branch: master
unit1397.c
4332 bytesRaw
/***************************************************************************
 *                                  _   _ ____  _
 *  Project                     ___| | | |  _ \| |
 *                             / __| | | | |_) | |
 *                            | (__| |_| |  _ <| |___
 *                             \___|\___/|_| \_\_____|
 *
 * Copyright (C) Daniel Stenberg, <daniel@haxx.se>, et al.
 *
 * This software is licensed as described in the file COPYING, which
 * you should have received as part of this distribution. The terms
 * are also available at https://curl.se/docs/copyright.html.
 *
 * You may opt to use, copy, modify, merge, publish, distribute and/or sell
 * copies of the Software, and permit persons to whom the Software is
 * furnished to do so, under the terms of the COPYING file.
 *
 * This software is distributed on an "AS IS" basis, WITHOUT WARRANTY OF ANY
 * KIND, either express or implied.
 *
 * SPDX-License-Identifier: curl
 *
 ***************************************************************************/
#include "unitcheck.h"

#include "vtls/hostcheck.h"

static CURLcode test_unit1397(const char *arg)
{
  UNITTEST_BEGIN_SIMPLE

/* only these backends define the tested functions */
#if defined(USE_OPENSSL) || defined(USE_SCHANNEL)

  struct testcase {
    const char *host;
    const char *pattern;
    bool match;
  };

  static const struct testcase tests[] = {
    { ".hello.com", "*.hello.com", FALSE },
    { "a.hello.com", "*.hello.com", TRUE },
    { "", "", FALSE },
    { "a", "", FALSE },
    { "", "b", FALSE },
    { "a", "b", FALSE },
    { "aa", "bb", FALSE },
    { "\xff", "\xff", TRUE },
    { "aa.aa.aa", "aa.aa.bb", FALSE },
    { "aa.aa.aa", "aa.aa.aa", TRUE },
    { "aa.aa.aa", "*.aa.bb", FALSE },
    { "aa.aa.aa", "*.aa.aa", TRUE },
    { "192.168.0.1", "192.168.0.1", TRUE },
    { "192.168.0.1", "*.168.0.1", FALSE },
    { "192.168.0.1", "*.0.1", FALSE },
    { "h.ello", "*.ello", FALSE },
    { "h.ello.", "*.ello", FALSE },
    { "h.ello", "*.ello.", FALSE },
    { "h.e.llo", "*.e.llo", TRUE },
    { "h.e.llo", " *.e.llo", FALSE },
    { " h.e.llo", "*.e.llo", TRUE },
    { "h.e.llo.", "*.e.llo", TRUE },
    { "*.e.llo.", "*.e.llo", TRUE },
    { "************.e.llo.", "*.e.llo", TRUE },
    { "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA"
      "BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB"
      "CCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCC"
      "DDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDD"
      "EEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEE"
      ".e.llo.", "*.e.llo", TRUE },
    { "\xfe\xfe.e.llo.", "*.e.llo", TRUE },
    { "h.e.llo.", "*.e.llo.", TRUE },
    { "h.e.llo", "*.e.llo.", TRUE },
    { ".h.e.llo", "*.e.llo.", FALSE },
    { "h.e.llo", "*.*.llo.", FALSE },
    { "h.e.llo", "h.*.llo", FALSE },
    { "h.e.llo", "h.e.*", FALSE },
    { "hello", "*.ello", FALSE },
    { "hello", "**llo", FALSE },
    { "bar.foo.example.com", "*.example.com", FALSE },
    { "foo.example.com", "*.example.com", TRUE },
    { "baz.example.net", "b*z.example.net", FALSE },
    { "foobaz.example.net", "*baz.example.net", FALSE },
    { "xn--l8j.example.local", "x*.example.local", FALSE },
    { "xn--l8j.example.net", "*.example.net", TRUE },
    { "xn--l8j.example.net", "*j.example.net", FALSE },
    { "xn--l8j.example.net", "xn--l8j.example.net", TRUE },
    { "xn--l8j.example.net", "xn--l8j.*.net", FALSE },
    { "xl8j.example.net", "*.example.net", TRUE },
    { "fe80::3285:a9ff:fe46:b619", "*::3285:a9ff:fe46:b619", FALSE },
    { "fe80::3285:a9ff:fe46:b619", "fe80::3285:a9ff:fe46:b619", TRUE },
    { NULL, NULL, FALSE }
  };

  int i;
  for(i = 0; tests[i].host; i++) {
    if(tests[i].match != Curl_cert_hostcheck(tests[i].pattern,
                                             strlen(tests[i].pattern),
                                             tests[i].host,
                                             strlen(tests[i].host))) {
      curl_mfprintf(stderr,
                    "HOST: %s\n"
                    "PTRN: %s\n"
                    "did %sMATCH\n",
                    tests[i].host,
                    tests[i].pattern,
                    tests[i].match ? "NOT " : "");
      unitfail++;
    }
  }
#endif

  UNITTEST_END_SIMPLE
}