Blame tests/x509sign-verify-error.c

Packit aea12f
/*
Packit aea12f
 * Copyright (C) 2004-2012 Free Software Foundation, Inc.
Packit aea12f
 *
Packit aea12f
 * Author: Nikos Mavrogiannopoulos, Simon Josefsson
Packit aea12f
 *
Packit aea12f
 * This file is part of GnuTLS.
Packit aea12f
 *
Packit aea12f
 * GnuTLS is free software; you can redistribute it and/or modify it
Packit aea12f
 * under the terms of the GNU General Public License as published by
Packit aea12f
 * the Free Software Foundation; either version 3 of the License, or
Packit aea12f
 * (at your option) any later version.
Packit aea12f
 *
Packit aea12f
 * GnuTLS is distributed in the hope that it will be useful, but
Packit aea12f
 * WITHOUT ANY WARRANTY; without even the implied warranty of
Packit aea12f
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
Packit aea12f
 * General Public License for more details.
Packit aea12f
 *
Packit aea12f
 * You should have received a copy of the GNU General Public License
Packit aea12f
 * along with GnuTLS; if not, write to the Free Software Foundation,
Packit aea12f
 * Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA
Packit aea12f
 */
Packit aea12f
Packit aea12f
/* Parts copied from GnuTLS example programs. */
Packit aea12f
Packit aea12f
#ifdef HAVE_CONFIG_H
Packit aea12f
#include <config.h>
Packit aea12f
#endif
Packit aea12f
Packit aea12f
#include <stdio.h>
Packit aea12f
#include <stdlib.h>
Packit aea12f
#include <string.h>
Packit aea12f
#include <sys/types.h>
Packit aea12f
#include <unistd.h>
Packit aea12f
#include <gnutls/gnutls.h>
Packit aea12f
#include <gnutls/x509.h>
Packit aea12f
#include <gnutls/abstract.h>
Packit aea12f
Packit aea12f
#include "utils.h"
Packit aea12f
Packit aea12f
/* Verify whether gnutls_privkey_sign_hash() will fail
Packit aea12f
 * if the library is in error state.
Packit aea12f
 */
Packit aea12f
Packit aea12f
static void tls_log_func(int level, const char *str)
Packit aea12f
{
Packit aea12f
	fprintf(stderr, "<%d> %s", level, str);
Packit aea12f
}
Packit aea12f
Packit aea12f
/* sha1 hash of "hello" string */
Packit aea12f
const gnutls_datum_t hash_data = {
Packit aea12f
	(void *)
Packit aea12f
	    "\xaa\xf4\xc6\x1d\xdc\xc5\xe8\xa2\xda\xbe"
Packit aea12f
	    "\xde\x0f\x3b\x48\x2c\xd9\xae\xa9\x43\x4d",
Packit aea12f
	20
Packit aea12f
};
Packit aea12f
Packit aea12f
const gnutls_datum_t invalid_hash_data = {
Packit aea12f
	(void *)
Packit aea12f
	    "\xaa\xf4\xc6\x1d\xdc\xca\xe8\xa2\xda\xbe"
Packit aea12f
	    "\xde\x0f\x3b\x48\x2c\xb9\xae\xa9\x43\x4d",
