pkcs12_format_test.c 36 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989
  1. /*
  2. * Copyright 2020-2021 The OpenSSL Project Authors. All Rights Reserved.
  3. *
  4. * Licensed under the Apache License 2.0 (the "License"). You may not use
  5. * this file except in compliance with the License. You can obtain a copy
  6. * in the file LICENSE in the source distribution or at
  7. * https://www.openssl.org/source/license.html
  8. */
  9. #include <stdio.h>
  10. #include <string.h>
  11. #include <stdlib.h>
  12. #include "internal/nelem.h"
  13. #include <openssl/pkcs12.h>
  14. #include <openssl/x509.h>
  15. #include <openssl/x509v3.h>
  16. #include <openssl/pem.h>
  17. #include "testutil.h"
  18. #include "helpers/pkcs12.h"
  19. static int default_libctx = 1;
  20. static OSSL_LIB_CTX *testctx = NULL;
  21. static OSSL_PROVIDER *nullprov = NULL;
  22. static OSSL_PROVIDER *deflprov = NULL;
  23. static OSSL_PROVIDER *lgcyprov = NULL;
  24. /* --------------------------------------------------------------------------
  25. * PKCS12 component test data
  26. */
  27. static const unsigned char CERT1[] =
  28. {
  29. 0x30, 0x82, 0x01, 0xed, 0x30, 0x82, 0x01, 0x56, 0xa0, 0x03, 0x02, 0x01, 0x02, 0x02, 0x09, 0x00,
  30. 0x8b, 0x4b, 0x5e, 0x6c, 0x03, 0x28, 0x4e, 0xe6, 0x30, 0x0d, 0x06, 0x09, 0x2a, 0x86, 0x48, 0x86,
  31. 0xf7, 0x0d, 0x01, 0x01, 0x0b, 0x05, 0x00, 0x30, 0x19, 0x31, 0x17, 0x30, 0x15, 0x06, 0x03, 0x55,
  32. 0x04, 0x03, 0x0c, 0x0e, 0x50, 0x31, 0x32, 0x54, 0x65, 0x73, 0x74, 0x2d, 0x52, 0x6f, 0x6f, 0x74,
  33. 0x2d, 0x41, 0x30, 0x1e, 0x17, 0x0d, 0x31, 0x39, 0x30, 0x39, 0x33, 0x30, 0x30, 0x30, 0x34, 0x36,
  34. 0x35, 0x36, 0x5a, 0x17, 0x0d, 0x32, 0x39, 0x30, 0x39, 0x32, 0x37, 0x30, 0x30, 0x34, 0x36, 0x35,
  35. 0x36, 0x5a, 0x30, 0x1b, 0x31, 0x19, 0x30, 0x17, 0x06, 0x03, 0x55, 0x04, 0x03, 0x0c, 0x10, 0x50,
  36. 0x31, 0x32, 0x54, 0x65, 0x73, 0x74, 0x2d, 0x53, 0x65, 0x72, 0x76, 0x65, 0x72, 0x2d, 0x31, 0x30,
  37. 0x81, 0x9f, 0x30, 0x0d, 0x06, 0x09, 0x2a, 0x86, 0x48, 0x86, 0xf7, 0x0d, 0x01, 0x01, 0x01, 0x05,
  38. 0x00, 0x03, 0x81, 0x8d, 0x00, 0x30, 0x81, 0x89, 0x02, 0x81, 0x81, 0x00, 0xbc, 0xdc, 0x6f, 0x8c,
  39. 0x7a, 0x2a, 0x4b, 0xea, 0x66, 0x66, 0x04, 0xa9, 0x05, 0x92, 0x53, 0xd7, 0x13, 0x3c, 0x49, 0xe1,
  40. 0xc8, 0xbb, 0xdf, 0x3d, 0xcb, 0x88, 0x31, 0x07, 0x20, 0x59, 0x93, 0x24, 0x7f, 0x7d, 0xc6, 0x84,
  41. 0x81, 0x16, 0x64, 0x4a, 0x52, 0xa6, 0x30, 0x44, 0xdc, 0x1a, 0x30, 0xde, 0xae, 0x29, 0x18, 0xcf,
  42. 0xc7, 0xf3, 0xcf, 0x0c, 0xb7, 0x8e, 0x2b, 0x1e, 0x21, 0x01, 0x0b, 0xfb, 0xe5, 0xe6, 0xcf, 0x2b,
  43. 0x84, 0xe1, 0x33, 0xf8, 0xba, 0x02, 0xfc, 0x30, 0xfa, 0xc4, 0x33, 0xc7, 0x37, 0xc6, 0x7f, 0x72,
  44. 0x31, 0x92, 0x1d, 0x8f, 0xa0, 0xfb, 0xe5, 0x4a, 0x08, 0x31, 0x78, 0x80, 0x9c, 0x23, 0xb4, 0xe9,
  45. 0x19, 0x56, 0x04, 0xfa, 0x0d, 0x07, 0x04, 0xb7, 0x43, 0xac, 0x4c, 0x49, 0x7c, 0xc2, 0xa1, 0x44,
  46. 0xc1, 0x48, 0x7d, 0x28, 0xe5, 0x23, 0x66, 0x07, 0x22, 0xd5, 0xf0, 0xf1, 0x02, 0x03, 0x01, 0x00,
  47. 0x01, 0xa3, 0x3b, 0x30, 0x39, 0x30, 0x1f, 0x06, 0x03, 0x55, 0x1d, 0x23, 0x04, 0x18, 0x30, 0x16,
  48. 0x80, 0x14, 0xdb, 0xbb, 0xb8, 0x92, 0x4e, 0x24, 0x0b, 0x1b, 0xbb, 0x78, 0x33, 0xf9, 0x01, 0x02,
  49. 0x23, 0x0d, 0x96, 0x18, 0x30, 0x47, 0x30, 0x09, 0x06, 0x03, 0x55, 0x1d, 0x13, 0x04, 0x02, 0x30,
  50. 0x00, 0x30, 0x0b, 0x06, 0x03, 0x55, 0x1d, 0x0f, 0x04, 0x04, 0x03, 0x02, 0x04, 0xf0, 0x30, 0x0d,
  51. 0x06, 0x09, 0x2a, 0x86, 0x48, 0x86, 0xf7, 0x0d, 0x01, 0x01, 0x0b, 0x05, 0x00, 0x03, 0x81, 0x81,
  52. 0x00, 0x1c, 0x13, 0xdc, 0x02, 0xf1, 0x44, 0x36, 0x65, 0xa9, 0xbe, 0x30, 0x1c, 0x66, 0x14, 0x20,
  53. 0x86, 0x5a, 0xa8, 0x69, 0x25, 0xf8, 0x1a, 0xb6, 0x9e, 0x5e, 0xe9, 0x89, 0xb8, 0x67, 0x70, 0x19,
  54. 0x87, 0x60, 0xeb, 0x4b, 0x11, 0x71, 0x85, 0xf8, 0xe9, 0xa7, 0x3e, 0x20, 0x42, 0xec, 0x43, 0x25,
  55. 0x01, 0x03, 0xe5, 0x4d, 0x83, 0x22, 0xf5, 0x8e, 0x3a, 0x1a, 0x1b, 0xd4, 0x1c, 0xda, 0x6b, 0x9d,
  56. 0x10, 0x1b, 0xee, 0x67, 0x4e, 0x1f, 0x69, 0xab, 0xbc, 0xaa, 0x62, 0x8e, 0x9e, 0xc6, 0xee, 0xd6,
  57. 0x09, 0xc0, 0xca, 0xe0, 0xaa, 0x9f, 0x07, 0xb2, 0xc2, 0xbb, 0x31, 0x96, 0xa2, 0x04, 0x62, 0xd3,
  58. 0x13, 0x32, 0x29, 0x67, 0x6e, 0xad, 0x2e, 0x0b, 0xea, 0x04, 0x7c, 0x8c, 0x5a, 0x5d, 0xac, 0x14,
  59. 0xaa, 0x61, 0x7f, 0x28, 0x6c, 0x2d, 0x64, 0x2d, 0xc3, 0xaf, 0x77, 0x52, 0x90, 0xb4, 0x37, 0xc0,
  60. 0x30,
  61. };
  62. static const unsigned char CERT2[] =
  63. {
  64. 0x30, 0x82, 0x01, 0xed, 0x30, 0x82, 0x01, 0x56, 0xa0, 0x03, 0x02, 0x01, 0x02, 0x02, 0x09, 0x00,
  65. 0x8b, 0x4b, 0x5e, 0x6c, 0x03, 0x28, 0x4e, 0xe7, 0x30, 0x0d, 0x06, 0x09, 0x2a, 0x86, 0x48, 0x86,
  66. 0xf7, 0x0d, 0x01, 0x01, 0x0b, 0x05, 0x00, 0x30, 0x19, 0x31, 0x17, 0x30, 0x15, 0x06, 0x03, 0x55,
  67. 0x04, 0x03, 0x0c, 0x0e, 0x50, 0x31, 0x32, 0x54, 0x65, 0x73, 0x74, 0x2d, 0x52, 0x6f, 0x6f, 0x74,
