test/jdk/sun/security/ssl/X509TrustManagerImpl/SelfIssuedCert.java
author xuelei
Mon, 25 Jun 2018 13:41:39 -0700
changeset 50768 68fa3d4026ea
parent 47216 71c04702a3d5
permissions -rw-r--r--
8196584: TLS 1.3 Implementation Reviewed-by: ascarpino, coffeys, dfuchs, jjiang, jnimeh, mullan, rhalade, ssahoo, valeriep, weijun, wetmore, xuelei Contributed-by: Adam Petcher <adam.petcher@oracle.com>, Amanda Jiang <amanda.jiang@oracle.com>, Anthony Scarpino <anthony.scarpino@oracle.com>, Bradford Wetmore <bradford.wetmore@oracle.com>, Jamil Nimeh <jamil.j.nimeh@oracle.com>, John Jiang <sha.jiang@oracle.com>, Rajan Halade <rajan.halade@oracle.com>, Sibabrata Sahoo <sibabrata.sahoo@oracle.com>, Valerie Peng <valerie.peng@oracle.com>, Weijun Wang <weijun.wang@oracle.com>, Xuelei Fan <xuelei.fan@oracle.com>
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
2926
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
     1
/*
50768
68fa3d4026ea 8196584: TLS 1.3 Implementation
xuelei
parents: 47216
diff changeset
     2
 * Copyright (c) 2009, 2018, Oracle and/or its affiliates. All rights reserved.
2926
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
     3
 * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
     4
 *
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
     5
 * This code is free software; you can redistribute it and/or modify it
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
     6
 * under the terms of the GNU General Public License version 2 only, as
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
     7
 * published by the Free Software Foundation.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
     8
 *
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
     9
 * This code is distributed in the hope that it will be useful, but WITHOUT
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    10
 * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    11
 * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    12
 * version 2 for more details (a copy is included in the LICENSE file that
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    13
 * accompanied this code).
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    14
 *
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    15
 * You should have received a copy of the GNU General Public License version
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    16
 * 2 along with this work; if not, write to the Free Software Foundation,
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    17
 * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    18
 *
5506
202f599c92aa 6943119: Rebrand source copyright notices
ohair
parents: 2926
diff changeset
    19
 * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
202f599c92aa 6943119: Rebrand source copyright notices
ohair
parents: 2926
diff changeset
    20
 * or visit www.oracle.com if you need additional information or have any
202f599c92aa 6943119: Rebrand source copyright notices
ohair
parents: 2926
diff changeset
    21
 * questions.
2926
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    22
 */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    23
22268
d72c97c708ae 8030829: Add MD5 to jdk.certpath.disabledAlgorithms security property
xuelei
parents: 16020
diff changeset
    24
//
d72c97c708ae 8030829: Add MD5 to jdk.certpath.disabledAlgorithms security property
xuelei
parents: 16020
diff changeset
    25
// SunJSSE does not support dynamic system properties, no way to re-use
d72c97c708ae 8030829: Add MD5 to jdk.certpath.disabledAlgorithms security property
xuelei
parents: 16020
diff changeset
    26
// system properties in samevm/agentvm mode.
d72c97c708ae 8030829: Add MD5 to jdk.certpath.disabledAlgorithms security property
xuelei
parents: 16020
diff changeset
    27
//
d72c97c708ae 8030829: Add MD5 to jdk.certpath.disabledAlgorithms security property
xuelei
parents: 16020
diff changeset
    28
2926
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    29
/*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    30
 * @test
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    31
 * @bug 6822460
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    32
 * @summary support self-issued certificate
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    33
 * @run main/othervm SelfIssuedCert PKIX
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    34
 * @run main/othervm SelfIssuedCert SunX509
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    35
 * @author Xuelei Fan
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    36
 */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    37
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    38
import java.net.*;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    39
import java.util.*;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    40
import java.io.*;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    41
import javax.net.ssl.*;
22268
d72c97c708ae 8030829: Add MD5 to jdk.certpath.disabledAlgorithms security property
xuelei
parents: 16020
diff changeset
    42
import java.security.Security;
2926
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    43
import java.security.KeyStore;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    44
import java.security.KeyFactory;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    45
import java.security.cert.Certificate;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    46
import java.security.cert.CertificateFactory;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    47
import java.security.spec.*;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    48
import java.security.interfaces.*;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    49
import java.math.BigInteger;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    50
16020
b57c48f16179 8006182: cleanup to use java.util.Base64 in java security component, providers, and regression tests
msheppar
parents: 14342
diff changeset
    51
import java.util.Base64;
2926
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    52
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    53
public class SelfIssuedCert {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    54
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    55
    /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    56
     * =============================================================
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    57
     * Set the various variables needed for the tests, then
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    58
     * specify what tests to run on each side.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    59
     */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    60
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    61
    /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    62
     * Should we run the client or server in a separate thread?
