test/jdk/sun/security/pkcs11/Signature/SigInteropPSS.java
author chegar
Thu, 17 Oct 2019 20:53:35 +0100
branchdatagramsocketimpl-branch
changeset 58678 9cf78a70fa4f
child 58679 9c3209ff7550
permissions -rw-r--r--
datagramsocketimpl-branch: update to default
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
58678
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
     1
/*
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
     2
 * Copyright (c) 2019, Oracle and/or its affiliates. All rights reserved.
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
     3
 * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
     4
 *
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
     5
 * This code is free software; you can redistribute it and/or modify it
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
     6
 * under the terms of the GNU General Public License version 2 only, as
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
     7
 * published by the Free Software Foundation.
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
     8
 *
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
     9
 * This code is distributed in the hope that it will be useful, but WITHOUT
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    10
 * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    11
 * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    12
 * version 2 for more details (a copy is included in the LICENSE file that
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    13
 * accompanied this code).
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    14
 *
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    15
 * You should have received a copy of the GNU General Public License version
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    16
 * 2 along with this work; if not, write to the Free Software Foundation,
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    17
 * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    18
 *
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    19
 * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    20
 * or visit www.oracle.com if you need additional information or have any
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    21
 * questions.
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    22
 */
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    23
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    24
import java.security.*;
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    25
import java.security.spec.*;
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    26
import java.security.interfaces.*;
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    27
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    28
/*
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    29
 * @test
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    30
 * @bug 8080462 8226651
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    31
 * @summary testing interoperability of PSS signatures of PKCS11 provider
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    32
 *         against SunRsaSign provider
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    33
 * @library /test/lib ..
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    34
 * @modules jdk.crypto.cryptoki
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    35
 * @run main/othervm SigInteropPSS
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    36
 */
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    37
public class SigInteropPSS extends PKCS11Test {
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    38
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    39
    private static final byte[] MSG =
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    40
        "Interoperability test between SunRsaSign and SunPKCS11".getBytes();
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    41
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    42
    private static final String[] DIGESTS = {
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    43
        "SHA-224", "SHA-256", "SHA-384", "SHA-512"
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    44
    };
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    45
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    46
    public static void main(String[] args) throws Exception {
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    47
        main(new SigInteropPSS(), args);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    48
    }
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    49
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    50
    @Override
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    51
    public void main(Provider p) throws Exception {
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    52
        Signature sigPkcs11;
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    53
        try {
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    54
            sigPkcs11 = Signature.getInstance("RSASSA-PSS", p);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    55
        } catch (NoSuchAlgorithmException e) {
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    56
            System.out.println("Skip testing RSASSA-PSS" +
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    57
                " due to no support");
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    58
            return;
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    59
        }
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    60
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    61
        Signature sigSunRsaSign =
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    62
                Signature.getInstance("RSASSA-PSS", "SunRsaSign");
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    63
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    64
        KeyPairGenerator kpg = KeyPairGenerator.getInstance("RSA", p);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    65
        kpg.initialize(3072);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    66
        KeyPair kp = kpg.generateKeyPair();
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    67
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    68
        runTest(sigSunRsaSign, sigPkcs11, kp);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    69
        runTest(sigPkcs11, sigSunRsaSign, kp);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    70
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    71
        System.out.println("Test passed");
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    72
    }
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    73
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    74
    static void runTest(Signature signer, Signature verifier, KeyPair kp)
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    75
            throws Exception {
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    76
        System.out.println("\tSign using " + signer.getProvider().getName());
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    77
        System.out.println("\tVerify using " + verifier.getProvider().getName());
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    78
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    79
        for (String hash : DIGESTS) {
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    80
            for (String mgfHash : DIGESTS) {
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    81
                System.out.println("\tDigest = " + hash);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    82
                System.out.println("\tMGF = MGF1_" + mgfHash);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    83
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    84
                PSSParameterSpec params = new PSSParameterSpec(hash, "MGF1",
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    85
                    new MGF1ParameterSpec(mgfHash), 0, 1);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    86
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    87
                signer.setParameter(params);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    88
                signer.initSign(kp.getPrivate());
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    89
                verifier.setParameter(params);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    90
                verifier.initVerify(kp.getPublic());
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    91
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    92
                signer.update(MSG);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    93
                byte[] sigBytes = signer.sign();
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    94
                verifier.update(MSG);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    95
                boolean isValid = verifier.verify(sigBytes);
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    96
                if (isValid) {
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    97
                    System.out.println("\tPSS Signature verified");
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    98
                } else {
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
    99
                    throw new RuntimeException("ERROR verifying PSS Signature");
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
   100
                }
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
   101
            }
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
   102
        }
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
   103
    }
9cf78a70fa4f datagramsocketimpl-branch: update to default
chegar
parents:
diff changeset
   104
}