123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155 |
- # -*- mode: perl; -*-
- # Copyright 2016-2020 The OpenSSL Project Authors. All Rights Reserved.
- #
- # Licensed under the Apache License 2.0 (the "License"). You may not use
- # this file except in compliance with the License. You can obtain a copy
- # in the file LICENSE in the source distribution or at
- # https://www.openssl.org/source/license.html
- ## SSL test configurations
- package ssltests;
- use OpenSSL::Test::Utils;
- our $fips_mode;
- our @tests = (
- {
- name => "disable-encrypt-then-mac-server-sha",
- server => {
- "Options" => "-EncryptThenMac",
- },
- client => {
- "CipherString" => "AES128-SHA",
- "MaxProtocol" => "TLSv1.2"
- },
- test => {
- "ExpectedResult" => "Success",
- },
- },
- {
- name => "disable-encrypt-then-mac-client-sha",
- server => {
- },
- client => {
- "CipherString" => "AES128-SHA",
- "Options" => "-EncryptThenMac",
- "MaxProtocol" => "TLSv1.2"
- },
- test => {
- "ExpectedResult" => "Success",
- },
- },
- {
- name => "disable-encrypt-then-mac-both-sha",
- server => {
- "Options" => "-EncryptThenMac",
- },
- client => {
- "CipherString" => "AES128-SHA",
- "Options" => "-EncryptThenMac",
- "MaxProtocol" => "TLSv1.2"
- },
- test => {
- "ExpectedResult" => "Success",
- },
- },
- );
- my @tests_tls1_2 = (
- {
- name => "disable-encrypt-then-mac-server-sha2",
- server => {
- "Options" => "-EncryptThenMac",
- },
- client => {
- "CipherString" => "AES128-SHA256",
- "MaxProtocol" => "TLSv1.2"
- },
- test => {
- "ExpectedResult" => "Success",
- },
- },
- {
- name => "disable-encrypt-then-mac-client-sha2",
- server => {
- },
- client => {
- "CipherString" => "AES128-SHA256",
- "Options" => "-EncryptThenMac",
- "MaxProtocol" => "TLSv1.2"
- },
- test => {
- "ExpectedResult" => "Success",
- },
- },
- {
- name => "disable-encrypt-then-mac-both-sha2",
- server => {
- "Options" => "-EncryptThenMac",
- },
- client => {
- "CipherString" => "AES128-SHA256",
- "Options" => "-EncryptThenMac",
- "MaxProtocol" => "TLSv1.2"
- },
- test => {
- "ExpectedResult" => "Success",
- },
- },
- );
- our @tests_tls1 = (
- {
- name => "disable-encrypt-then-mac-server-sha-tls1",
- server => {
- "CipherString" => 'DEFAULT:@SECLEVEL=0',
- "Options" => "-EncryptThenMac",
- },
- client => {
- "CipherString" => 'AES128-SHA@SECLEVEL=0',
- "MinProtocol" => "TLSv1",
- "MaxProtocol" => "TLSv1"
- },
- test => {
- "ExpectedResult" => "Success",
- },
- },
- {
- name => "disable-encrypt-then-mac-client-sha-tls1",
- server => {
- "CipherString" => 'DEFAULT:@SECLEVEL=0',
- },
- client => {
- "CipherString" => 'AES128-SHA@SECLEVEL=0',
- "Options" => "-EncryptThenMac",
- "MinProtocol" => "TLSv1",
- "MaxProtocol" => "TLSv1"
- },
- test => {
- "ExpectedResult" => "Success",
- },
- },
- {
- name => "disable-encrypt-then-mac-both-sha-tls1",
- server => {
- "CipherString" => 'DEFAULT:@SECLEVEL=0',
- "Options" => "-EncryptThenMac",
- },
- client => {
- "CipherString" => 'AES128-SHA@SECLEVEL=0',
- "Options" => "-EncryptThenMac",
- "MinProtocol" => "TLSv1",
- "MaxProtocol" => "TLSv1"
- },
- test => {
- "ExpectedResult" => "Success",
- },
- },
- );
- push @tests, @tests_tls1_2 unless disabled("tls1_2");
- push @tests, @tests_tls1 unless disabled("tls1") || $fips_mode;
|