  68. 0x2d, 0x41, 0x30, 0x1e, 0x17, 0x0d, 0x31, 0x39, 0x30, 0x39, 0x33, 0x30, 0x30, 0x30, 0x34, 0x36,
  69. 0x35, 0x36, 0x5a, 0x17, 0x0d, 0x32, 0x39, 0x30, 0x39, 0x32, 0x37, 0x30, 0x30, 0x34, 0x36, 0x35,
  70. 0x36, 0x5a, 0x30, 0x1b, 0x31, 0x19, 0x30, 0x17, 0x06, 0x03, 0x55, 0x04, 0x03, 0x0c, 0x10, 0x50,
  71. 0x31, 0x32, 0x54, 0x65, 0x73, 0x74, 0x2d, 0x43, 0x6c, 0x69, 0x65, 0x6e, 0x74, 0x2d, 0x31, 0x30,
  72. 0x81, 0x9f, 0x30, 0x0d, 0x06, 0x09, 0x2a, 0x86, 0x48, 0x86, 0xf7, 0x0d, 0x01, 0x01, 0x01, 0x05,
  73. 0x00, 0x03, 0x81, 0x8d, 0x00, 0x30, 0x81, 0x89, 0x02, 0x81, 0x81, 0x00, 0xa8, 0x6e, 0x40, 0x86,
  74. 0x9f, 0x98, 0x59, 0xfb, 0x57, 0xbf, 0xc1, 0x55, 0x12, 0x38, 0xeb, 0xb3, 0x46, 0x34, 0xc9, 0x35,
  75. 0x4d, 0xfd, 0x03, 0xe9, 0x3a, 0x88, 0x9e, 0x97, 0x8f, 0xf4, 0xec, 0x36, 0x7b, 0x3f, 0xba, 0xb8,
  76. 0xa5, 0x96, 0x30, 0x03, 0xc5, 0xc6, 0xd9, 0xa8, 0x4e, 0xbc, 0x23, 0x51, 0xa1, 0x96, 0xd2, 0x03,
  77. 0x98, 0x73, 0xb6, 0x17, 0x9c, 0x77, 0xd4, 0x95, 0x1e, 0x1b, 0xb3, 0x1b, 0xc8, 0x71, 0xd1, 0x2e,
  78. 0x31, 0xc7, 0x6a, 0x75, 0x57, 0x08, 0x7f, 0xba, 0x70, 0x76, 0xf7, 0x67, 0xf4, 0x4e, 0xbe, 0xfc,
  79. 0x70, 0x61, 0x41, 0x07, 0x2b, 0x7c, 0x3c, 0x3b, 0xb3, 0xbc, 0xd5, 0xa8, 0xbd, 0x28, 0xd8, 0x49,
  80. 0xd3, 0xe1, 0x78, 0xc8, 0xc1, 0x42, 0x5e, 0x18, 0x36, 0xa8, 0x41, 0xf7, 0xc8, 0xaa, 0x35, 0xfe,
  81. 0x2d, 0xd1, 0xb4, 0xcc, 0x00, 0x67, 0xae, 0x79, 0xd3, 0x28, 0xd5, 0x5b, 0x02, 0x03, 0x01, 0x00,
  82. 0x01, 0xa3, 0x3b, 0x30, 0x39, 0x30, 0x1f, 0x06, 0x03, 0x55, 0x1d, 0x23, 0x04, 0x18, 0x30, 0x16,
  83. 0x80, 0x14, 0xdb, 0xbb, 0xb8, 0x92, 0x4e, 0x24, 0x0b, 0x1b, 0xbb, 0x78, 0x33, 0xf9, 0x01, 0x02,
  84. 0x23, 0x0d, 0x96, 0x18, 0x30, 0x47, 0x30, 0x09, 0x06, 0x03, 0x55, 0x1d, 0x13, 0x04, 0x02, 0x30,
  85. 0x00, 0x30, 0x0b, 0x06, 0x03, 0x55, 0x1d, 0x0f, 0x04, 0x04, 0x03, 0x02, 0x04, 0xf0, 0x30, 0x0d,
  86. 0x06, 0x09, 0x2a, 0x86, 0x48, 0x86, 0xf7, 0x0d, 0x01, 0x01, 0x0b, 0x05, 0x00, 0x03, 0x81, 0x81,
  87. 0x00, 0x3b, 0xa6, 0x73, 0xbe, 0xe0, 0x28, 0xed, 0x1f, 0x29, 0x78, 0x4c, 0xc0, 0x1f, 0xe9, 0x85,
  88. 0xc6, 0x8f, 0xe3, 0x87, 0x7c, 0xd9, 0xe7, 0x0a, 0x37, 0xe8, 0xaa, 0xb5, 0xd2, 0x7f, 0xf8, 0x90,
  89. 0x20, 0x80, 0x35, 0xa7, 0x79, 0x2b, 0x04, 0xa7, 0xbf, 0xe6, 0x7b, 0x58, 0xcb, 0xec, 0x0e, 0x58,
  90. 0xef, 0x2a, 0x70, 0x8a, 0x56, 0x8a, 0xcf, 0x6b, 0x7a, 0x74, 0x0c, 0xf4, 0x15, 0x37, 0x93, 0xcd,
  91. 0xe6, 0xb2, 0xa1, 0x83, 0x09, 0xdb, 0x9e, 0x4f, 0xff, 0x6a, 0x17, 0x4f, 0x33, 0xc9, 0xcc, 0x90,
  92. 0x2a, 0x67, 0xff, 0x16, 0x78, 0xa8, 0x2c, 0x10, 0xe0, 0x52, 0x8c, 0xe6, 0xe9, 0x90, 0x8d, 0xe0,
  93. 0x62, 0x04, 0x9a, 0x0f, 0x44, 0x01, 0x82, 0x14, 0x92, 0x44, 0x25, 0x69, 0x22, 0xb7, 0xb8, 0xc5,
  94. 0x94, 0x4c, 0x4b, 0x1c, 0x9b, 0x92, 0x60, 0x66, 0x90, 0x4e, 0xb9, 0xa8, 0x4c, 0x89, 0xbb, 0x0f,
  95. 0x0b,
  96. };
  97. static const unsigned char KEY1[] =
  98. {
  99. 0x30, 0x82, 0x02, 0x5d, 0x02, 0x01, 0x00, 0x02, 0x81, 0x81, 0x00, 0xbc, 0xdc, 0x6f, 0x8c, 0x7a,
  100. 0x2a, 0x4b, 0xea, 0x66, 0x66, 0x04, 0xa9, 0x05, 0x92, 0x53, 0xd7, 0x13, 0x3c, 0x49, 0xe1, 0xc8,
  101. 0xbb, 0xdf, 0x3d, 0xcb, 0x88, 0x31, 0x07, 0x20, 0x59, 0x93, 0x24, 0x7f, 0x7d, 0xc6, 0x84, 0x81,
  102. 0x16, 0x64, 0x4a, 0x52, 0xa6, 0x30, 0x44, 0xdc, 0x1a, 0x30, 0xde, 0xae, 0x29, 0x18, 0xcf, 0xc7,
  103. 0xf3, 0xcf, 0x0c, 0xb7, 0x8e, 0x2b, 0x1e, 0x21, 0x01, 0x0b, 0xfb, 0xe5, 0xe6, 0xcf, 0x2b, 0x84,
  104. 0xe1, 0x33, 0xf8, 0xba, 0x02, 0xfc, 0x30, 0xfa, 0xc4, 0x33, 0xc7, 0x37, 0xc6, 0x7f, 0x72, 0x31,
  105. 0x92, 0x1d, 0x8f, 0xa0, 0xfb, 0xe5, 0x4a, 0x08, 0x31, 0x78, 0x80, 0x9c, 0x23, 0xb4, 0xe9, 0x19,
  106. 0x56, 0x04, 0xfa, 0x0d, 0x07, 0x04, 0xb7, 0x43, 0xac, 0x4c, 0x49, 0x7c, 0xc2, 0xa1, 0x44, 0xc1,
  107. 0x48, 0x7d, 0x28, 0xe5, 0x23, 0x66, 0x07, 0x22, 0xd5, 0xf0, 0xf1, 0x02, 0x03, 0x01, 0x00, 0x01,
  108. 0x02, 0x81, 0x81, 0x00, 0xa5, 0x6d, 0xf9, 0x8f, 0xf5, 0x5a, 0xa3, 0x50, 0xd9, 0x0d, 0x37, 0xbb,
  109. 0xce, 0x13, 0x94, 0xb8, 0xea, 0x32, 0x7f, 0x0c, 0xf5, 0x46, 0x0b, 0x90, 0x17, 0x7e, 0x5e, 0x63,
  110. 0xbd, 0xa4, 0x78, 0xcd, 0x19, 0x97, 0xd4, 0x92, 0x30, 0x78, 0xaa, 0xb4, 0xa7, 0x9c, 0xc6, 0xdf,
  111. 0x2a, 0x65, 0x0e, 0xb5, 0x9f, 0x9c, 0x84, 0x0d, 0x4d, 0x3a, 0x74, 0xfc, 0xd0, 0xb4, 0x09, 0x74,
  112. 0xc4, 0xb8, 0x24, 0x03, 0xa8, 0xf0, 0xf8, 0x0d, 0x5c, 0x8e, 0xdf, 0x4b, 0xe1, 0x0a, 0x8f, 0x4f,
  113. 0xd5, 0xc7, 0x9b, 0x54, 0x55, 0x8f, 0x00, 0x5c, 0xea, 0x4c, 0x73, 0xf9, 0x1b, 0xbf, 0xb8, 0x93,
  114. 0x33, 0x20, 0xce, 0x45, 0xd9, 0x03, 0x02, 0xb2, 0x36, 0xc5, 0x0a, 0x30, 0x50, 0x78, 0x80, 0x66,
  115. 0x00, 0x22, 0x38, 0x86, 0xcf, 0x63, 0x4a, 0x5c, 0xbf, 0x2b, 0xd9, 0x6e, 0xe6, 0xf0, 0x39, 0xad,
  116. 0x12, 0x25, 0x41, 0xb9, 0x02, 0x41, 0x00, 0xf3, 0x7c, 0x07, 0x99, 0x64, 0x3a, 0x28, 0x8c, 0x8d,
  117. 0x05, 0xfe, 0x32, 0xb5, 0x4c, 0x8c, 0x6d, 0xde, 0x3d, 0x16, 0x08, 0xa0, 0x01, 0x61, 0x4f, 0x8e,