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    63
     * Both sides can throw exceptions, but do you have a preference
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    64
     * as to which side should be the main thread.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    65
     */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    66
    static boolean separateServerThread = true;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    67
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    68
    /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    69
     * Where do we find the keystores?
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    70
     */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    71
    // Certificate information:
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    72
    // Issuer: C=US, O=Example, CN=localhost
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    73
    // Validity
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    74
    //     Not Before: May 25 00:35:58 2009 GMT
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    75
    //     Not After : May  5 00:35:58 2030 GMT
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    76
    // Subject: C=US, O=Example, CN=localhost
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    77
    // X509v3 Subject Key Identifier:
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    78
    //     56:AB:FE:15:4C:9C:4A:70:90:DC:0B:9B:EB:BE:DC:03:CC:7F:CE:CF
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    79
    // X509v3 Authority Key Identifier:
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    80
    //     keyid:56:AB:FE:15:4C:9C:4A:70:90:DC:0B:9B:EB:BE:DC:03:CC:7F:CE:CF
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    81
    //     DirName:/C=US/O=Example/CN=localhost
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    82
    //     serial:00
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    83
    static String trusedCertStr =
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    84
        "-----BEGIN CERTIFICATE-----\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    85
        "MIICejCCAeOgAwIBAgIBADANBgkqhkiG9w0BAQQFADAzMQswCQYDVQQGEwJVUzEQ\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    86
        "MA4GA1UEChMHRXhhbXBsZTESMBAGA1UEAxMJbG9jYWxob3N0MB4XDTA5MDUyNTAw\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    87
        "MDQ0M1oXDTMwMDUwNTAwMDQ0M1owMzELMAkGA1UEBhMCVVMxEDAOBgNVBAoTB0V4\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    88
        "YW1wbGUxEjAQBgNVBAMTCWxvY2FsaG9zdDCBnzANBgkqhkiG9w0BAQEFAAOBjQAw\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    89
        "gYkCgYEA0Wvh3FHYGQ3vvw59yTjUxT6QuY0fzwCGQTM9evXr/V9+pjWmaTkNDW+7\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    90
        "S/LErlWz64gOWTgcMZN162sVgx4ct/q27brY+SlUO5eSud1fSac6SfefhOPBa965\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    91
        "Xc4mnpDt5sgQPMDCuFK7Le6A+/S9J42BO2WYmNcmvcwWWrv+ehcCAwEAAaOBnTCB\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    92
        "mjAdBgNVHQ4EFgQUq3q5fYEibdvLpab+JY4pmifj2vYwWwYDVR0jBFQwUoAUq3q5\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    93
        "fYEibdvLpab+JY4pmifj2vahN6Q1MDMxCzAJBgNVBAYTAlVTMRAwDgYDVQQKEwdF\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    94
        "eGFtcGxlMRIwEAYDVQQDEwlsb2NhbGhvc3SCAQAwDwYDVR0TAQH/BAUwAwEB/zAL\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    95
        "BgNVHQ8EBAMCAgQwDQYJKoZIhvcNAQEEBQADgYEAHL8BSwtX6s8WPPG2FbQBX+K8\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    96
        "GquAyQNtgfJNm60B4i+fVBkJiQJtLmE0emvHx/3sIaHmB0Gd0HKnk/cIQXY304vr\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    97
        "QpqwudKcIZuzmj+pa7807joV+WzRDVIlt4HpYg7tiUvEoyw+X8jwY2lgiGR7mWu6\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    98
        "jQU8PN/06+qgtvSGFpo=\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
    99
        "-----END CERTIFICATE-----";
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   100
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   101
    // Certificate information:
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   102
    // Issuer: C=US, O=Example, CN=localhost
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   103
    // Validity
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   104
    //     Not Before: May 25 00:35:58 2009 GMT
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   105
    //     Not After : May  5 00:35:58 2030 GMT
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   106
    // Subject: C=US, O=Example, CN=localhost
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   107
    // X509v3 Subject Key Identifier:
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   108
    //     0D:30:76:22:D6:9D:75:EF:FD:83:50:31:18:08:83:CD:01:4E:6A:C4
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   109
    // X509v3 Authority Key Identifier:
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   110
    //     keyid:56:AB:FE:15:4C:9C:4A:70:90:DC:0B:9B:EB:BE:DC:03:CC:7F:CE:CF
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   111
    //     DirName:/C=US/O=Example/CN=localhost
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   112
    //     serial:00
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   113
    static String targetCertStr =
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   114
        "-----BEGIN CERTIFICATE-----\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   115
        "MIICaTCCAdKgAwIBAgIBAjANBgkqhkiG9w0BAQQFADAzMQswCQYDVQQGEwJVUzEQ\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   116
        "MA4GA1UEChMHRXhhbXBsZTESMBAGA1UEAxMJbG9jYWxob3N0MB4XDTA5MDUyNTAw\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   117
        "MDQ0M1oXDTI5MDIwOTAwMDQ0M1owMzELMAkGA1UEBhMCVVMxEDAOBgNVBAoTB0V4\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   118
        "YW1wbGUxEjAQBgNVBAMTCWxvY2FsaG9zdDCBnzANBgkqhkiG9w0BAQEFAAOBjQAw\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   119
