From d9e79425d1f095ebcd39fb67537a166ee8dc9234 Mon Sep 17 00:00:00 2001 From: Nikos Mavrogiannopoulos Date: Thu, 6 Apr 2017 05:14:25 +0200 Subject: tests: added basic check for system trust store This checks whether the gnutls_certificate_set_x509_system_trust() and thus the trust list equivalent function operate as expected and return a positive number of certificates. The test is ignored in systems where these functions return GNUTLS_E_UNIMPLEMENTED_FEATURE. Signed-off-by: Nikos Mavrogiannopoulos --- tests/trust-store.c | 73 +++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 73 insertions(+) create mode 100644 tests/trust-store.c (limited to 'tests/trust-store.c') diff --git a/tests/trust-store.c b/tests/trust-store.c new file mode 100644 index 0000000000..ae21998f6f --- /dev/null +++ b/tests/trust-store.c @@ -0,0 +1,73 @@ +/* + * Copyright (C) 2017 Nikos Mavrogiannopoulos + * + * Author: Nikos Mavrogiannopoulos + * + * This file is part of GnuTLS. + * + * GnuTLS is free software; you can redistribute it and/or modify it + * under the terms of the GNU General Public License as published by + * the Free Software Foundation; either version 3 of the License, or + * (at your option) any later version. + * + * GnuTLS is distributed in the hope that it will be useful, but + * WITHOUT ANY WARRANTY; without even the implied warranty of + * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU + * General Public License for more details. + * + * You should have received a copy of the GNU General Public License + * along with GnuTLS; if not, write to the Free Software Foundation, + * Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA + */ + +#ifdef HAVE_CONFIG_H +#include +#endif + +#include +#include +#include +#include +#include +#include + +#include "utils.h" + +/* Test for gnutls_certificate_set_x509_system_trust() + */ + +static void tls_log_func(int level, const char *str) +{ + fprintf(stderr, "<%d>| %s", level, str); +} + + +void doit(void) +{ + gnutls_certificate_credentials_t x509_cred; + int ret; + + global_init(); + + gnutls_global_set_log_function(tls_log_func); + if (debug) + gnutls_global_set_log_level(6); + + assert(gnutls_certificate_allocate_credentials(&x509_cred) >= 0); + + ret = gnutls_certificate_set_x509_system_trust(x509_cred); + if (ret == GNUTLS_E_UNIMPLEMENTED_FEATURE) { + exit(77); + } else if (ret < 0) { + fail("error loading system trust store: %s\n", gnutls_strerror(ret)); + } else if (ret == 0) { + fail("no certificates were found in system trust store!\n"); + } + + gnutls_certificate_free_credentials(x509_cred); + + gnutls_global_deinit(); + + if (debug) + success("success"); +} -- cgit v1.2.1