test_rfc6032.py 3.4 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495
  1. #
  2. # This file is part of pyasn1-modules software.
  3. #
  4. # Created by Russ Housley
  5. # Copyright (c) 2019, Vigil Security, LLC
  6. # License: http://snmplabs.com/pyasn1/license.html
  7. #
  8. import sys
  9. import unittest
  10. from pyasn1.codec.der.decoder import decode as der_decoder
  11. from pyasn1.codec.der.encoder import encode as der_encoder
  12. from pyasn1_modules import pem
  13. from pyasn1_modules import rfc5652
  14. from pyasn1_modules import rfc6032
  15. class EncryptedKeyPkgTestCase(unittest.TestCase):
  16. encrypted_key_pkg_pem_text = """\
  17. MIIBBwYKYIZIAWUCAQJOAqCB+DCB9QIBAjCBzgYKYIZIAWUCAQJOAjAdBglghkgB
  18. ZQMEASoEEN6HFteHMZ3DyeO35xIwWQOAgaCKTs0D0HguNzMhsLgiwG/Kw8OwX+GF
  19. 9/cZ1YVNesUTW/VsbXJcbTmFmWyfqZsM4DLBegIbrUEHQZnQRq6/NO4ricQdHApD
  20. B/ip6RRqeN1yxMJLv1YN0zUOOIDBS2iMEjTLXZLWw3w22GN2JK7G+Lr4OH1NhMgU
  21. ILJyh/RePmPseMwxvcJs7liEfkiSNMtDfEcpjtzA9bDe95GjhQRsiSByoR8wHQYJ
  22. YIZIAWUCAQVCMRAEDnB0Zi1rZGMtODEyMzc0
  23. """
  24. def setUp(self):
  25. self.asn1Spec = rfc5652.ContentInfo()
  26. def testDerCodec(self):
  27. substrate = pem.readBase64fromText(self.encrypted_key_pkg_pem_text)
  28. asn1Object, rest = der_decoder(substrate, asn1Spec=self.asn1Spec)
  29. self.assertFalse(rest)
  30. self.assertTrue(asn1Object.prettyPrint())
  31. self.assertEqual(substrate, der_encoder(asn1Object))
  32. self.assertEqual(
  33. rfc6032.id_ct_KP_encryptedKeyPkg, asn1Object['contentType'])
  34. content, rest = der_decoder(
  35. asn1Object['content'], rfc6032.EncryptedKeyPackage())
  36. self.assertFalse(rest)
  37. self.assertTrue(content.prettyPrint())
  38. self.assertEqual(asn1Object['content'], der_encoder(content))
  39. self.assertEqual('encrypted', content.getName())
  40. eci = content['encrypted']['encryptedContentInfo']
  41. self.assertEqual(
  42. rfc6032.id_ct_KP_encryptedKeyPkg, eci['contentType'])
  43. attrType = content['encrypted']['unprotectedAttrs'][0]['attrType']
  44. self.assertEqual(rfc6032.id_aa_KP_contentDecryptKeyID, attrType)
  45. attrVal0 = content['encrypted']['unprotectedAttrs'][0]['attrValues'][0]
  46. keyid, rest = der_decoder(attrVal0, rfc6032.ContentDecryptKeyID())
  47. self.assertFalse(rest)
  48. self.assertTrue(keyid.prettyPrint())
  49. self.assertEqual(attrVal0, der_encoder(keyid))
  50. self.assertEqual(b'ptf-kdc-812374', keyid)
  51. def testOpenTypes(self):
  52. substrate = pem.readBase64fromText(self.encrypted_key_pkg_pem_text)
  53. asn1Object, rest = der_decoder(substrate,
  54. asn1Spec=self.asn1Spec,
  55. decodeOpenTypes=True)
  56. self.assertFalse(rest)
  57. self.assertTrue(asn1Object.prettyPrint())
  58. self.assertEqual(substrate, der_encoder(asn1Object))
  59. self.assertIn(asn1Object['contentType'], rfc5652.cmsContentTypesMap)
  60. eci = asn1Object['content']['encrypted']['encryptedContentInfo']
  61. self.assertIn(eci['contentType'], rfc5652.cmsContentTypesMap)
  62. for attr in asn1Object['content']['encrypted']['unprotectedAttrs']:
  63. self.assertIn(attr['attrType'], rfc5652.cmsAttributesMap)
  64. self.assertNotEqual('0x', attr['attrValues'][0].prettyPrint()[:2])
  65. if attr['attrType'] == rfc6032.id_aa_KP_contentDecryptKeyID:
  66. self.assertEqual(
  67. b'ptf-kdc-812374', attr['attrValues'][0])
  68. suite = unittest.TestLoader().loadTestsFromModule(sys.modules[__name__])
  69. if __name__ == '__main__':
  70. unittest.TextTestRunner(verbosity=2).run(suite)