        "gYkCgYEAzmPahrH9LTQv3HEWsua+hIpzyU1ACooSd5BtDjc7XnVzSdGW8QD9R8EA\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   120
        "xko7TvfJo6IH6wwgHBspySwsl+6xvHhbwQjgtWlT71ksrUbqcUzmvSvcycQYA8RC\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   121
        "yk9HK5pEJQgSxldpR3Kmy0V6CHC4dCm15trnJYWisTuezY3fjXECAwEAAaOBjDCB\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   122
        "iTAdBgNVHQ4EFgQUQkiWFRkjKsfwFo7UMQfGEzNNW60wWwYDVR0jBFQwUoAUq3q5\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   123
        "fYEibdvLpab+JY4pmifj2vahN6Q1MDMxCzAJBgNVBAYTAlVTMRAwDgYDVQQKEwdF\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   124
        "eGFtcGxlMRIwEAYDVQQDEwlsb2NhbGhvc3SCAQAwCwYDVR0PBAQDAgPoMA0GCSqG\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   125
        "SIb3DQEBBAUAA4GBAIMz7c1R+6KEO7FmH4rnv9XE62xkg03ff0vKXLZMjjs0CX2z\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   126
        "ybRttuTFafHA6/JS+Wz0G83FCRVeiw2WPU6BweMwwejzzIrQ/K6mbp6w6sRFcbNa\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   127
        "eLBtzkjEtI/htOSSq3/0mbKmWn5uVJckO4QiB8kUR4F7ngM9l1uuI46ZfUsk\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   128
        "-----END CERTIFICATE-----";
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   129
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   130
    // Private key in the format of PKCS#8
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   131
    static String targetPrivateKey =
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   132
        "MIICeQIBADANBgkqhkiG9w0BAQEFAASCAmMwggJfAgEAAoGBAM5j2oax/S00L9xx\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   133
        "FrLmvoSKc8lNQAqKEneQbQ43O151c0nRlvEA/UfBAMZKO073yaOiB+sMIBwbKcks\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   134
        "LJfusbx4W8EI4LVpU+9ZLK1G6nFM5r0r3MnEGAPEQspPRyuaRCUIEsZXaUdypstF\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   135
        "eghwuHQpteba5yWForE7ns2N341xAgMBAAECgYEAgZ8k98OBhopoJMLBxso0jXmH\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   136
        "Dr59oiDlSEJku7DkkIajSZFggyxj5lTI78BfT1FASozQ/EY5RG2q6LXdq+41oU/U\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   137
        "JVEQWhdIE1mQDwE0vgaYdjzMaVIsC3cZYOCOmCYvNxCiTt7e/z8yBMmAE5udqJMB\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   138
        "pim4WXDfpy0ssK81oCECQQDwMC4xu+kn0yD/Qyi9Zn26gIRDv4bjzDQoJfSvMhrY\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   139
        "a4duxLzh9u4gCDd0+wHxpPQvNxGCk0c1JUxBJ2rb4G3HAkEA2/oVRV6+xiRXUnoo\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   140
        "bdPEO27zEJmdpE42yU/JLIy6DPu2IUhEqY45fU2ZERmwMdhpiK/vsf/CZKJ2j/ZU\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   141
        "PdMLBwJBAJIYTFDWAqjFpCGAASzLRZiGiW0H941h7Suqgp159ZhEN5mps1Yis47q\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   142
        "UIkoEHOiKSD69vychsiNykcrKbVaWosCQQC1UrYX4Vo1r5z/EkyjAwzcxL68rzM/\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   143
        "TW1hkU/NVg7CRvXBB3X5oY+H1t/WNauD2tRa5FMbESwmkbhTQIP+FikfAkEA4goD\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   144
        "HCxUn0Z1OQq9QL6y1Yoof6sHxicUwABosuCLJnDJmA5vhpemvdXQTzFII8g1hyQf\n" +
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   145
        "z1yyDoxhddcleKlJvQ==";
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   146
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   147
    static char passphrase[] = "passphrase".toCharArray();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   148
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   149
    /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   150
     * Is the server ready to serve?
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   151
     */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   152
    volatile static boolean serverReady = false;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   153
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   154
    /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   155
     * Turn on SSL debugging?
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   156
     */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   157
    static boolean debug = false;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   158
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   159
    /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   160
     * Define the server side of the test.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   161
     *
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   162
     * If the server prematurely exits, serverReady will be set to true
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   163
     * to avoid infinite hangs.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   164
     */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   165
    void doServerSide() throws Exception {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   166
        SSLContext context = getSSLContext(null, targetCertStr,
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   167
                                            targetPrivateKey);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   168
        SSLServerSocketFactory sslssf = context.getServerSocketFactory();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   169
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   170
        SSLServerSocket sslServerSocket =
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   171
            (SSLServerSocket)sslssf.createServerSocket(serverPort);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   172
        serverPort = sslServerSocket.getLocalPort();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   173
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   174
        /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   175
         * Signal Client, we're ready for his connect.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   176
         */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   177