Packit aea12f
	20
Packit aea12f
};
Packit aea12f
Packit aea12f
const gnutls_datum_t raw_data = {
Packit aea12f
	(void *) "hello",
Packit aea12f
	5
Packit aea12f
};
Packit aea12f
Packit aea12f
static char pem1_cert[] =
Packit aea12f
    "-----BEGIN CERTIFICATE-----\n"
Packit aea12f
    "MIICHjCCAYmgAwIBAgIERiYdNzALBgkqhkiG9w0BAQUwGTEXMBUGA1UEAxMOR251\n"
Packit aea12f
    "VExTIHRlc3QgQ0EwHhcNMDcwNDE4MTMyOTI3WhcNMDgwNDE3MTMyOTI3WjAdMRsw\n"
Packit aea12f
    "GQYDVQQDExJHbnVUTFMgdGVzdCBjbGllbnQwgZwwCwYJKoZIhvcNAQEBA4GMADCB\n"
Packit aea12f
    "iAKBgLtmQ/Xyxde2jMzF3/WIO7HJS2oOoa0gUEAIgKFPXKPQ+GzP5jz37AR2ExeL\n"
Packit aea12f
    "ZIkiW8DdU3w77XwEu4C5KL6Om8aOoKUSy/VXHqLnu7czSZ/ju0quak1o/8kR4jKN\n"
Packit aea12f
    "zj2AC41179gAgY8oBAOgIo1hBAf6tjd9IQdJ0glhaZiQo1ipAgMBAAGjdjB0MAwG\n"
Packit aea12f
    "A1UdEwEB/wQCMAAwEwYDVR0lBAwwCgYIKwYBBQUHAwIwDwYDVR0PAQH/BAUDAweg\n"
Packit aea12f
    "ADAdBgNVHQ4EFgQUTLkKm/odNON+3svSBxX+odrLaJEwHwYDVR0jBBgwFoAU6Twc\n"
Packit aea12f
    "+62SbuYGpFYsouHAUyfI8pUwCwYJKoZIhvcNAQEFA4GBALujmBJVZnvaTXr9cFRJ\n"
Packit aea12f
    "jpfc/3X7sLUsMvumcDE01ls/cG5mIatmiyEU9qI3jbgUf82z23ON/acwJf875D3/\n"
Packit aea12f
    "U7jyOsBJ44SEQITbin2yUeJMIm1tievvdNXBDfW95AM507ShzP12sfiJkJfjjdhy\n"
Packit aea12f
    "dc8Siq5JojruiMizAf0pA7in\n" "-----END CERTIFICATE-----\n";
Packit aea12f
Packit aea12f
static char pem1_key[] =
Packit aea12f
    "-----BEGIN RSA PRIVATE KEY-----\n"
Packit aea12f
    "MIICXAIBAAKBgQC7ZkP18sXXtozMxd/1iDuxyUtqDqGtIFBACIChT1yj0Phsz+Y8\n"
Packit aea12f
    "9+wEdhMXi2SJIlvA3VN8O+18BLuAuSi+jpvGjqClEsv1Vx6i57u3M0mf47tKrmpN\n"
Packit aea12f
    "aP/JEeIyjc49gAuNde/YAIGPKAQDoCKNYQQH+rY3fSEHSdIJYWmYkKNYqQIDAQAB\n"
Packit aea12f
    "AoGADpmARG5CQxS+AesNkGmpauepiCz1JBF/JwnyiX6vEzUh0Ypd39SZztwrDxvF\n"
Packit aea12f
    "PJjQaKVljml1zkJpIDVsqvHdyVdse8M+Qn6hw4x2p5rogdvhhIL1mdWo7jWeVJTF\n"
Packit aea12f
    "RKB7zLdMPs3ySdtcIQaF9nUAQ2KJEvldkO3m/bRJFEp54k0CQQDYy+RlTmwRD6hy\n"
Packit aea12f
    "7UtMjR0H3CSZJeQ8svMCxHLmOluG9H1UKk55ZBYfRTsXniqUkJBZ5wuV1L+pR9EK\n"
Packit aea12f
    "ca89a+1VAkEA3UmBelwEv2u9cAU1QjKjmwju1JgXbrjEohK+3B5y0ESEXPAwNQT9\n"
Packit aea12f
    "TrDM1m9AyxYTWLxX93dI5QwNFJtmbtjeBQJARSCWXhsoaDRG8QZrCSjBxfzTCqZD\n"
Packit aea12f
    "ZXtl807ymCipgJm60LiAt0JLr4LiucAsMZz6+j+quQbSakbFCACB8SLV1QJBAKZQ\n"
Packit aea12f
    "YKf+EPNtnmta/rRKKvySsi3GQZZN+Dt3q0r094XgeTsAqrqujVNfPhTMeP4qEVBX\n"
Packit aea12f
    "/iVX2cmMTSh3w3z8MaECQEp0XJWDVKOwcTW6Ajp9SowtmiZ3YDYo1LF9igb4iaLv\n"
Packit aea12f
    "sWZGfbnU3ryjvkb6YuFjgtzbZDZHWQCo8/cOtOBmPdk=\n"