  118. 0xa0, 0xf7, 0x26, 0x26, 0xb5, 0x8e, 0xc0, 0x7a, 0xce, 0x86, 0x34, 0xde, 0xb8, 0xef, 0x86, 0x01,
  119. 0xbe, 0x24, 0xaa, 0x9b, 0x36, 0x93, 0x72, 0x9b, 0xf9, 0xc6, 0xcb, 0x76, 0x84, 0x67, 0x06, 0x06,
  120. 0x30, 0x50, 0xdf, 0x42, 0x17, 0xe0, 0xa7, 0x02, 0x41, 0x00, 0xc6, 0x91, 0xa0, 0x41, 0x34, 0x11,
  121. 0x67, 0x4b, 0x08, 0x0f, 0xda, 0xa7, 0x99, 0xec, 0x58, 0x11, 0xa5, 0x82, 0xdb, 0x50, 0xfe, 0x77,
  122. 0xe2, 0xd1, 0x53, 0x9c, 0x7d, 0xe8, 0xbf, 0xe7, 0x7c, 0xa9, 0x01, 0xb1, 0x87, 0xc3, 0x52, 0x79,
  123. 0x9e, 0x2c, 0xa7, 0x6f, 0x02, 0x37, 0x32, 0xef, 0x24, 0x31, 0x21, 0x0b, 0x86, 0x05, 0x32, 0x4a,
  124. 0x2e, 0x0b, 0x65, 0x05, 0xd3, 0xd6, 0x30, 0xb2, 0xfc, 0xa7, 0x02, 0x41, 0x00, 0xc2, 0xed, 0x31,
  125. 0xdc, 0x40, 0x9c, 0x3a, 0xe8, 0x42, 0xe2, 0x60, 0x5e, 0x52, 0x3c, 0xc5, 0x54, 0x14, 0x0e, 0x8d,
  126. 0x7c, 0x3c, 0x34, 0xbe, 0xa6, 0x05, 0x86, 0xa2, 0x36, 0x5d, 0xd9, 0x0e, 0x3e, 0xd4, 0x52, 0x50,
  127. 0xa9, 0x35, 0x01, 0x93, 0x68, 0x92, 0x2e, 0x9a, 0x86, 0x27, 0x1a, 0xab, 0x32, 0x9e, 0xe2, 0x79,
  128. 0x9f, 0x5b, 0xf3, 0xa5, 0xd2, 0xf1, 0xd3, 0x6e, 0x7b, 0x3e, 0x1b, 0x85, 0x93, 0x02, 0x40, 0x68,
  129. 0xb8, 0xb6, 0x7e, 0x8c, 0xba, 0x3c, 0xf2, 0x8a, 0x2e, 0xea, 0x4f, 0x07, 0xd3, 0x68, 0x62, 0xee,
  130. 0x1a, 0x04, 0x16, 0x44, 0x0d, 0xef, 0xf6, 0x1b, 0x95, 0x65, 0xa5, 0xd1, 0x47, 0x81, 0x2c, 0x14,
  131. 0xb3, 0x8e, 0xf9, 0x08, 0xcf, 0x11, 0x07, 0x55, 0xca, 0x2a, 0xad, 0xf7, 0xd3, 0xbd, 0x0f, 0x97,
  132. 0xf0, 0xde, 0xde, 0x70, 0xb6, 0x44, 0x70, 0x47, 0xf7, 0xf9, 0xcf, 0x75, 0x61, 0x7f, 0xf3, 0x02,
  133. 0x40, 0x38, 0x4a, 0x67, 0xaf, 0xae, 0xb6, 0xb2, 0x6a, 0x00, 0x25, 0x5a, 0xa4, 0x65, 0x20, 0xb1,
  134. 0x13, 0xbd, 0x83, 0xff, 0xb4, 0xbc, 0xf4, 0xdd, 0xa1, 0xbb, 0x1c, 0x96, 0x37, 0x35, 0xf4, 0xbf,
  135. 0xed, 0x4c, 0xed, 0x92, 0xe8, 0xac, 0xc9, 0xc1, 0xa5, 0xa3, 0x23, 0x66, 0x40, 0x8a, 0xa1, 0xe6,
  136. 0xe3, 0x95, 0xfe, 0xc4, 0x53, 0xf5, 0x7d, 0x6e, 0xca, 0x45, 0x42, 0xe4, 0xc2, 0x9f, 0xe5, 0x1e,
  137. 0xb5,
  138. };
  139. static const unsigned char KEY2[] =
  140. {
  141. 0x30, 0x82, 0x02, 0x5c, 0x02, 0x01, 0x00, 0x02, 0x81, 0x81, 0x00, 0xa8, 0x6e, 0x40, 0x86, 0x9f,
  142. 0x98, 0x59, 0xfb, 0x57, 0xbf, 0xc1, 0x55, 0x12, 0x38, 0xeb, 0xb3, 0x46, 0x34, 0xc9, 0x35, 0x4d,
  143. 0xfd, 0x03, 0xe9, 0x3a, 0x88, 0x9e, 0x97, 0x8f, 0xf4, 0xec, 0x36, 0x7b, 0x3f, 0xba, 0xb8, 0xa5,
  144. 0x96, 0x30, 0x03, 0xc5, 0xc6, 0xd9, 0xa8, 0x4e, 0xbc, 0x23, 0x51, 0xa1, 0x96, 0xd2, 0x03, 0x98,
  145. 0x73, 0xb6, 0x17, 0x9c, 0x77, 0xd4, 0x95, 0x1e, 0x1b, 0xb3, 0x1b, 0xc8, 0x71, 0xd1, 0x2e, 0x31,
  146. 0xc7, 0x6a, 0x75, 0x57, 0x08, 0x7f, 0xba, 0x70, 0x76, 0xf7, 0x67, 0xf4, 0x4e, 0xbe, 0xfc, 0x70,
  147. 0x61, 0x41, 0x07, 0x2b, 0x7c, 0x3c, 0x3b, 0xb3, 0xbc, 0xd5, 0xa8, 0xbd, 0x28, 0xd8, 0x49, 0xd3,
  148. 0xe1, 0x78, 0xc8, 0xc1, 0x42, 0x5e, 0x18, 0x36, 0xa8, 0x41, 0xf7, 0xc8, 0xaa, 0x35, 0xfe, 0x2d,
  149. 0xd1, 0xb4, 0xcc, 0x00, 0x67, 0xae, 0x79, 0xd3, 0x28, 0xd5, 0x5b, 0x02, 0x03, 0x01, 0x00, 0x01,
  150. 0x02, 0x81, 0x81, 0x00, 0xa6, 0x00, 0x83, 0xf8, 0x2b, 0x33, 0xac, 0xfb, 0xdb, 0xf0, 0x52, 0x4b,
  151. 0xd6, 0x39, 0xe3, 0x94, 0x3d, 0x8d, 0xa9, 0x01, 0xb0, 0x6b, 0xbe, 0x7f, 0x10, 0x01, 0xb6, 0xcd,
  152. 0x0a, 0x45, 0x0a, 0xca, 0x67, 0x8e, 0xd8, 0x29, 0x44, 0x8a, 0x51, 0xa8, 0x66, 0x35, 0x26, 0x30,
  153. 0x8b, 0xe9, 0x41, 0xa6, 0x22, 0xec, 0xd2, 0xf0, 0x58, 0x41, 0x33, 0x26, 0xf2, 0x3f, 0xe8, 0x75,
  154. 0x4f, 0xc7, 0x5d, 0x2e, 0x5a, 0xa8, 0x7a, 0xd2, 0xbf, 0x59, 0xa0, 0x86, 0x79, 0x0b, 0x92, 0x6c,
  155. 0x95, 0x5d, 0x87, 0x63, 0x5c, 0xd6, 0x1a, 0xc0, 0xf6, 0x7a, 0x15, 0x8d, 0xc7, 0x3c, 0xb6, 0x9e,
  156. 0xa6, 0x58, 0x46, 0x9b, 0xbf, 0x3e, 0x28, 0x8c, 0xdf, 0x1a, 0x87, 0xaa, 0x7e, 0xf5, 0xf2, 0xcb,
  157. 0x5e, 0x84, 0x2d, 0xf6, 0x82, 0x7e, 0x89, 0x4e, 0xf5, 0xe6, 0x3c, 0x92, 0x80, 0x1e, 0x98, 0x1c,
  158. 0x6a, 0x7b, 0x57, 0x01, 0x02, 0x41, 0x00, 0xdd, 0x60, 0x95, 0xd7, 0xa1, 0x9d, 0x0c, 0xa1, 0x84,
  159. 0xc5, 0x39, 0xca, 0x67, 0x4c, 0x1c, 0x06, 0x71, 0x5b, 0x5c, 0x2d, 0x8d, 0xce, 0xcd, 0xe2, 0x79,
  160. 0xc8, 0x33, 0xbe, 0x50, 0x37, 0x60, 0x9f, 0x3b, 0xb9, 0x59, 0x55, 0x22, 0x1f, 0xa5, 0x4b, 0x1d,
  161. 0xca, 0x38, 0xa0, 0xab, 0x87, 0x9c, 0x86, 0x0e, 0xdb, 0x1c, 0x4f, 0x4f, 0x07, 0xed, 0x18, 0x3f,
  162. 0x05, 0x3c, 0xec, 0x78, 0x11, 0xf6, 0x99, 0x02, 0x41, 0x00, 0xc2, 0xc5, 0xcf, 0xbe, 0x95, 0x91,
  163. 0xeb, 0xcf, 0x47, 0xf3, 0x33, 0x32, 0xc7, 0x7e, 0x93, 0x56, 0xf7, 0xd8, 0xf9, 0xd4, 0xb6, 0xd6,
  164. 0x20, 0xac, 0xba, 0x8a, 0x20, 0x19, 0x14, 0xab, 0xc5, 0x5d, 0xb2, 0x08, 0xcc, 0x77, 0x7c, 0x65,
  165. 0xa8, 0xdb, 0x66, 0x97, 0x36, 0x44, 0x2c, 0x63, 0xc0, 0x6a, 0x7e, 0xb0, 0x0b, 0x5c, 0x90, 0x12,
  166. 0x50, 0xb4, 0x36, 0x60, 0xc3, 0x1f, 0x22, 0x0c, 0xc8, 0x13, 0x02, 0x40, 0x33, 0xc8, 0x7e, 0x04,
