passforios-gopenpgp/crypto/keyring_test.go

150 lines
3.8 KiB
Go
Raw Normal View History

2018-11-05 23:01:53 +01:00
package crypto
import (
"encoding/base64"
2018-11-05 23:01:53 +01:00
"io/ioutil"
"strings"
"testing"
"golang.org/x/crypto/openpgp/armor"
2019-05-13 14:07:18 +02:00
"github.com/ProtonMail/gopenpgp/constants"
"github.com/stretchr/testify/assert"
2018-11-05 23:01:53 +01:00
)
var decodedSymmetricKey, _ = base64.StdEncoding.DecodeString("ExXmnSiQ2QCey20YLH6qlLhkY3xnIBC1AwlIXwK/HvY=")
2019-01-11 00:23:00 +01:00
var testSymmetricKey = &SymmetricKey{
Key: decodedSymmetricKey,
Algo: constants.AES256,
2019-01-11 00:23:00 +01:00
}
// Corresponding key in testdata/keyring_privateKey
2018-11-05 23:01:53 +01:00
const testMailboxPassword = "apple"
// Corresponding key in testdata/keyring_privateKeyLegacy
// const testMailboxPasswordLegacy = "123"
2018-11-05 23:01:53 +01:00
const testToken = "d79ca194a22810a5363eeddfdef7dfbc327c6229"
var (
testPrivateKeyRing *KeyRing
testPublicKeyRing *KeyRing
)
var testIdentity = &Identity{
Name: "UserID",
Email: "",
}
2018-11-05 23:01:53 +01:00
func init() {
var err error
2019-05-14 16:08:25 +00:00
testPrivateKeyRing, err = ReadArmoredKeyRing(strings.NewReader(readTestFile("keyring_privateKey", false)))
if err != nil {
2018-11-05 23:01:53 +01:00
panic(err)
}
2019-05-14 16:08:25 +00:00
testPublicKeyRing, err = ReadArmoredKeyRing(strings.NewReader(readTestFile("keyring_publicKey", false)))
if err != nil {
2018-11-05 23:01:53 +01:00
panic(err)
}
err = testPrivateKeyRing.Unlock([]byte(testMailboxPassword))
if err != nil {
2018-11-05 23:01:53 +01:00
panic(err)
}
}
func TestKeyRing_Decrypt(t *testing.T) {
decString, err := testPrivateKeyRing.DecryptStringIfNeeded(readTestFile("keyring_token", false))
2018-11-05 23:01:53 +01:00
if err != nil {
t.Fatal("Cannot decrypt token:", err)
}
assert.Exactly(t, testToken, decString)
2018-11-05 23:01:53 +01:00
}
func TestKeyRing_Encrypt(t *testing.T) {
encrypted, err := testPublicKeyRing.EncryptString(testToken, testPrivateKeyRing)
2018-11-05 23:01:53 +01:00
if err != nil {
t.Fatal("Cannot encrypt token:", err)
}
// We can't just check if encrypted == testEncryptedToken
// Decrypt instead
2019-01-11 00:23:00 +01:00
ss, err := testPrivateKeyRing.DecryptString(encrypted)
2018-11-05 23:01:53 +01:00
if err != nil {
t.Fatal("Cannot decrypt token:", err)
}
assert.Exactly(t, testToken, ss.String)
signatureKeyRing := ss.Signed.KeyRing()
assert.Exactly(t, testPrivateKeyRing, signatureKeyRing)
isby := ss.Signed.IsBy(testPublicKeyRing)
assert.Exactly(t, true, isby)
2018-11-05 23:01:53 +01:00
}
func TestKeyRing_ArmoredPublicKeyString(t *testing.T) {
s, err := testPrivateKeyRing.GetArmoredPublicKey()
2018-11-05 23:01:53 +01:00
if err != nil {
t.Fatal("Expected no error while getting armored public key, got:", err)
}
// Decode armored keys
block, err := armor.Decode(strings.NewReader(s))
if err != nil {
t.Fatal("Expected no error while decoding armored public key, got:", err)
}
2019-05-14 16:08:25 +00:00
expected, err := armor.Decode(strings.NewReader(readTestFile("keyring_publicKey", false)))
2018-11-05 23:01:53 +01:00
if err != nil {
t.Fatal("Expected no error while decoding expected armored public key, got:", err)
}
assert.Exactly(t, expected.Type, block.Type)
2018-11-05 23:01:53 +01:00
b, err := ioutil.ReadAll(block.Body)
if err != nil {
t.Fatal("Expected no error while reading armored public key body, got:", err)
}
2018-11-05 23:01:53 +01:00
eb, err := ioutil.ReadAll(expected.Body)
if err != nil {
t.Fatal("Expected no error while reading expected armored public key body, got:", err)
}
assert.Exactly(t, eb, b)
2018-11-05 23:01:53 +01:00
}
func TestCheckPassphrase(t *testing.T) {
encryptedKeyRing, _ := ReadArmoredKeyRing(strings.NewReader(readTestFile("keyring_privateKey", false)))
is_correct := encryptedKeyRing.CheckPassphrase("Wrong password")
assert.Exactly(t, false, is_correct)
is_correct = encryptedKeyRing.CheckPassphrase(testMailboxPassword)
assert.Exactly(t, true, is_correct)
}
func TestIdentities(t *testing.T) {
identities := testPrivateKeyRing.Identities()
assert.Len(t, identities, 1)
assert.Exactly(t, identities[0], testIdentity)
}
func TestFilterExpiredKeys(t *testing.T) {
expiredKey, _ := ReadArmoredKeyRing(strings.NewReader(readTestFile("key_expiredKey", false)))
keys := []*KeyRing {testPrivateKeyRing, expiredKey}
unexpired, err := FilterExpiredKeys(keys)
if err != nil {
t.Fatal("Expected no error while filtering expired keyrings, got:", err)
}
assert.Len(t, unexpired, 1)
assert.Exactly(t, unexpired[0], testPrivateKeyRing)
}