File: sni.lisp

package info (click to toggle)
acl2 7.2dfsg-3
  • links: PTS
  • area: main
  • in suites: stretch
  • size: 198,968 kB
  • ctags: 182,300
  • sloc: lisp: 2,415,261; ansic: 5,675; perl: 5,577; xml: 3,576; sh: 3,255; cpp: 2,835; makefile: 2,440; ruby: 2,402; python: 778; ml: 763; yacc: 709; csh: 355; php: 171; lex: 162; tcl: 44; java: 24; asm: 23; haskell: 17
file content (37 lines) | stat: -rw-r--r-- 1,584 bytes parent folder | download | duplicates (2)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
(in-package :cl+ssl.test)

(def-suite :cl+ssl.sni :in :cl+ssl
  :description "Server Name Indications tests")

(in-suite :cl+ssl.sni)

(defun make-request-to-sni-test-server (sni-enabled)
  (usocket:with-client-socket (socket stream "sni.velox.ch" 443
                                      :element-type '(unsigned-byte 8))
    (let* ((ssl-stream (cl+ssl:make-ssl-client-stream stream
                                                      :hostname (if sni-enabled "sni.velox.ch")))
           (char-stream (flexi-streams:make-flexi-stream ssl-stream
                                                         :external-format '(:utf-8 :eol-style :crlf)))
           (reply-buf (make-string 1000)))
      (unwind-protect
           (progn
             (format char-stream "GET / HTTP/1.1~%")
             (format char-stream "Host: sni.velox.ch~%~%")
             (finish-output char-stream)
             (read-sequence reply-buf char-stream)
             reply-buf)
        (close ssl-stream)))))

(defun sni-test-request-succeeded-p (response)
  (search "Great!" response))

(defun sni-test-request-failed-p (response)
  (search "Unfortunately" response))

(test (sni.disabled :compile-at :definition-time)
  (is-true (sni-test-request-failed-p (make-request-to-sni-test-server nil))
           "Request to SNI test server should've failed because SNI was disabled"))

(test (sni.enabled :compile-at :definition-time)
  (is-true (sni-test-request-succeeded-p (make-request-to-sni-test-server t))
           "Request to SNI test server should've succeseeded because SNI was enabled"))