  167. 0x7c, 0x97, 0x61, 0xf6, 0xfe, 0x39, 0xac, 0x34, 0xfe, 0x48, 0xbd, 0x5d, 0x7c, 0x72, 0xa4, 0x73,
  168. 0x3b, 0x72, 0x9e, 0x92, 0x55, 0x6e, 0x51, 0x3c, 0x39, 0x43, 0x5a, 0xe4, 0xa4, 0x71, 0xcc, 0xc5,
  169. 0xaf, 0x3f, 0xbb, 0xc8, 0x80, 0x65, 0x67, 0x2d, 0x9e, 0x32, 0x10, 0x99, 0x03, 0x2c, 0x99, 0xc8,
  170. 0xab, 0x71, 0xed, 0x31, 0xf8, 0xbb, 0xde, 0xee, 0x69, 0x7f, 0xba, 0x31, 0x02, 0x40, 0x7e, 0xbc,
  171. 0x60, 0x55, 0x4e, 0xd5, 0xc8, 0x6e, 0xf4, 0x0e, 0x57, 0xbe, 0x2e, 0xf9, 0x39, 0xbe, 0x59, 0x3f,
  172. 0xa2, 0x30, 0xbb, 0x57, 0xd1, 0xa3, 0x13, 0x2e, 0x55, 0x7c, 0x7c, 0x6a, 0xd8, 0xde, 0x02, 0xbe,
  173. 0x9e, 0xed, 0x10, 0xd0, 0xc5, 0x73, 0x1d, 0xea, 0x3e, 0xb1, 0x55, 0x81, 0x02, 0xef, 0x48, 0xc8,
  174. 0x1c, 0x5c, 0x7a, 0x92, 0xb0, 0x58, 0xd3, 0x19, 0x5b, 0x5d, 0xa2, 0xb6, 0x56, 0x69, 0x02, 0x40,
  175. 0x1e, 0x00, 0x6a, 0x9f, 0xba, 0xee, 0x46, 0x5a, 0xc5, 0xb5, 0x9f, 0x91, 0x33, 0xdd, 0xc9, 0x96,
  176. 0x75, 0xb7, 0x87, 0xcf, 0x18, 0x1c, 0xb7, 0xb9, 0x3f, 0x04, 0x10, 0xb8, 0x75, 0xa9, 0xb8, 0xa0,
  177. 0x31, 0x35, 0x03, 0x30, 0x89, 0xc8, 0x37, 0x68, 0x20, 0x30, 0x99, 0x39, 0x96, 0xd6, 0x2b, 0x3d,
  178. 0x5e, 0x45, 0x84, 0xf7, 0xd2, 0x61, 0x50, 0xc9, 0x50, 0xba, 0x8d, 0x08, 0xaa, 0xd0, 0x08, 0x1e,
  179. };
  180. static const PKCS12_ATTR ATTRS1[] = {
  181. { "friendlyName", "george" },
  182. { "localKeyID", "1234567890" },
  183. { "1.2.3.4.5", "MyCustomAttribute" },
  184. { NULL, NULL }
  185. };
  186. static const PKCS12_ATTR ATTRS2[] = {
  187. { "friendlyName", "janet" },
  188. { "localKeyID", "987654321" },
  189. { "1.2.3.5.8.13", "AnotherCustomAttribute" },
  190. { NULL, NULL }
  191. };
  192. static const PKCS12_ATTR ATTRS3[] = {
  193. { "friendlyName", "wildduk" },
  194. { "localKeyID", "1122334455" },
  195. { "oracle-jdk-trustedkeyusage", "anyExtendedKeyUsage" },
  196. { NULL, NULL }
  197. };
  198. static const PKCS12_ATTR ATTRS4[] = {
  199. { "friendlyName", "wildduk" },
  200. { "localKeyID", "1122334455" },
  201. { NULL, NULL }
  202. };
  203. static const PKCS12_ENC enc_default = {
  204. #ifndef OPENSSL_NO_DES
  205. NID_pbe_WithSHA1And3_Key_TripleDES_CBC,
  206. #else
  207. NID_aes_128_cbc,
  208. #endif
  209. "Password1",
  210. 1000
  211. };
  212. static const PKCS12_ENC mac_default = {
  213. NID_sha1,
  214. "Password1",
  215. 1000
  216. };
  217. static const int enc_nids_all[] = {
  218. /* NOTE: To use PBES2 we pass the desired cipher NID instead of NID_pbes2 */
  219. NID_aes_128_cbc,
  220. NID_aes_256_cbc,
  221. #ifndef OPENSSL_NO_DES
  222. NID_des_ede3_cbc,
  223. NID_des_cbc,
  224. #endif
  225. #ifndef OPENSSL_NO_RC5
  226. NID_rc5_cbc,
  227. #endif
  228. #ifndef OPENSSL_NO_RC4
  229. NID_rc4,
  230. #endif
  231. #ifndef OPENSSL_NO_RC2
  232. NID_rc2_cbc,
  233. #endif
  234. #ifndef OPENSSL_NO_MD2
  235. # ifndef OPENSSL_NO_DES
  236. NID_pbeWithMD2AndDES_CBC,
  237. # endif
  238. # ifndef OPENSSL_NO_RC2
  239. NID_pbeWithMD2AndRC2_CBC,
  240. # endif
  241. #endif
  242. #ifndef OPENSSL_NO_MD5
  243. # ifndef OPENSSL_NO_DES
  244. NID_pbeWithMD5AndDES_CBC,
  245. # endif
  246. # ifndef OPENSSL_NO_RC2
  247. NID_pbeWithMD5AndRC2_CBC,
  248. # endif
  249. #endif
  250. #ifndef OPENSSL_NO_DES
  251. NID_pbeWithSHA1AndDES_CBC,
  252. #endif
  253. #ifndef OPENSSL_NO_RC2
  254. NID_pbe_WithSHA1And128BitRC2_CBC,
  255. NID_pbe_WithSHA1And40BitRC2_CBC,
  256. NID_pbeWithSHA1AndRC2_CBC,
  257. #endif
  258. #ifndef OPENSSL_NO_RC4
  259. NID_pbe_WithSHA1And128BitRC4,
  260. NID_pbe_WithSHA1And40BitRC4,
  261. #endif
  262. #ifndef OPENSSL_NO_DES
  263. NID_pbe_WithSHA1And2_Key_TripleDES_CBC,
  264. NID_pbe_WithSHA1And3_Key_TripleDES_CBC,
  265. #endif
  266. };
  267. static const int enc_nids_no_legacy[] = {
  268. /* NOTE: To use PBES2 we pass the desired cipher NID instead of NID_pbes2 */
  269. NID_aes_128_cbc,
  270. NID_aes_256_cbc,
  271. #ifndef OPENSSL_NO_DES
  272. NID_des_ede3_cbc,
  273. NID_pbe_WithSHA1And2_Key_TripleDES_CBC,
  274. NID_pbe_WithSHA1And3_Key_TripleDES_CBC,
  275. #endif
  276. };
  277. static const int mac_nids[] = {
  278. NID_sha1,
  279. NID_md5,
  280. NID_sha256,
  281. NID_sha512,
  282. NID_sha3_256,
  283. NID_sha3_512
  284. };
  285. static const int iters[] = {
  286. 1,
  287. 1000
  288. };
  289. static const char *passwords[] = {
  290. "Password1",
  291. "",
  292. };
  293. /* --------------------------------------------------------------------------
  294. * Local functions
  295. */
  296. static int get_custom_oid(void)
  297. {
  298. static int sec_nid = -1;
  299. if (sec_nid != -1)
  300. return sec_nid;
  301. if (!TEST_true(OBJ_create("1.3.5.7.9", "CustomSecretOID", "My custom secret OID")))
  302. return -1;
  303. return sec_nid = OBJ_txt2nid("CustomSecretOID");
  304. }
