2 * Copyright (c) 2013-2014 Apple Inc. All Rights Reserved.
4 * @APPLE_LICENSE_HEADER_START@
6 * This file contains Original Code and/or Modifications of Original Code
7 * as defined in and that are subject to the Apple Public Source License
8 * Version 2.0 (the 'License'). You may not use this file except in
9 * compliance with the License. Please obtain a copy of the License at
10 * http://www.opensource.apple.com/apsl/ and read it before using this
13 * The Original Code and all software distributed under the License are
14 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
15 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
16 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
17 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
18 * Please see the License for the specific language governing rights and
19 * limitations under the License.
21 * @APPLE_LICENSE_HEADER_END@
25 #include <Security/SecBase.h>
26 #include <Security/SecItem.h>
27 #include <Security/SecKey.h>
28 #include <SOSPeerInfoDER.h>
29 #include <Security/SecureObjectSync/SOSCircle.h>
30 #include <Security/SecureObjectSync/SOSPeerInfo.h>
31 #include <Security/SecureObjectSync/SOSInternal.h>
33 #include <utilities/SecCFWrappers.h>
35 #include <CoreFoundation/CoreFoundation.h>
40 #include "SOSCircle_regressions.h"
42 #include "SOSRegressionUtilities.h"
44 typedef struct piStuff_t
{
46 SOSFullPeerInfoRef fpi
;
48 SOSPeerInfoRef resignation_ticket
;
51 static piStuff
*makeSimplePeer(char *name
) {
52 piStuff
*pi
= malloc(sizeof(piStuff
));
55 pi
->signingKey
= NULL
;
56 CFStringRef cfName
= CFStringCreateWithCString(kCFAllocatorDefault
, name
, kCFStringEncodingMacRoman
);
57 pi
->fpi
= SOSCreateFullPeerInfoFromName(cfName
, &pi
->signingKey
, NULL
);
58 CFReleaseSafe(cfName
);
59 pi
->pi
= SOSFullPeerInfoGetPeerInfo(pi
->fpi
);
60 pi
->resignation_ticket
= SOSPeerInfoCreateRetirementTicket(kCFAllocatorDefault
, pi
->signingKey
, pi
->pi
, NULL
);
64 static inline bool retire_me(piStuff
*pi
, size_t seconds
) {
65 return SOSPeerInfoRetireRetirementTicket(seconds
, pi
->resignation_ticket
);
68 static inline bool chkBasicTicket(piStuff
*pi
) {
69 return CFEqual(SOSPeerInfoInspectRetirementTicket(pi
->resignation_ticket
, NULL
), SOSPeerInfoGetPeerID(pi
->pi
));
72 static bool in_between_time(CFDateRef before
, piStuff
*pi
, CFDateRef after
) {
73 CFDateRef during
= SOSPeerInfoGetRetirementDate(pi
->resignation_ticket
);
74 CFTimeInterval time1
= CFDateGetTimeIntervalSinceDate(before
, during
);
75 CFTimeInterval time2
= CFDateGetTimeIntervalSinceDate(during
, after
);
76 CFReleaseNull(during
);
77 if(time1
>= 0.0) return false;
78 if(time2
>= 0.0) return false;
82 static bool PeerInfoRoundTrip(SOSPeerInfoRef pi
) {
84 size_t size
= SOSPeerInfoGetDEREncodedSize(pi
, NULL
);
86 const uint8_t *buffer_p
= SOSPeerInfoEncodeToDER(pi
, NULL
, buffer
, buffer
+ sizeof(buffer
));
87 ok(buffer_p
!= NULL
, "encode");
88 if(buffer_p
== NULL
) return false;
89 SOSPeerInfoRef pi2
= SOSPeerInfoCreateFromDER(NULL
, NULL
, &buffer_p
, buffer
+ sizeof(buffer
));
90 ok(pi2
!= NULL
, "decode");
91 if(!pi2
) return false;
92 ok(CFEqual(pi
, pi2
), "Decode matches");
93 if(CFEqual(pi
, pi2
)) retval
= true;
98 static void tests(void)
100 CFDateRef before_time
= CFDateCreate(NULL
, CFAbsoluteTimeGetCurrent());
102 piStuff
*iPhone
= makeSimplePeer("iPhone");
103 piStuff
*iPad
= makeSimplePeer("iPad");
104 piStuff
*iMac
= makeSimplePeer("iMac");
105 piStuff
*iDrone
= makeSimplePeer("iDrone");
107 CFDateRef after_time
= CFDateCreate(NULL
, CFAbsoluteTimeGetCurrent());
109 ok(in_between_time(before_time
, iPhone
, after_time
), "retirement date recorded correctly");
110 CFReleaseSafe(before_time
);
111 CFReleaseSafe(after_time
);
112 ok(chkBasicTicket(iPhone
), "peer ID's Match");
113 ok(chkBasicTicket(iPad
), "peer ID's Match");
114 ok(chkBasicTicket(iMac
), "peer ID's Match");
115 ok(chkBasicTicket(iDrone
), "peer ID's Match");
117 // ok(miss_signature(iDrone, iPad), "signature failure detected");
119 ok(!retire_me(iPhone
, 10000), "ticket still valid");
121 ok(retire_me(iPhone
, 1), "ticket not valid");
123 CFDateRef retdate
= NULL
;
124 ok((retdate
= SOSPeerInfoGetRetirementDate(iPhone
->resignation_ticket
)) != NULL
, "got retirement date %@", retdate
);
125 CFReleaseSafe(retdate
);
127 ok(PeerInfoRoundTrip(iPhone
->resignation_ticket
), "retirement ticket safely DERs");
129 CFDateRef appdate
= NULL
;
130 ok((appdate
= SOSPeerInfoGetApplicationDate(iPhone
->resignation_ticket
)) != NULL
, "got application date %@", appdate
);
131 CFReleaseSafe(appdate
);
135 static int kTestTestCount
= 12;
137 int sc_130_resignationticket(int argc
, char *const *argv
)
139 plan_tests(kTestTestCount
);