        serverReady = true;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   178
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   179
        SSLSocket sslSocket = (SSLSocket) sslServerSocket.accept();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   180
        sslSocket.setNeedClientAuth(false);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   181
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   182
        InputStream sslIS = sslSocket.getInputStream();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   183
        OutputStream sslOS = sslSocket.getOutputStream();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   184
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   185
        sslIS.read();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   186
        sslOS.write(85);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   187
        sslOS.flush();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   188
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   189
        sslSocket.close();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   190
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   191
    }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   192
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   193
    /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   194
     * Define the client side of the test.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   195
     *
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   196
     * If the server prematurely exits, serverReady will be set to true
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   197
     * to avoid infinite hangs.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   198
     */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   199
    void doClientSide() throws Exception {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   200
        /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   201
         * Wait for server to get started.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   202
         */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   203
        while (!serverReady) {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   204
            Thread.sleep(50);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   205
        }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   206
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   207
        SSLContext context = getSSLContext(trusedCertStr, null, null);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   208
        SSLSocketFactory sslsf = context.getSocketFactory();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   209
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   210
        SSLSocket sslSocket =
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   211
            (SSLSocket)sslsf.createSocket("localhost", serverPort);
50768
68fa3d4026ea 8196584: TLS 1.3 Implementation
xuelei
parents: 47216
diff changeset
   212
        sslSocket.setEnabledProtocols(new String[] { "TLSv1", "TLSv1.1", "TLSv1.2" });
2926
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   213
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   214
        InputStream sslIS = sslSocket.getInputStream();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   215
        OutputStream sslOS = sslSocket.getOutputStream();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   216
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   217
        sslOS.write(280);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   218
        sslOS.flush();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   219
        sslIS.read();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   220
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   221
        sslSocket.close();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   222
    }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   223
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   224
    // get the ssl context
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   225
    private static SSLContext getSSLContext(String trusedCertStr,
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   226
            String keyCertStr, String keySpecStr) throws Exception {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   227
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   228
        // generate certificate from cert string
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   229
        CertificateFactory cf = CertificateFactory.getInstance("X.509");
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   230
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   231
        // create a key store
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   232
        KeyStore ks = KeyStore.getInstance("JKS");
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   233
        ks.load(null, null);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   234
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   235
        // import the trused cert
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   236
        Certificate trusedCert = null;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   237
        ByteArrayInputStream is = null;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   238
        if (trusedCertStr != null) {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   239
            is = new ByteArrayInputStream(trusedCertStr.getBytes());
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   240
            trusedCert = cf.generateCertificate(is);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   241
            is.close();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   242
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   243
            ks.setCertificateEntry("RSA Export Signer", trusedCert);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   244
        }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   245
