author | msheppar |
Thu, 21 Feb 2013 20:01:22 +0000 | |
changeset 16020 | b57c48f16179 |
parent 9240 | 56e01f64958e |
child 30820 | 0d4717a011d3 |
permissions | -rw-r--r-- |
9240
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
1 |
/* |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
2 |
* Copyright (c) 2011, Oracle and/or its affiliates. All rights reserved. |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
3 |
* DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER. |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
4 |
* |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
5 |
* This code is free software; you can redistribute it and/or modify it |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
6 |
* under the terms of the GNU General Public License version 2 only, as |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
7 |
* published by the Free Software Foundation. |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
8 |
* |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
9 |
* This code is distributed in the hope that it will be useful, but WITHOUT |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
10 |
* ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
11 |
* FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
12 |
* version 2 for more details (a copy is included in the LICENSE file that |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
13 |
* accompanied this code). |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
14 |
* |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
15 |
* You should have received a copy of the GNU General Public License version |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
16 |
* 2 along with this work; if not, write to the Free Software Foundation, |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
17 |
* Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA. |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
18 |
* |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
19 |
* Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
20 |
* or visit www.oracle.com if you need additional information or have any |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
21 |
* questions. |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
22 |
*/ |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
23 |
|
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
24 |
/* |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
25 |
* @test |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
26 |
* @bug 7032354 |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
27 |
* @run main/othervm NoAddresses 1 |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
28 |
* @run main/othervm NoAddresses 2 |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
29 |
* @run main/othervm/fail NoAddresses 3 |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
30 |
* @summary no-addresses should not be used on acceptor side |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
31 |
*/ |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
32 |
|
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
33 |
import java.net.InetAddress; |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
34 |
import org.ietf.jgss.ChannelBinding; |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
35 |
import sun.security.jgss.GSSUtil; |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
36 |
import sun.security.krb5.Config; |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
37 |
|
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
38 |
public class NoAddresses { |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
39 |
|
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
40 |
public static void main(String[] args) |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
41 |
throws Exception { |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
42 |
|
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
43 |
OneKDC kdc = new OneKDC(null); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
44 |
kdc.writeJAASConf(); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
45 |
KDC.saveConfig(OneKDC.KRB5_CONF, kdc, |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
46 |
"noaddresses = false", |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
47 |
"default_keytab_name = " + OneKDC.KTAB); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
48 |
Config.refresh(); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
49 |
|
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
50 |
Context c = Context.fromJAAS("client"); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
51 |
Context s = Context.fromJAAS("server"); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
52 |
|
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
53 |
c.startAsClient(OneKDC.SERVER, GSSUtil.GSS_KRB5_MECH_OID); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
54 |
s.startAsServer(GSSUtil.GSS_KRB5_MECH_OID); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
55 |
|
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
56 |
InetAddress initiator = InetAddress.getLocalHost(); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
57 |
InetAddress acceptor = InetAddress.getLocalHost(); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
58 |
switch (args[0]) { |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
59 |
case "1": |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
60 |
// no initiator host address available, should be OK |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
61 |
break; |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
62 |
case "2": |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
63 |
// correct initiator host address, still fine |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
64 |
c.x().setChannelBinding( |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
65 |
new ChannelBinding(initiator, acceptor, null)); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
66 |
s.x().setChannelBinding( |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
67 |
new ChannelBinding(initiator, acceptor, null)); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
68 |
break; |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
69 |
case "3": |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
70 |
// incorrect initiator host address, fail |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
71 |
initiator = InetAddress.getByAddress(new byte[]{1,1,1,1}); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
72 |
c.x().setChannelBinding( |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
73 |
new ChannelBinding(initiator, acceptor, null)); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
74 |
s.x().setChannelBinding( |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
75 |
new ChannelBinding(initiator, acceptor, null)); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
76 |
break; |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
77 |
} |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
78 |
|
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
79 |
Context.handshake(c, s); |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
80 |
} |
56e01f64958e
7032354: no-addresses should not be used on acceptor side
weijun
parents:
diff
changeset
|
81 |
} |