Packit aea12f
    "-----END RSA PRIVATE KEY-----\n";
Packit aea12f
Packit aea12f
static char pem2_cert[] =
Packit aea12f
    "-----BEGIN CERTIFICATE-----\n"
Packit aea12f
    "MIIDbzCCAtqgAwIBAgIERiYdRTALBgkqhkiG9w0BAQUwGTEXMBUGA1UEAxMOR251\n"
Packit aea12f
    "VExTIHRlc3QgQ0EwHhcNMDcwNDE4MTMyOTQxWhcNMDgwNDE3MTMyOTQxWjA3MRsw\n"
Packit aea12f
    "GQYDVQQKExJHbnVUTFMgdGVzdCBzZXJ2ZXIxGDAWBgNVBAMTD3Rlc3QuZ251dGxz\n"
Packit aea12f
    "Lm9yZzCCAbQwggEpBgcqhkjOOAQBMIIBHAKBgLmE9VqBvhoNxYpzjwybL5u2DkvD\n"
Packit aea12f
    "dBp/ZK2d8yjFoEe8m1dW8ZfVfjcD6fJM9OOLfzCjXS+7oaI3wuo1jx+xX6aiXwHx\n"
Packit aea12f
    "IzYr5E8vLd2d1TqmOa96UXzSJY6XdM8exXtLdkOBBx8GFLhuWBLhkOI3b9Ib7GjF\n"
Packit aea12f
    "WOLmMOBqXixjeOwHAhSfVoxIZC/+jap6bZbbBF0W7wilcQKBgGIGfuRcdgi3Rhpd\n"
Packit aea12f
    "15fUKiH7HzHJ0vT6Odgn0Zv8J12nCqca/FPBL0PCN8iFfz1Mq12BMvsdXh5UERYg\n"
Packit aea12f
    "xoBa2YybQ/Dda6D0w/KKnDnSHHsP7/ook4/SoSLr3OCKi60oDs/vCYXpNr2LelDV\n"
Packit aea12f
    "e/clDWxgEcTvcJDP1hvru47GPjqXA4GEAAKBgA+Kh1fy0cLcrN9Liw+Luin34QPk\n"
Packit aea12f
    "VfqymAfW/RKxgLz1urRQ1H+gDkPnn8l4EV/l5Awsa2qkNdy9VOVgNpox0YpZbmsc\n"
Packit aea12f
    "ur0uuut8h+/ayN2h66SD5out+vqOW9c3yDI+lsI+9EPafZECD7e8+O+P90EAXpbf\n"
Packit aea12f
    "DwiW3Oqy6QaCr9Ivo4GTMIGQMAwGA1UdEwEB/wQCMAAwGgYDVR0RBBMwEYIPdGVz\n"
Packit aea12f
    "dC5nbnV0bHMub3JnMBMGA1UdJQQMMAoGCCsGAQUFBwMBMA8GA1UdDwEB/wQFAwMH\n"
Packit aea12f
    "gAAwHQYDVR0OBBYEFL/su87Y6HtwVuzz0SuS1tSZClvzMB8GA1UdIwQYMBaAFOk8\n"
Packit aea12f
    "HPutkm7mBqRWLKLhwFMnyPKVMAsGCSqGSIb3DQEBBQOBgQBCsrnfD1xzh8/Eih1f\n"
Packit aea12f
    "x+M0lPoX1Re5L2ElHI6DJpHYOBPwf9glwxnet2+avzgUQDUFwUSxOhodpyeaACXD\n"
Packit aea12f
    "o0gGVpcH8sOBTQ+aTdM37hGkPxoXjtIkR/LgG5nP2H2JRd5TkW8l13JdM4MJFB4W\n"
Packit aea12f
    "QcDzQ8REwidsfh9uKAluk1c/KQ==\n" "-----END CERTIFICATE-----\n";
Packit aea12f
Packit aea12f
static char pem2_key[] =
Packit aea12f
    "-----BEGIN DSA PRIVATE KEY-----\n"
Packit aea12f
    "MIIBugIBAAKBgQC5hPVagb4aDcWKc48Mmy+btg5Lw3Qaf2StnfMoxaBHvJtXVvGX\n"
Packit aea12f
    "1X43A+nyTPTji38wo10vu6GiN8LqNY8fsV+mol8B8SM2K+RPLy3dndU6pjmvelF8\n"
Packit aea12f
    "0iWOl3TPHsV7S3ZDgQcfBhS4blgS4ZDiN2/SG+xoxVji5jDgal4sY3jsBwIVAJ9W\n"
Packit aea12f
    "jEhkL/6NqnptltsEXRbvCKVxAoGAYgZ+5Fx2CLdGGl3Xl9QqIfsfMcnS9Po52CfR\n"
Packit aea12f
    "m/wnXacKpxr8U8EvQ8I3yIV/PUyrXYEy+x1eHlQRFiDGgFrZjJtD8N1roPTD8oqc\n"
Packit aea12f
    "OdIcew/v+iiTj9KhIuvc4IqLrSgOz+8Jhek2vYt6UNV79yUNbGARxO9wkM/WG+u7\n"
Packit aea12f
    "jsY+OpcCgYAPiodX8tHC3KzfS4sPi7op9+ED5FX6spgH1v0SsYC89bq0UNR/oA5D\n"