  305. /* --------------------------------------------------------------------------
  306. * PKCS12 format tests
  307. */
  308. static int test_single_cert_no_attrs(void)
  309. {
  310. PKCS12_BUILDER *pb = new_pkcs12_builder("1cert.p12");
  311. /* Generate/encode */
  312. start_pkcs12(pb);
  313. start_contentinfo(pb);
  314. add_certbag(pb, CERT1, sizeof(CERT1), NULL);
  315. end_contentinfo(pb);
  316. end_pkcs12(pb);
  317. /* Read/decode */
  318. start_check_pkcs12(pb);
  319. start_check_contentinfo(pb);
  320. check_certbag(pb, CERT1, sizeof(CERT1), NULL);
  321. end_check_contentinfo(pb);
  322. end_check_pkcs12(pb);
  323. return end_pkcs12_builder(pb);
  324. }
  325. static int test_single_key(PKCS12_ENC *enc)
  326. {
  327. char fname[80];
  328. PKCS12_BUILDER *pb;
  329. sprintf(fname, "1key_ciph-%s_iter-%d.p12", OBJ_nid2sn(enc->nid), enc->iter);
  330. pb = new_pkcs12_builder(fname);
  331. /* Generate/encode */
  332. start_pkcs12(pb);
  333. start_contentinfo(pb);
  334. add_keybag(pb, KEY1, sizeof(KEY1), NULL, enc);
  335. end_contentinfo(pb);
  336. end_pkcs12(pb);
  337. /* Read/decode */
  338. start_check_pkcs12(pb);
  339. start_check_contentinfo(pb);
  340. check_keybag(pb, KEY1, sizeof(KEY1), NULL, enc);
  341. end_check_contentinfo(pb);
  342. end_check_pkcs12(pb);
  343. return end_pkcs12_builder(pb);
  344. }
  345. static int test_single_key_enc_alg(int z)
  346. {
  347. PKCS12_ENC enc;
  348. if (lgcyprov == NULL)
  349. enc.nid = enc_nids_no_legacy[z];
  350. else
  351. enc.nid = enc_nids_all[z];
  352. enc.pass = enc_default.pass;
  353. enc.iter = enc_default.iter;
  354. return test_single_key(&enc);
  355. }
  356. static int test_single_key_enc_pass(int z)
  357. {
  358. PKCS12_ENC enc;
  359. enc.nid = enc_default.nid;
  360. enc.pass = passwords[z];
  361. enc.iter = enc_default.iter;
  362. return test_single_key(&enc);
  363. }
  364. static int test_single_key_enc_iter(int z)
  365. {
  366. PKCS12_ENC enc;
  367. enc.nid = enc_default.nid;
  368. enc.pass = enc_default.pass;
  369. enc.iter = iters[z];
  370. return test_single_key(&enc);
  371. }
  372. static int test_single_key_with_attrs(void)
  373. {
  374. PKCS12_BUILDER *pb = new_pkcs12_builder("1keyattrs.p12");
  375. /* Generate/encode */
  376. start_pkcs12(pb);
  377. start_contentinfo(pb);
  378. add_keybag(pb, KEY1, sizeof(KEY1), ATTRS1, &enc_default);
  379. end_contentinfo(pb);
  380. end_pkcs12(pb);
  381. /* Read/decode */
  382. start_check_pkcs12(pb);
  383. start_check_contentinfo(pb);
  384. check_keybag(pb, KEY1, sizeof(KEY1), ATTRS1, &enc_default);
  385. end_check_contentinfo(pb);
  386. end_check_pkcs12(pb);
  387. return end_pkcs12_builder(pb);
  388. }
  389. static int test_single_cert_mac(PKCS12_ENC *mac)
  390. {
  391. char fname[80];
  392. PKCS12_BUILDER *pb;
  393. sprintf(fname, "1cert_mac-%s_iter-%d.p12", OBJ_nid2sn(mac->nid), mac->iter);
  394. pb = new_pkcs12_builder(fname);
  395. /* Generate/encode */
  396. start_pkcs12(pb);
  397. start_contentinfo(pb);
  398. add_certbag(pb, CERT1, sizeof(CERT1), NULL);
  399. end_contentinfo(pb);
  400. end_pkcs12_with_mac(pb, mac);
  401. /* Read/decode */
  402. start_check_pkcs12_with_mac(pb, mac);
  403. start_check_contentinfo(pb);
  404. check_certbag(pb, CERT1, sizeof(CERT1), NULL);
  405. end_check_contentinfo(pb);
  406. end_check_pkcs12(pb);
  407. return end_pkcs12_builder(pb);
  408. }
  409. static int test_single_cert_mac_alg(int z)
  410. {
  411. PKCS12_ENC mac;
  412. mac.nid = mac_nids[z];
  413. mac.pass = mac_default.pass;
  414. mac.iter = mac_default.iter;
  415. return test_single_cert_mac(&mac);
  416. }
  417. static int test_single_cert_mac_pass(int z)
  418. {
  419. PKCS12_ENC mac;
  420. mac.nid = mac_default.nid;
  421. mac.pass = passwords[z];
  422. mac.iter = mac_default.iter;
  423. return test_single_cert_mac(&mac);
  424. }
  425. static int test_single_cert_mac_iter(int z)
  426. {
  427. PKCS12_ENC mac;
  428. mac.nid = mac_default.nid;
  429. mac.pass = mac_default.pass;
  430. mac.iter = iters[z];
  431. return test_single_cert_mac(&mac);
  432. }
  433. static int test_cert_key_with_attrs_and_mac(void)
  434. {
  435. PKCS12_BUILDER *pb = new_pkcs12_builder("1cert1key.p12");
  436. /* Generate/encode */
  437. start_pkcs12(pb);
  438. start_contentinfo(pb);
  439. add_certbag(pb, CERT1, sizeof(CERT1), ATTRS1);
  440. add_keybag(pb, KEY1, sizeof(KEY1), ATTRS1, &enc_default);
  441. end_contentinfo(pb);
  442. end_pkcs12_with_mac(pb, &mac_default);
  443. /* Read/decode */
  444. start_check_pkcs12_with_mac(pb, &mac_default);
  445. start_check_contentinfo(pb);
  446. check_certbag(pb, CERT1, sizeof(CERT1), ATTRS1);
  447. check_keybag(pb, KEY1, sizeof(KEY1), ATTRS1, &enc_default);
