1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91
|
#
# This file is part of pyasn1-modules software.
#
# Created by Russ Housley
# Copyright (c) 2019, Vigil Security, LLC
# License: http://snmplabs.com/pyasn1/license.html
#
import sys
import unittest
from pyasn1.codec.der.decoder import decode as der_decoder
from pyasn1.codec.der.encoder import encode as der_encoder
from pyasn1_modules import pem
from pyasn1_modules import rfc5652
from pyasn1_modules import rfc6031
class SymmetricKeyPkgTestCase(unittest.TestCase):
key_pkg_pem_text = """\
MIG7BgsqhkiG9w0BCRABGaCBqzCBqKBEMCMGCyqGSIb3DQEJEAwBMRQMElZpZ2ls
IFNlY3VyaXR5IExMQzAdBgsqhkiG9w0BCRAMAzEODAxQcmV0ZW5kIDA0OEEwYDBe
MFYwGwYLKoZIhvcNAQkQDBsxDAwKZXhhbXBsZUlEMTAVBgsqhkiG9w0BCRAMCjEG
DARIT1RQMCAGCyqGSIb3DQEJEAwLMREMD2t0YS5leGFtcGxlLmNvbQQEMTIzNA==
"""
def setUp(self):
self.asn1Spec = rfc5652.ContentInfo()
def testDerCodec(self):
substrate = pem.readBase64fromText(self.key_pkg_pem_text)
asn1Object, rest = der_decoder(substrate, asn1Spec=self.asn1Spec)
self.assertFalse(rest)
self.assertTrue(asn1Object.prettyPrint())
self.assertEqual(substrate, der_encoder(asn1Object))
self.assertIn(asn1Object['contentType'], rfc5652.cmsContentTypesMap)
asn1Spec = rfc5652.cmsContentTypesMap[asn1Object['contentType']]
skp, rest = der_decoder(asn1Object['content'], asn1Spec=asn1Spec)
self.assertFalse(rest)
self.assertTrue(skp.prettyPrint())
self.assertEqual(asn1Object['content'], der_encoder(skp))
for attr in skp['sKeyPkgAttrs']:
self.assertIn(attr['attrType'], rfc6031.sKeyPkgAttributesMap)
for osk in skp['sKeys']:
for attr in osk['sKeyAttrs']:
self.assertIn(attr['attrType'], rfc6031.sKeyAttributesMap)
def testOpenTypes(self):
substrate = pem.readBase64fromText(self.key_pkg_pem_text)
asn1Object, rest = der_decoder(
substrate, asn1Spec=self.asn1Spec, decodeOpenTypes=True)
self.assertFalse(rest)
self.assertTrue(asn1Object.prettyPrint())
self.assertEqual(substrate, der_encoder(asn1Object))
self.assertIn(asn1Object['contentType'], rfc5652.cmsContentTypesMap)
self.assertTrue(asn1Object['content'].hasValue())
keypkg = asn1Object['content']
self.assertEqual(
rfc6031.KeyPkgVersion().subtype(value='v1'), keypkg['version'])
for attr in keypkg['sKeyPkgAttrs']:
self.assertIn(attr['attrType'], rfc6031.sKeyPkgAttributesMap)
self.assertNotEqual('0x', attr['attrValues'][0].prettyPrint()[:2])
# decodeOpenTypes=True did not decode if the value is shown in hex ...
if attr['attrType'] == rfc6031.id_pskc_manufacturer:
attr['attrValues'][0] == 'Vigil Security LLC'
for osk in keypkg['sKeys']:
for attr in osk['sKeyAttrs']:
self.assertIn(attr['attrType'], rfc6031.sKeyAttributesMap)
self.assertNotEqual(
'0x', attr['attrValues'][0].prettyPrint()[:2])
# decodeOpenTypes=True did not decode if the value is shown in hex ...
if attr['attrType'] == rfc6031.id_pskc_issuer:
attr['attrValues'][0] == 'kta.example.com'
suite = unittest.TestLoader().loadTestsFromModule(sys.modules[__name__])
if __name__ == '__main__':
unittest.TextTestRunner(verbosity=2).run(suite)
|