1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104
|
/*
* Copyright (c) 2024 One Identity LLC.
* Copyright (c) 2024 Franco Fichtner
*
* This library is free software; you can redistribute it and/or
* modify it under the terms of the GNU Lesser General Public
* License as published by the Free Software Foundation; either
* version 2.1 of the License, or (at your option) any later version.
*
* This library is distributed in the hope that it will be useful,
* but WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
* Lesser General Public License for more details.
*
* You should have received a copy of the GNU Lesser General Public
* License along with this library; if not, write to the Free Software
* Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
*
* As an additional exemption you are allowed to compile & link against the
* OpenSSL libraries as published by the OpenSSL project. See the file
* COPYING for details.
*
*/
#include <criterion/criterion.h>
#include "transport/tls-verifier.h"
TestSuite(tls_wildcard, .init = NULL, .fini = NULL);
Test(tls_wildcard, test_wildcard_match_pattern_acceptance)
{
cr_assert_eq(tls_wildcard_match("test", "test"), TRUE);
cr_assert_eq(tls_wildcard_match("test", "*"), TRUE);
cr_assert_eq(tls_wildcard_match("test", "t*t"), TRUE);
cr_assert_eq(tls_wildcard_match("test", "t*"), TRUE);
cr_assert_eq(tls_wildcard_match("", ""), TRUE);
cr_assert_eq(tls_wildcard_match("test.one", "test.one"), TRUE);
cr_assert_eq(tls_wildcard_match("test.one.two", "test.one.two"), TRUE);
cr_assert_eq(tls_wildcard_match("192.0.2.0", "192.0.2.0"), TRUE);
cr_assert_eq(tls_wildcard_match("2001:0000:130F:0000:0000:09C0:876A:130B", "2001:0000:130F:0000:0000:09C0:876A:130B"),
TRUE);
cr_assert_eq(tls_wildcard_match("2001:0000:130F:0000:0000:09C0:876A:130B", "2001:0:130F:0:0:9C0:876A:130B"), TRUE);
cr_assert_eq(tls_wildcard_match("2001:0:130F:0:0:9C0:876A:130B", "2001:0000:130F:0000:0000:09C0:876A:130B"), TRUE);
cr_assert_eq(tls_wildcard_match("2001:0000:130F::09C0:876A:130B", "2001:0000:130F:0000:0000:09C0:876A:130B"), TRUE);
cr_assert_eq(tls_wildcard_match("2001:0000:130F:0000:0000:09C0:876A:130B", "2001:0000:130F::09C0:876A:130B"), TRUE);
cr_assert_eq(tls_wildcard_match("2001:0000:130F:0000:0000:09C0:876A:130B", "2001:0:130F::9C0:876A:130B"), TRUE);
cr_assert_eq(tls_wildcard_match("2001:0:130F::9C0:876A:130B", "2001:0000:130F:0000:0000:09C0:876A:130B"), TRUE);
}
Test(tls_wildcard, test_wildcard_match_wildcard_rejection)
{
cr_assert_eq(tls_wildcard_match("test", "**"), FALSE);
cr_assert_eq(tls_wildcard_match("test", "*es*"), FALSE);
cr_assert_eq(tls_wildcard_match("test", "t*?"), FALSE);
}
Test(tls_wildcard, test_wildcard_match_pattern_rejection)
{
cr_assert_eq(tls_wildcard_match("test", "tset"), FALSE);
cr_assert_eq(tls_wildcard_match("test", "set"), FALSE);
cr_assert_eq(tls_wildcard_match("", "*"), FALSE);
cr_assert_eq(tls_wildcard_match("test", ""), FALSE);
cr_assert_eq(tls_wildcard_match("test.two", "test.one"), FALSE);
}
Test(tls_wildcard, test_wildcard_match_format_rejection)
{
cr_assert_eq(tls_wildcard_match("test.two", "test.*"), FALSE);
cr_assert_eq(tls_wildcard_match("test.two", "test.t*o"), FALSE);
cr_assert_eq(tls_wildcard_match("test", "test.two"), FALSE);
cr_assert_eq(tls_wildcard_match("test.two", "test"), FALSE);
cr_assert_eq(tls_wildcard_match("test.one.two", "test.one"), FALSE);
cr_assert_eq(tls_wildcard_match("test.one", "test.one.two"), FALSE);
cr_assert_eq(tls_wildcard_match("test.three", "three.test"), FALSE);
cr_assert_eq(tls_wildcard_match("test.one.two", "test.one.*"), FALSE);
}
Test(tls_wildcard, test_wildcard_match_complex_rejection)
{
cr_assert_eq(tls_wildcard_match("test.two", "test.???"), FALSE);
cr_assert_eq(tls_wildcard_match("test.one.two", "test.one.?wo"), FALSE);
}
Test(tls_wildcard, test_ip_wildcard_rejection)
{
cr_assert_eq(tls_wildcard_match("192.0.2.0", "*.0.2.0"), FALSE);
cr_assert_eq(tls_wildcard_match("2001:0000:130F:0000:0000:09C0:876A:130B", "*:0000:130F:0000:0000:09C0:876A:130B"),
FALSE);
cr_assert_eq(tls_wildcard_match("2001:0:130F::9C0:876A:130B", "*:0000:130F:0000:0000:09C0:876A:130B"), FALSE);
}
Test(tls_wildcard, test_case_insensivity)
{
cr_assert_eq(tls_wildcard_match("test", "TEST"), TRUE);
cr_assert_eq(tls_wildcard_match("TEST", "test"), TRUE);
cr_assert_eq(tls_wildcard_match("TeST", "TEst"), TRUE);
cr_assert_eq(tls_wildcard_match("test.one", "test.ONE"), TRUE);
cr_assert_eq(tls_wildcard_match("test.TWO", "test.two"), TRUE);
cr_assert_eq(tls_wildcard_match("test.three", "*T.three"), TRUE);
cr_assert_eq(tls_wildcard_match("2001:0000:130F:0000:0000:09C0:876A:130B", "2001:0000:130f:0000:0000:09c0:876a:130b"),
TRUE);
}
|