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   246
        if (keyCertStr != null) {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   247
            // generate the private key.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   248
            PKCS8EncodedKeySpec priKeySpec = new PKCS8EncodedKeySpec(
16020
b57c48f16179 8006182: cleanup to use java.util.Base64 in java security component, providers, and regression tests
msheppar
parents: 14342
diff changeset
   249
                                Base64.getMimeDecoder().decode(keySpecStr));
2926
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   250
            KeyFactory kf = KeyFactory.getInstance("RSA");
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   251
            RSAPrivateKey priKey =
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   252
                    (RSAPrivateKey)kf.generatePrivate(priKeySpec);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   253
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   254
            // generate certificate chain
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   255
            is = new ByteArrayInputStream(keyCertStr.getBytes());
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   256
            Certificate keyCert = cf.generateCertificate(is);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   257
            is.close();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   258
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   259
            Certificate[] chain = null;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   260
            if (trusedCert != null) {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   261
                chain = new Certificate[2];
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   262
                chain[0] = keyCert;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   263
                chain[1] = trusedCert;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   264
            } else {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   265
                chain = new Certificate[1];
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   266
                chain[0] = keyCert;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   267
            }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   268
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   269
            // import the key entry.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   270
            ks.setKeyEntry("Whatever", priKey, passphrase, chain);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   271
        }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   272
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   273
        // create SSL context
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   274
        TrustManagerFactory tmf = TrustManagerFactory.getInstance(tmAlgorithm);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   275
        tmf.init(ks);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   276
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   277
        SSLContext ctx = SSLContext.getInstance("TLS");
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   278
        if (keyCertStr != null && !keyCertStr.isEmpty()) {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   279
            KeyManagerFactory kmf = KeyManagerFactory.getInstance("NewSunX509");
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   280
            kmf.init(ks, passphrase);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   281
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   282
            ctx.init(kmf.getKeyManagers(), tmf.getTrustManagers(), null);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   283
            ks = null;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   284
        } else {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   285
            ctx.init(null, tmf.getTrustManagers(), null);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   286
        }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   287
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   288
        return ctx;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   289
    }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   290
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   291
    private static String tmAlgorithm;        // trust manager
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   292
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   293
    private static void parseArguments(String[] args) {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   294
        tmAlgorithm = args[0];
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   295
    }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   296
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   297
    /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   298
     * =============================================================
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   299
     * The remainder is just support stuff
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   300
     */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   301
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   302
    // use any free port by default
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   303
    volatile int serverPort = 0;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   304
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   305
    volatile Exception serverException = null;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   306
    volatile Exception clientException = null;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   307
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   308
    public static void main(String args[]) throws Exception {
22268
d72c97c708ae 8030829: Add MD5 to jdk.certpath.disabledAlgorithms security property
xuelei
parents: 16020
diff changeset
   309
        // MD5 is used in this test case, don't disable MD5 algorithm.