  448. end_check_contentinfo(pb);
  449. end_check_pkcs12(pb);
  450. return end_pkcs12_builder(pb);
  451. }
  452. static int test_cert_key_encrypted_content(void)
  453. {
  454. PKCS12_BUILDER *pb = new_pkcs12_builder("1cert1key_enc.p12");
  455. /* Generate/encode */
  456. start_pkcs12(pb);
  457. start_contentinfo(pb);
  458. add_certbag(pb, CERT1, sizeof(CERT1), ATTRS1);
  459. add_keybag(pb, KEY1, sizeof(KEY1), ATTRS1, &enc_default);
  460. end_contentinfo_encrypted(pb, &enc_default);
  461. end_pkcs12_with_mac(pb, &mac_default);
  462. /* Read/decode */
  463. start_check_pkcs12_with_mac(pb, &mac_default);
  464. start_check_contentinfo_encrypted(pb, &enc_default);
  465. check_certbag(pb, CERT1, sizeof(CERT1), ATTRS1);
  466. check_keybag(pb, KEY1, sizeof(KEY1), ATTRS1, &enc_default);
  467. end_check_contentinfo(pb);
  468. end_check_pkcs12(pb);
  469. return end_pkcs12_builder(pb);
  470. }
  471. static int test_single_secret_encrypted_content(void)
  472. {
  473. PKCS12_BUILDER *pb = new_pkcs12_builder("1secret.p12");
  474. int custom_nid = get_custom_oid();
  475. /* Generate/encode */
  476. start_pkcs12(pb);
  477. start_contentinfo(pb);
  478. add_secretbag(pb, custom_nid, "VerySecretMessage", ATTRS1);
  479. end_contentinfo_encrypted(pb, &enc_default);
  480. end_pkcs12_with_mac(pb, &mac_default);
  481. /* Read/decode */
  482. start_check_pkcs12_with_mac(pb, &mac_default);
  483. start_check_contentinfo_encrypted(pb, &enc_default);
  484. check_secretbag(pb, custom_nid, "VerySecretMessage", ATTRS1);
  485. end_check_contentinfo(pb);
  486. end_check_pkcs12(pb);
  487. return end_pkcs12_builder(pb);
  488. }
  489. static int test_single_secret(PKCS12_ENC *enc)
  490. {
  491. int custom_nid;
  492. char fname[80];
  493. PKCS12_BUILDER *pb;
  494. sprintf(fname, "1secret_ciph-%s_iter-%d.p12", OBJ_nid2sn(enc->nid), enc->iter);
  495. pb = new_pkcs12_builder(fname);
  496. custom_nid = get_custom_oid();
  497. /* Generate/encode */
  498. start_pkcs12(pb);
  499. start_contentinfo(pb);
  500. add_secretbag(pb, custom_nid, "VerySecretMessage", ATTRS1);
  501. end_contentinfo_encrypted(pb, enc);
  502. end_pkcs12_with_mac(pb, &mac_default);
  503. /* Read/decode */
  504. start_check_pkcs12_with_mac(pb, &mac_default);
  505. start_check_contentinfo_encrypted(pb, enc);
  506. check_secretbag(pb, custom_nid, "VerySecretMessage", ATTRS1);
  507. end_check_contentinfo(pb);
  508. end_check_pkcs12(pb);
  509. return end_pkcs12_builder(pb);
  510. }
  511. static int test_single_secret_enc_alg(int z)
  512. {
  513. PKCS12_ENC enc;
  514. if (lgcyprov == NULL)
  515. enc.nid = enc_nids_no_legacy[z];
  516. else
  517. enc.nid = enc_nids_all[z];
  518. enc.pass = enc_default.pass;
  519. enc.iter = enc_default.iter;
  520. return test_single_secret(&enc);
  521. }
  522. static int test_multiple_contents(void)
  523. {
  524. PKCS12_BUILDER *pb = new_pkcs12_builder("multi_contents.p12");
  525. int custom_nid = get_custom_oid();
  526. /* Generate/encode */
  527. start_pkcs12(pb);
  528. start_contentinfo(pb);
  529. add_certbag(pb, CERT1, sizeof(CERT1), ATTRS1);
  530. add_certbag(pb, CERT2, sizeof(CERT2), ATTRS2);
  531. add_keybag(pb, KEY1, sizeof(KEY1), ATTRS1, &enc_default);
  532. add_keybag(pb, KEY2, sizeof(KEY2), ATTRS2, &enc_default);
  533. end_contentinfo(pb);
  534. start_contentinfo(pb);
  535. add_secretbag(pb, custom_nid, "VeryVerySecretMessage", ATTRS1);
  536. end_contentinfo_encrypted(pb, &enc_default);
  537. end_pkcs12_with_mac(pb, &mac_default);
  538. /* Read/decode */
  539. start_check_pkcs12_with_mac(pb, &mac_default);
  540. start_check_contentinfo(pb);
  541. check_certbag(pb, CERT1, sizeof(CERT1), ATTRS1);
  542. check_certbag(pb, CERT2, sizeof(CERT2), ATTRS2);
  543. check_keybag(pb, KEY1, sizeof(KEY1), ATTRS1, &enc_default);
  544. check_keybag(pb, KEY2, sizeof(KEY2), ATTRS2, &enc_default);
  545. end_check_contentinfo(pb);
  546. start_check_contentinfo_encrypted(pb, &enc_default);
  547. check_secretbag(pb, custom_nid, "VeryVerySecretMessage", ATTRS1);
  548. end_check_contentinfo(pb);
  549. end_check_pkcs12(pb);
  550. return end_pkcs12_builder(pb);
  551. }
  552. static int test_jdk_trusted_attr(void)
  553. {
  554. PKCS12_BUILDER *pb = new_pkcs12_builder("jdk_trusted.p12");
  555. /* Generate/encode */
  556. start_pkcs12(pb);
  557. start_contentinfo(pb);
  558. add_certbag(pb, CERT1, sizeof(CERT1), ATTRS3);
  559. end_contentinfo(pb);
  560. end_pkcs12_with_mac(pb, &mac_default);
  561. /* Read/decode */
  562. start_check_pkcs12_with_mac(pb, &mac_default);
  563. start_check_contentinfo(pb);
  564. check_certbag(pb, CERT1, sizeof(CERT1), ATTRS3);
  565. end_check_contentinfo(pb);
  566. end_check_pkcs12(pb);
