & serverAuth Issue-ID: OOM-2658 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: I5c00f622c3d117a63e4f48a3d2a90fd48cce3d0e
Diffstat (limited to 'certService/src/test/java/org')
-rw-r--r--certService/src/test/java/org/onap/oom/certservice/cmpv2client/impl/CmpMessageHelperTest.java70
1 files changed, 70 insertions, 0 deletions
diff --git a/certService/src/test/java/org/onap/oom/certservice/cmpv2client/impl/CmpMessageHelperTest.java b/certService/src/test/java/org/onap/oom/certservice/cmpv2client/impl/CmpMessageHelperTest.java
new file mode 100644
index 00000000..0aae26a4
--- /dev/null
+++ b/certService/src/test/java/org/onap/oom/certservice/cmpv2client/impl/CmpMessageHelperTest.java
@@ -0,0 +1,70 @@
+/*
+ * ============LICENSE_START=======================================================
+ * oom-certservice-api
+ * ================================================================================
+ * Copyright (C) 2021 Nokia. All rights reserved.
+ * ================================================================================
+ * Licensed under the Apache License, Version 2.0 (the "License");
+ * you may not use this file except in compliance with the License.
+ * You may obtain a copy of the License at
+ *
+ * http://www.apache.org/licenses/LICENSE-2.0
+ *
+ * Unless required by applicable law or agreed to in writing, software
+ * distributed under the License is distributed on an "AS IS" BASIS,
+ * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
+ * See the License for the specific language governing permissions and
+ * limitations under the License.
+ * ============LICENSE_END=========================================================
+ */
+
+package org.onap.oom.certservice.cmpv2client.impl;
+
+import static org.junit.jupiter.api.Assertions.assertArrayEquals;
+import static org.junit.jupiter.api.Assertions.assertEquals;
+
+import org.bouncycastle.asn1.x509.ExtendedKeyUsage;
+import org.bouncycastle.asn1.x509.Extension;
+import org.bouncycastle.asn1.x509.Extensions;
+import org.bouncycastle.asn1.x509.GeneralName;
+import org.bouncycastle.asn1.x509.GeneralNames;
+import org.bouncycastle.asn1.x509.KeyPurposeId;
+import org.bouncycastle.asn1.x509.KeyUsage;
+import org.junit.jupiter.api.Test;
+import org.onap.oom.certservice.cmpv2client.exceptions.CmpClientException;
+
+public class CmpMessageHelperTest {
+
+ private final KeyUsage expectedKeyUsage = new KeyUsage(
+ KeyUsage.digitalSignature | KeyUsage.keyEncipherment | KeyUsage.nonRepudiation);
+ private final ExtendedKeyUsage expectedExtendedKeyUsage = new ExtendedKeyUsage(
+ new KeyPurposeId[]{KeyPurposeId.id_kp_clientAuth, KeyPurposeId.id_kp_serverAuth});
+
+ @Test
+ void shouldSetSansInExtensions() throws CmpClientException {
+ //when
+ Extensions extensions = CmpMessageHelper.generateExtension(getTestSans());
+ //then
+ GeneralName[] sans = GeneralNames.fromExtensions(extensions, Extension.subjectAlternativeName).getNames();
+ assertArrayEquals(sans, getTestSans());
+ }
+
+ @Test
+ void shouldSetKeyUsagesInExtensions() throws CmpClientException {
+ //when
+ Extensions extensions = CmpMessageHelper.generateExtension(getTestSans());
+ //then
+ KeyUsage actualKeyUsage = KeyUsage.fromExtensions(extensions);
+ ExtendedKeyUsage actualExtendedKeyUsage = ExtendedKeyUsage.fromExtensions(extensions);
+ assertEquals(this.expectedKeyUsage, actualKeyUsage);
+ assertEquals(this.expectedExtendedKeyUsage, actualExtendedKeyUsage);
+ }
+
+ private GeneralName[] getTestSans() {
+ return new GeneralName[]{
+ new GeneralName(GeneralName.dNSName, "tetHostName"),
+ new GeneralName(GeneralName.iPAddress, "1.2.3.4")
+ };
+ }
+
+}