35298
9f93cbce8c44 8144773: Further reduce use of MD5
xuelei
parents: 23052
diff changeset
   310
        Security.setProperty("jdk.certpath.disabledAlgorithms",
9f93cbce8c44 8144773: Further reduce use of MD5
xuelei
parents: 23052
diff changeset
   311
                "MD2, RSA keySize < 1024");
9f93cbce8c44 8144773: Further reduce use of MD5
xuelei
parents: 23052
diff changeset
   312
        Security.setProperty("jdk.tls.disabledAlgorithms",
9f93cbce8c44 8144773: Further reduce use of MD5
xuelei
parents: 23052
diff changeset
   313
                "SSLv3, RC4, DH keySize < 768");
22268
d72c97c708ae 8030829: Add MD5 to jdk.certpath.disabledAlgorithms security property
xuelei
parents: 16020
diff changeset
   314
2926
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   315
        if (debug)
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   316
            System.setProperty("javax.net.debug", "all");
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   317
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   318
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   319
        /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   320
         * Get the customized arguments.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   321
         */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   322
        parseArguments(args);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   323
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   324
        /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   325
         * Start the tests.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   326
         */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   327
        new SelfIssuedCert();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   328
    }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   329
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   330
    Thread clientThread = null;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   331
    Thread serverThread = null;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   332
    /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   333
     * Primary constructor, used to drive remainder of the test.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   334
     *
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   335
     * Fork off the other side, then do your work.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   336
     */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   337
    SelfIssuedCert() throws Exception {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   338
        if (separateServerThread) {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   339
            startServer(true);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   340
            startClient(false);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   341
        } else {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   342
            startClient(true);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   343
            startServer(false);
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   344
        }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   345
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   346
        /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   347
         * Wait for other side to close down.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   348
         */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   349
        if (separateServerThread) {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   350
            serverThread.join();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   351
        } else {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   352
            clientThread.join();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   353
        }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   354
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   355
        /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   356
         * When we get here, the test is pretty much over.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   357
         *
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   358
         * If the main thread excepted, that propagates back
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   359
         * immediately.  If the other thread threw an exception, we
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   360
         * should report back.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   361
         */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   362
        if (serverException != null)
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   363
            throw serverException;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   364
        if (clientException != null)
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   365
            throw clientException;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   366
    }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   367
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   368
    void startServer(boolean newThread) throws Exception {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   369
        if (newThread) {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   370
            serverThread = new Thread() {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   371
                public void run() {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   372
                    try {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   373
                        doServerSide();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   374
                    } catch (Exception e) {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   375
                        /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   376
                         * Our server thread just died.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   377
                         *
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   378
                         * Release the client, if not active already...
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   379
                         */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   380
                        System.err.println("Server died...");
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   381
                        serverReady = true;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   382
                        serverException = e;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   383
                    }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   384
                }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   385
            };
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   386
            serverThread.start();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   387
        } else {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   388
            doServerSide();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   389
        }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   390
    }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   391
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   392
    void startClient(boolean newThread) throws Exception {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   393
        if (newThread) {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   394
            clientThread = new Thread() {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   395
                public void run() {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   396
                    try {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   397
                        doClientSide();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   398
                    } catch (Exception e) {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   399
                        /*
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   400
                         * Our client thread just died.
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   401
                         */
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   402
                        System.err.println("Client died...");
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   403
                        clientException = e;
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   404
                    }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   405
                }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   406
            };
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   407
            clientThread.start();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   408
        } else {
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   409
            doClientSide();
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   410
        }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   411
    }
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   412
6fbaec35c792 6822460: support self-issued certificate
xuelei
parents:
diff changeset
   413
}