  567. return end_pkcs12_builder(pb);
  568. }
  569. static int test_set0_attrs(void)
  570. {
  571. PKCS12_BUILDER *pb = new_pkcs12_builder("attrs.p12");
  572. PKCS12_SAFEBAG *bag = NULL;
  573. STACK_OF(X509_ATTRIBUTE) *attrs = NULL;
  574. X509_ATTRIBUTE *attr = NULL;
  575. start_pkcs12(pb);
  576. start_contentinfo(pb);
  577. /* Add cert and attrs (name/locakkey only) */
  578. add_certbag(pb, CERT1, sizeof(CERT1), ATTRS4);
  579. bag = sk_PKCS12_SAFEBAG_value(pb->bags, 0);
  580. attrs = (STACK_OF(X509_ATTRIBUTE)*)PKCS12_SAFEBAG_get0_attrs(bag);
  581. /* Create new attr, add to list and confirm return attrs is not NULL */
  582. attr = X509_ATTRIBUTE_create(NID_oracle_jdk_trustedkeyusage, V_ASN1_OBJECT, OBJ_txt2obj("anyExtendedKeyUsage", 0));
  583. X509at_add1_attr(&attrs, attr);
  584. PKCS12_SAFEBAG_set0_attrs(bag, attrs);
  585. attrs = (STACK_OF(X509_ATTRIBUTE)*)PKCS12_SAFEBAG_get0_attrs(bag);
  586. X509_ATTRIBUTE_free(attr);
  587. if(!TEST_ptr(attrs)) {
  588. goto err;
  589. }
  590. end_contentinfo(pb);
  591. end_pkcs12(pb);
  592. /* Read/decode */
  593. start_check_pkcs12(pb);
  594. start_check_contentinfo(pb);
  595. /* Use existing check functionality to confirm cert bag attrs identical to ATTRS3 */
  596. check_certbag(pb, CERT1, sizeof(CERT1), ATTRS3);
  597. end_check_contentinfo(pb);
  598. end_check_pkcs12(pb);
  599. return end_pkcs12_builder(pb);
  600. err:
  601. (void)end_pkcs12_builder(pb);
  602. return 0;
  603. }
  604. #ifndef OPENSSL_NO_DES
  605. static int pkcs12_create_test(void)
  606. {
  607. int ret = 0;
  608. EVP_PKEY *pkey = NULL;
  609. PKCS12 *p12 = NULL;
  610. const unsigned char *p;
  611. static const unsigned char rsa_key[] = {
  612. 0x30, 0x82, 0x02, 0x5d, 0x02, 0x01, 0x00, 0x02, 0x81, 0x81, 0x00, 0xbb,
  613. 0x24, 0x7a, 0x09, 0x7e, 0x0e, 0xb2, 0x37, 0x32, 0xcc, 0x39, 0x67, 0xad,
  614. 0xf1, 0x9e, 0x3d, 0x6b, 0x82, 0x83, 0xd1, 0xd0, 0xac, 0xa4, 0xc0, 0x18,
  615. 0xbe, 0x8d, 0x98, 0x00, 0xc0, 0x7b, 0xff, 0x07, 0x44, 0xc9, 0xca, 0x1c,
  616. 0xba, 0x36, 0xe1, 0x27, 0x69, 0xff, 0xb1, 0xe3, 0x8d, 0x8b, 0xee, 0x57,
  617. 0xa9, 0x3a, 0xaa, 0x16, 0x43, 0x39, 0x54, 0x19, 0x7c, 0xae, 0x69, 0x24,
  618. 0x14, 0xf6, 0x64, 0xff, 0xbc, 0x74, 0xc6, 0x67, 0x6c, 0x4c, 0xf1, 0x02,
  619. 0x49, 0x69, 0xc7, 0x2b, 0xe1, 0xe1, 0xa1, 0xa3, 0x43, 0x14, 0xf4, 0x77,
  620. 0x8f, 0xc8, 0xd0, 0x85, 0x5a, 0x35, 0x95, 0xac, 0x62, 0xa9, 0xc1, 0x21,
  621. 0x00, 0x77, 0xa0, 0x8b, 0x97, 0x30, 0xb4, 0x5a, 0x2c, 0xb8, 0x90, 0x2f,
  622. 0x48, 0xa0, 0x05, 0x28, 0x4b, 0xf2, 0x0f, 0x8d, 0xec, 0x8b, 0x4d, 0x03,
  623. 0x42, 0x75, 0xd6, 0xad, 0x81, 0xc0, 0x11, 0x02, 0x03, 0x01, 0x00, 0x01,
  624. 0x02, 0x81, 0x80, 0x00, 0xfc, 0xb9, 0x4a, 0x26, 0x07, 0x89, 0x51, 0x2b,
  625. 0x53, 0x72, 0x91, 0xe0, 0x18, 0x3e, 0xa6, 0x5e, 0x31, 0xef, 0x9c, 0x0c,
  626. 0x16, 0x24, 0x42, 0xd0, 0x28, 0x33, 0xf9, 0xfa, 0xd0, 0x3c, 0x54, 0x04,
  627. 0x06, 0xc0, 0x15, 0xf5, 0x1b, 0x9a, 0xb3, 0x24, 0x31, 0xab, 0x3c, 0x6b,
  628. 0x47, 0x43, 0xb0, 0xd2, 0xa9, 0xdc, 0x05, 0xe1, 0x81, 0x59, 0xb6, 0x04,
  629. 0xe9, 0x66, 0x61, 0xaa, 0xd7, 0x0b, 0x00, 0x8f, 0x3d, 0xe5, 0xbf, 0xa2,
  630. 0xf8, 0x5e, 0x25, 0x6c, 0x1e, 0x22, 0x0f, 0xb4, 0xfd, 0x41, 0xe2, 0x03,
  631. 0x31, 0x5f, 0xda, 0x20, 0xc5, 0xc0, 0xf3, 0x55, 0x0e, 0xe1, 0xc9, 0xec,
  632. 0xd7, 0x3e, 0x2a, 0x0c, 0x01, 0xca, 0x7b, 0x22, 0xcb, 0xac, 0xf4, 0x2b,
  633. 0x27, 0xf0, 0x78, 0x5f, 0xb5, 0xc2, 0xf9, 0xe8, 0x14, 0x5a, 0x6e, 0x7e,
  634. 0x86, 0xbd, 0x6a, 0x9b, 0x20, 0x0c, 0xba, 0xcc, 0x97, 0x20, 0x11, 0x02,
  635. 0x41, 0x00, 0xc9, 0x59, 0x9f, 0x29, 0x8a, 0x5b, 0x9f, 0xe3, 0x2a, 0xd8,
  636. 0x7e, 0xc2, 0x40, 0x9f, 0xa8, 0x45, 0xe5, 0x3e, 0x11, 0x8d, 0x3c, 0xed,
  637. 0x6e, 0xab, 0xce, 0xd0, 0x65, 0x46, 0xd8, 0xc7, 0x07, 0x63, 0xb5, 0x23,
  638. 0x34, 0xf4, 0x9f, 0x7e, 0x1c, 0xc7, 0xc7, 0xf9, 0x65, 0xd1, 0xf4, 0x04,
  639. 0x42, 0x38, 0xbe, 0x3a, 0x0c, 0x9d, 0x08, 0x25, 0xfc, 0xa3, 0x71, 0xd9,
  640. 0xae, 0x0c, 0x39, 0x61, 0xf4, 0x89, 0x02, 0x41, 0x00, 0xed, 0xef, 0xab,
  641. 0xa9, 0xd5, 0x39, 0x9c, 0xee, 0x59, 0x1b, 0xff, 0xcf, 0x48, 0x44, 0x1b,
  642. 0xb6, 0x32, 0xe7, 0x46, 0x24, 0xf3, 0x04, 0x7f, 0xde, 0x95, 0x08, 0x6d,
  643. 0x75, 0x9e, 0x67, 0x17, 0xba, 0x5c, 0xa4, 0xd4, 0xe2, 0xe2, 0x4d, 0x77,
  644. 0xce, 0xeb, 0x66, 0x29, 0xc5, 0x96, 0xe0, 0x62, 0xbb, 0xe5, 0xac, 0xdc,
  645. 0x44, 0x62, 0x54, 0x86, 0xed, 0x64, 0x0c, 0xce, 0xd0, 0x60, 0x03, 0x9d,
  646. 0x49, 0x02, 0x40, 0x54, 0xd9, 0x18, 0x72, 0x27, 0xe4, 0xbe, 0x76, 0xbb,
  647. 0x1a, 0x6a, 0x28, 0x2f, 0x95, 0x58, 0x12, 0xc4, 0x2c, 0xa8, 0xb6, 0xcc,
  648. 0xe2, 0xfd, 0x0d, 0x17, 0x64, 0xc8, 0x18, 0xd7, 0xc6, 0xdf, 0x3d, 0x4c,
  649. 0x1a, 0x9e, 0xf9, 0x2a, 0xb0, 0xb9, 0x2e, 0x12, 0xfd, 0xec, 0xc3, 0x51,
  650. 0xc1, 0xed, 0xa9, 0xfd, 0xb7, 0x76, 0x93, 0x41, 0xd8, 0xc8, 0x22, 0x94,
