diff options
author | Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> | 2021-01-26 10:45:10 +0100 |
---|---|---|
committer | Joanna Jeremicz <joanna.jeremicz@nokia.com> | 2021-01-27 10:00:16 +0100 |
commit | b4030c1d7ebd848f28fb5000ac1d8f7e4fbfca85 (patch) | |
tree | c9e29afab63029c1dce1a6772dfd270ff3237642 /certService/src/test | |
parent | 26ef1a575d819de4e1dae9f9044b1ab715f41b13 (diff) |
[OOM-CERT-SERVICE] Fix KeyUsage extention sent to CMPv2 server2.3.3
- fix setting key usage to digitalSignature & keyEncipherment & nonRepudiation
- set extended key usage to clientAuth & serverAuth
Issue-ID: OOM-2658
Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com>
Change-Id: I5c00f622c3d117a63e4f48a3d2a90fd48cce3d0e
Diffstat (limited to 'certService/src/test')
-rw-r--r-- | certService/src/test/java/org/onap/oom/certservice/cmpv2client/impl/CmpMessageHelperTest.java | 70 |
1 files changed, 70 insertions, 0 deletions
diff --git a/certService/src/test/java/org/onap/oom/certservice/cmpv2client/impl/CmpMessageHelperTest.java b/certService/src/test/java/org/onap/oom/certservice/cmpv2client/impl/CmpMessageHelperTest.java new file mode 100644 index 00000000..0aae26a4 --- /dev/null +++ b/certService/src/test/java/org/onap/oom/certservice/cmpv2client/impl/CmpMessageHelperTest.java @@ -0,0 +1,70 @@ +/* + * ============LICENSE_START======================================================= + * oom-certservice-api + * ================================================================================ + * Copyright (C) 2021 Nokia. All rights reserved. + * ================================================================================ + * Licensed under the Apache License, Version 2.0 (the "License"); + * you may not use this file except in compliance with the License. + * You may obtain a copy of the License at + * + * http://www.apache.org/licenses/LICENSE-2.0 + * + * Unless required by applicable law or agreed to in writing, software + * distributed under the License is distributed on an "AS IS" BASIS, + * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. + * See the License for the specific language governing permissions and + * limitations under the License. + * ============LICENSE_END========================================================= + */ + +package org.onap.oom.certservice.cmpv2client.impl; + +import static org.junit.jupiter.api.Assertions.assertArrayEquals; +import static org.junit.jupiter.api.Assertions.assertEquals; + +import org.bouncycastle.asn1.x509.ExtendedKeyUsage; +import org.bouncycastle.asn1.x509.Extension; +import org.bouncycastle.asn1.x509.Extensions; +import org.bouncycastle.asn1.x509.GeneralName; +import org.bouncycastle.asn1.x509.GeneralNames; +import org.bouncycastle.asn1.x509.KeyPurposeId; +import org.bouncycastle.asn1.x509.KeyUsage; +import org.junit.jupiter.api.Test; +import org.onap.oom.certservice.cmpv2client.exceptions.CmpClientException; + +public class CmpMessageHelperTest { + + private final KeyUsage expectedKeyUsage = new KeyUsage( + KeyUsage.digitalSignature | KeyUsage.keyEncipherment | KeyUsage.nonRepudiation); + private final ExtendedKeyUsage expectedExtendedKeyUsage = new ExtendedKeyUsage( + new KeyPurposeId[]{KeyPurposeId.id_kp_clientAuth, KeyPurposeId.id_kp_serverAuth}); + + @Test + void shouldSetSansInExtensions() throws CmpClientException { + //when + Extensions extensions = CmpMessageHelper.generateExtension(getTestSans()); + //then + GeneralName[] sans = GeneralNames.fromExtensions(extensions, Extension.subjectAlternativeName).getNames(); + assertArrayEquals(sans, getTestSans()); + } + + @Test + void shouldSetKeyUsagesInExtensions() throws CmpClientException { + //when + Extensions extensions = CmpMessageHelper.generateExtension(getTestSans()); + //then + KeyUsage actualKeyUsage = KeyUsage.fromExtensions(extensions); + ExtendedKeyUsage actualExtendedKeyUsage = ExtendedKeyUsage.fromExtensions(extensions); + assertEquals(this.expectedKeyUsage, actualKeyUsage); + assertEquals(this.expectedExtendedKeyUsage, actualExtendedKeyUsage); + } + + private GeneralName[] getTestSans() { + return new GeneralName[]{ + new GeneralName(GeneralName.dNSName, "tetHostName"), + new GeneralName(GeneralName.iPAddress, "1.2.3.4") + }; + } + +} |