Packit aea12f
    "55/JeBFf5eQMLGtqpDXcvVTlYDaaMdGKWW5rHLq9LrrrfIfv2sjdoeukg+aLrfr6\n"
Packit aea12f
    "jlvXN8gyPpbCPvRD2n2RAg+3vPjvj/dBAF6W3w8IltzqsukGgq/SLwIUS5/r/2ya\n"
Packit aea12f
    "AoNBXjeBjgCGMei2m8E=\n" "-----END DSA PRIVATE KEY-----\n";
Packit aea12f
Packit aea12f
const gnutls_datum_t cert_dat[] = {
Packit aea12f
	{(void *) pem1_cert, sizeof(pem1_cert)}
Packit aea12f
	,
Packit aea12f
	{(void *) pem2_cert, sizeof(pem2_cert)}
Packit aea12f
};
Packit aea12f
Packit aea12f
const gnutls_datum_t key_dat[] = {
Packit aea12f
	{(void *) pem1_key, sizeof(pem1_key)}
Packit aea12f
	,
Packit aea12f
	{(void *) pem2_key, sizeof(pem2_key)}
Packit aea12f
};
Packit aea12f
Packit aea12f
void _gnutls_lib_simulate_error(void);
Packit aea12f
void _gnutls_lib_force_operational(void);
Packit aea12f
Packit aea12f
void doit(void)
Packit aea12f
{
Packit aea12f
	gnutls_privkey_t privkey;
Packit aea12f
	gnutls_datum_t signature2;
Packit aea12f
	int ret;
Packit aea12f
	size_t i;
Packit aea12f
Packit aea12f
	global_init();
Packit aea12f
Packit aea12f
	gnutls_global_set_log_function(tls_log_func);
Packit aea12f
	if (debug)
Packit aea12f
		gnutls_global_set_log_level(6);
Packit aea12f
Packit aea12f
	for (i = 0; i < sizeof(key_dat) / sizeof(key_dat[0]); i++) {
Packit aea12f
		if (debug)
Packit aea12f
			success("loop %d\n", (int) i);
Packit aea12f
Packit aea12f
		ret = gnutls_privkey_init(&privkey);
Packit aea12f
		if (ret < 0)
Packit aea12f
			fail("gnutls_privkey_init\n");
Packit aea12f
Packit aea12f
		ret =
Packit aea12f
		    gnutls_privkey_import_x509_raw(privkey, &key_dat[i],
Packit aea12f
						GNUTLS_X509_FMT_PEM, NULL, 0);
Packit aea12f
		if (ret < 0)
Packit aea12f
			fail("gnutls_privkey_import\n");
Packit aea12f
Packit aea12f
		ret = gnutls_privkey_sign_hash(privkey, GNUTLS_DIG_SHA1, 0,
Packit aea12f
						&hash_data, &signature2);
Packit aea12f
		if (ret < 0)
Packit aea12f
			fail("gnutls_privkey_sign_hash\n");
Packit aea12f
Packit aea12f
		gnutls_free(signature2.data);
Packit aea12f
Packit aea12f
		_gnutls_lib_simulate_error();
Packit aea12f
		ret = gnutls_privkey_sign_hash(privkey, GNUTLS_DIG_SHA1, 0,
Packit aea12f
						&hash_data, &signature2);
Packit aea12f
		if (ret != GNUTLS_E_LIB_IN_ERROR_STATE)
Packit aea12f
			fail("gnutls_privkey_sign_hash\n");
Packit aea12f
Packit aea12f
		_gnutls_lib_force_operational();
Packit aea12f
Packit aea12f
		gnutls_privkey_deinit(privkey);
Packit aea12f
	}
Packit aea12f
Packit aea12f
	gnutls_global_deinit();
Packit aea12f
}