  651. 0x1a, 0x77, 0xf6, 0x9c, 0xc3, 0xc3, 0x89, 0x02, 0x41, 0x00, 0x8e, 0xf9,
  652. 0xa7, 0x08, 0xad, 0xb5, 0x2a, 0x04, 0xdb, 0x8d, 0x04, 0xa1, 0xb5, 0x06,
  653. 0x20, 0x34, 0xd2, 0xcf, 0xc0, 0x89, 0xb1, 0x72, 0x31, 0xb8, 0x39, 0x8b,
  654. 0xcf, 0xe2, 0x8e, 0xa5, 0xda, 0x4f, 0x45, 0x1e, 0x53, 0x42, 0x66, 0xc4,
  655. 0x30, 0x4b, 0x29, 0x8e, 0xc1, 0x69, 0x17, 0x29, 0x8c, 0x8a, 0xe6, 0x0f,
  656. 0x82, 0x68, 0xa1, 0x41, 0xb3, 0xb6, 0x70, 0x99, 0x75, 0xa9, 0x27, 0x18,
  657. 0xe4, 0xe9, 0x02, 0x41, 0x00, 0x89, 0xea, 0x6e, 0x6d, 0x70, 0xdf, 0x25,
  658. 0x5f, 0x18, 0x3f, 0x48, 0xda, 0x63, 0x10, 0x8b, 0xfe, 0xa8, 0x0c, 0x94,
  659. 0x0f, 0xde, 0x97, 0x56, 0x53, 0x89, 0x94, 0xe2, 0x1e, 0x2c, 0x74, 0x3c,
  660. 0x91, 0x81, 0x34, 0x0b, 0xa6, 0x40, 0xf8, 0xcb, 0x2a, 0x60, 0x8c, 0xe0,
  661. 0x02, 0xb7, 0x89, 0x93, 0xcf, 0x18, 0x9f, 0x49, 0x54, 0xfd, 0x7d, 0x3f,
  662. 0x9a, 0xef, 0xd4, 0xa4, 0x4f, 0xc1, 0x45, 0x99, 0x91,
  663. };
  664. p = rsa_key;
  665. if (!TEST_ptr(pkey = d2i_PrivateKey_ex(EVP_PKEY_RSA, NULL, &p,
  666. sizeof(rsa_key), NULL, NULL)))
  667. goto err;
  668. if (!TEST_int_eq(ERR_peek_error(), 0))
  669. goto err;
  670. p12 = PKCS12_create(NULL, NULL, pkey, NULL, NULL,
  671. NID_pbe_WithSHA1And3_Key_TripleDES_CBC,
  672. NID_pbe_WithSHA1And3_Key_TripleDES_CBC, 2, 1, 0);
  673. if (!TEST_ptr(p12))
  674. goto err;
  675. if (!TEST_int_eq(ERR_peek_error(), 0))
  676. goto err;
  677. ret = 1;
  678. err:
  679. PKCS12_free(p12);
  680. EVP_PKEY_free(pkey);
  681. return ret;
  682. }
  683. #endif
  684. typedef enum OPTION_choice {
  685. OPT_ERR = -1,
  686. OPT_EOF = 0,
  687. OPT_WRITE,
  688. OPT_LEGACY,
  689. OPT_CONTEXT,
  690. OPT_TEST_ENUM
  691. } OPTION_CHOICE;
  692. const OPTIONS *test_get_options(void)
  693. {
  694. static const OPTIONS options[] = {
  695. OPT_TEST_OPTIONS_DEFAULT_USAGE,
  696. { "write", OPT_WRITE, '-', "Write PKCS12 objects to file" },
  697. { "legacy", OPT_LEGACY, '-', "Test the legacy APIs" },
  698. { "context", OPT_CONTEXT, '-', "Explicitly use a non-default library context" },
  699. { NULL }
  700. };
  701. return options;
  702. }
  703. int setup_tests(void)
  704. {
  705. OPTION_CHOICE o;
  706. while ((o = opt_next()) != OPT_EOF) {
  707. switch (o) {
  708. case OPT_WRITE:
  709. PKCS12_helper_set_write_files(1);
  710. break;
  711. case OPT_LEGACY:
  712. PKCS12_helper_set_legacy(1);
  713. break;
  714. case OPT_CONTEXT:
  715. default_libctx = 0;
  716. break;
  717. case OPT_TEST_CASES:
  718. break;
  719. default:
  720. return 0;
  721. }
  722. }
  723. if (!default_libctx) {
  724. testctx = OSSL_LIB_CTX_new();
  725. if (!TEST_ptr(testctx))
  726. return 0;
  727. nullprov = OSSL_PROVIDER_load(NULL, "null");
  728. if (!TEST_ptr(nullprov))
  729. return 0;
  730. }
  731. deflprov = OSSL_PROVIDER_load(testctx, "default");
  732. if (!TEST_ptr(deflprov))
  733. return 0;
  734. lgcyprov = OSSL_PROVIDER_load(testctx, "legacy");
  735. PKCS12_helper_set_libctx(testctx);
  736. /*
  737. * Verify that the default and fips providers in the default libctx are not
  738. * available if we are using a standalone context
  739. */
  740. if (!default_libctx) {
  741. if (!TEST_false(OSSL_PROVIDER_available(NULL, "default"))
  742. || !TEST_false(OSSL_PROVIDER_available(NULL, "fips")))
  743. return 0;
  744. }
  745. ADD_TEST(test_single_cert_no_attrs);
  746. if (lgcyprov == NULL) {
  747. ADD_ALL_TESTS(test_single_key_enc_alg, OSSL_NELEM(enc_nids_no_legacy));
  748. ADD_ALL_TESTS(test_single_secret_enc_alg, OSSL_NELEM(enc_nids_no_legacy));
  749. } else {
  750. ADD_ALL_TESTS(test_single_key_enc_alg, OSSL_NELEM(enc_nids_all));
  751. ADD_ALL_TESTS(test_single_secret_enc_alg, OSSL_NELEM(enc_nids_all));
  752. }
  753. #ifndef OPENSSL_NO_DES
  754. if (default_libctx)
  755. ADD_TEST(pkcs12_create_test);
  756. #endif
  757. ADD_ALL_TESTS(test_single_key_enc_pass, OSSL_NELEM(passwords));
  758. ADD_ALL_TESTS(test_single_key_enc_iter, OSSL_NELEM(iters));
  759. ADD_TEST(test_single_key_with_attrs);
  760. ADD_ALL_TESTS(test_single_cert_mac_alg, OSSL_NELEM(mac_nids));
  761. ADD_ALL_TESTS(test_single_cert_mac_pass, OSSL_NELEM(passwords));
  762. ADD_ALL_TESTS(test_single_cert_mac_iter, OSSL_NELEM(iters));
  763. ADD_TEST(test_cert_key_with_attrs_and_mac);
  764. ADD_TEST(test_cert_key_encrypted_content);
  765. ADD_TEST(test_single_secret_encrypted_content);
  766. ADD_TEST(test_multiple_contents);
  767. ADD_TEST(test_jdk_trusted_attr);
  768. ADD_TEST(test_set0_attrs);
  769. return 1;
  770. }
  771. void cleanup_tests(void)
  772. {
  773. OSSL_PROVIDER_unload(nullprov);
  774. OSSL_PROVIDER_unload(deflprov);
  775. OSSL_PROVIDER_unload(lgcyprov);
  776. OSSL_LIB_CTX_free(testctx);
  777. }