1/* $NetBSD$ */ 2 3/* 4 * Copyright (c) 2006 Kungliga Tekniska H��gskolan 5 * (Royal Institute of Technology, Stockholm, Sweden). 6 * All rights reserved. 7 * 8 * Redistribution and use in source and binary forms, with or without 9 * modification, are permitted provided that the following conditions 10 * are met: 11 * 12 * 1. Redistributions of source code must retain the above copyright 13 * notice, this list of conditions and the following disclaimer. 14 * 15 * 2. Redistributions in binary form must reproduce the above copyright 16 * notice, this list of conditions and the following disclaimer in the 17 * documentation and/or other materials provided with the distribution. 18 * 19 * 3. Neither the name of KTH nor the names of its contributors may be 20 * used to endorse or promote products derived from this software without 21 * specific prior written permission. 22 * 23 * THIS SOFTWARE IS PROVIDED BY KTH AND ITS CONTRIBUTORS ``AS IS'' AND ANY 24 * EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 25 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR 26 * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL KTH OR ITS CONTRIBUTORS BE 27 * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR 28 * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF 29 * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR 30 * BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, 31 * WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR 32 * OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF 33 * ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. 34 */ 35 36#include "gsskrb5_locl.h" 37 38struct range { 39 size_t lower; 40 size_t upper; 41}; 42 43struct range tests[] = { 44 { 0, 1040 }, 45 { 2040, 2080 }, 46 { 4080, 5000 }, 47 { 8180, 8292 }, 48 { 9980, 10010 } 49}; 50 51static void 52test_range(const struct range *r, int integ, 53 krb5_context context, krb5_crypto crypto) 54{ 55 krb5_error_code ret; 56 size_t size, rsize; 57 struct gsskrb5_ctx ctx; 58 59 for (size = r->lower; size < r->upper; size++) { 60 size_t cksumsize; 61 uint16_t padsize; 62 OM_uint32 minor; 63 OM_uint32 max_wrap_size; 64 65 ctx.crypto = crypto; 66 67 ret = _gssapi_wrap_size_cfx(&minor, 68 &ctx, 69 context, 70 integ, 71 0, 72 size, 73 &max_wrap_size); 74 if (ret) 75 krb5_errx(context, 1, "_gsskrb5cfx_max_wrap_length_cfx: %d", ret); 76 if (max_wrap_size == 0) 77 continue; 78 79 ret = _gsskrb5cfx_wrap_length_cfx(context, 80 crypto, 81 integ, 82 0, 83 max_wrap_size, 84 &rsize, &cksumsize, &padsize); 85 if (ret) 86 krb5_errx(context, 1, "_gsskrb5cfx_wrap_length_cfx: %d", ret); 87 88 if (size < rsize) 89 krb5_errx(context, 1, 90 "size (%d) < rsize (%d) for max_wrap_size %d", 91 (int)size, (int)rsize, (int)max_wrap_size); 92 } 93} 94 95static void 96test_special(krb5_context context, krb5_crypto crypto, 97 int integ, size_t testsize) 98{ 99 krb5_error_code ret; 100 size_t rsize; 101 OM_uint32 max_wrap_size; 102 size_t cksumsize; 103 uint16_t padsize; 104 struct gsskrb5_ctx ctx; 105 OM_uint32 minor; 106 107 ctx.crypto = crypto; 108 109 ret = _gssapi_wrap_size_cfx(&minor, 110 &ctx, 111 context, 112 integ, 113 0, 114 testsize, 115 &max_wrap_size); 116 if (ret) 117 krb5_errx(context, 1, "_gsskrb5cfx_max_wrap_length_cfx: %d", ret); 118 if (ret) 119 krb5_errx(context, 1, "_gsskrb5cfx_max_wrap_length_cfx: %d", ret); 120 121 ret = _gsskrb5cfx_wrap_length_cfx(context, 122 crypto, 123 integ, 124 0, 125 max_wrap_size, 126 &rsize, &cksumsize, &padsize); 127 if (ret) 128 krb5_errx(context, 1, "_gsskrb5cfx_wrap_length_cfx: %d", ret); 129 130 if (testsize < rsize) 131 krb5_errx(context, 1, 132 "testsize (%d) < rsize (%d) for max_wrap_size %d", 133 (int)testsize, (int)rsize, (int)max_wrap_size); 134} 135 136 137 138 139int 140main(int argc, char **argv) 141{ 142 krb5_keyblock keyblock; 143 krb5_error_code ret; 144 krb5_context context; 145 krb5_crypto crypto; 146 int i; 147 148 ret = krb5_init_context(&context); 149 if (ret) 150 errx(1, "krb5_context_init: %d", ret); 151 152 ret = krb5_generate_random_keyblock(context, 153 ENCTYPE_AES256_CTS_HMAC_SHA1_96, 154 &keyblock); 155 if (ret) 156 krb5_err(context, 1, ret, "krb5_generate_random_keyblock"); 157 158 ret = krb5_crypto_init(context, &keyblock, 0, &crypto); 159 if (ret) 160 krb5_err(context, 1, ret, "krb5_crypto_init"); 161 162 test_special(context, crypto, 1, 60); 163 test_special(context, crypto, 0, 60); 164 165 for (i = 0; i < sizeof(tests)/sizeof(tests[0]); i++) { 166 test_range(&tests[i], 1, context, crypto); 167 test_range(&tests[i], 0, context, crypto); 168 } 169 170 krb5_free_keyblock_contents(context, &keyblock); 171 krb5_crypto_destroy(context, crypto); 172 krb5_free_context(context); 173 174 return 0; 175} 176