XMLDSIG transforms from .NET Core.
[mono.git] / mcs / class / System.Security / Test / System.Security.Cryptography.Xml / ReferenceTest.cs
1 //
2 // ReferenceTest.cs - NUnit Test Cases for Reference
3 //
4 // Author:
5 //      Sebastien Pouliot <sebastien@ximian.com>
6 //
7 // (C) 2002, 2003 Motus Technologies Inc. (http://www.motus.com)
8 // (C) 2004 Novell (http://www.novell.com)
9 //
10
11 using System;
12 using System.Security.Cryptography;
13 using System.Security.Cryptography.Xml;
14 using System.Xml;
15
16 using NUnit.Framework;
17
18 namespace MonoTests.System.Security.Cryptography.Xml {
19
20         [TestFixture]
21         public class ReferenceTest {
22
23                 protected Reference reference;
24
25                 [SetUp]
26                 public void SetUp () 
27                 {
28                         reference = new Reference ();
29                 }
30
31                 [Test]
32                 public void Properties () 
33                 {
34                         Assert.IsNull (reference.Uri, "Uri (null)");
35                         Assert.IsNotNull (reference.TransformChain, "TransformChain");
36                         // test uri constructor
37                         string uri = "uri";
38                         reference = new Reference (uri);
39                         Assert.AreEqual (SignedXml.XmlDsigSHA256Url, reference.DigestMethod, "DigestMethod");
40                         Assert.IsNull (reference.DigestValue, "DigestValue");
41                         Assert.IsNull (reference.Id, "Id");
42                         Assert.IsNull (reference.Type, "Type");
43                         Assert.AreEqual (uri, reference.Uri, "Uri");
44                 }
45
46                 [Test]
47                 public void LoadNoTransform () 
48                 {
49                         string test = "<Reference URI=\"#MyObjectId\" xmlns=\"http://www.w3.org/2000/09/xmldsig#\"><DigestMethod Algorithm=\"http://www.w3.org/2000/09/xmldsig#sha1\" /><DigestValue>/Vvq6sXEVbtZC8GwNtLQnGOy/VI=</DigestValue></Reference>";
50                         XmlDocument doc = new XmlDocument ();
51                         doc.LoadXml (test);
52                         reference.LoadXml (doc.DocumentElement);
53                         Assert.AreEqual (test, (reference.GetXml().OuterXml), "Load-Xml");
54                         Assert.AreEqual ("#MyObjectId", reference.Uri, "Load-URI");
55                         byte[] hash = { 0xFD, 0x5B, 0xEA, 0xEA, 0xC5, 0xC4, 0x55, 0xBB, 0x59, 0x0B, 0xC1, 0xB0, 0x36, 0xD2, 0xD0, 0x9C, 0x63, 0xB2, 0xFD, 0x52 };
56                         AssertCrypto.AssertEquals("Load-Digest", hash, reference.DigestValue);
57                         Assert.AreEqual (0, reference.TransformChain.Count, "Load-#Transform");
58                 }
59
60                 [Test]
61                 public void LoadBase64Transform () 
62                 {
63                         string test = "<Reference xmlns=\"http://www.w3.org/2000/09/xmldsig#\"><Transforms><Transform Algorithm=\"http://www.w3.org/2000/09/xmldsig#base64\" /></Transforms><DigestMethod Algorithm=\"http://www.w3.org/2000/09/xmldsig#sha1\" /><DigestValue>AAAAAAAAAAAAAAAAAAAAAAAAAAA=</DigestValue></Reference>";
64                         XmlDocument doc = new XmlDocument ();
65                         doc.LoadXml (test);
66                         reference.LoadXml (doc.DocumentElement);
67                         Assert.AreEqual (test, (reference.GetXml().OuterXml), "Load-Base64");
68                         Assert.AreEqual (1, reference.TransformChain.Count, "Load-#Transform");
69                 }
70
71                 [Test]
72                 public void LoadC14NTransform () 
73                 {
74                         string test = "<Reference xmlns=\"http://www.w3.org/2000/09/xmldsig#\"><Transforms><Transform Algorithm=\"http://www.w3.org/TR/2001/REC-xml-c14n-20010315\" /></Transforms><DigestMethod Algorithm=\"http://www.w3.org/2000/09/xmldsig#sha1\" /><DigestValue>AAAAAAAAAAAAAAAAAAAAAAAAAAA=</DigestValue></Reference>";
75                         XmlDocument doc = new XmlDocument ();
76                         doc.LoadXml (test);
77                         reference.LoadXml (doc.DocumentElement);
78                         Assert.AreEqual (test, (reference.GetXml().OuterXml), "Load-C14N");
79                         Assert.AreEqual (1, reference.TransformChain.Count, "Load-#Transform");
80                 }
81
82                 [Test]
83                 public void LoadC14NWithCommentsTransforms () 
84                 {
85                         string test = "<Reference xmlns=\"http://www.w3.org/2000/09/xmldsig#\"><Transforms><Transform Algorithm=\"http://www.w3.org/TR/2001/REC-xml-c14n-20010315#WithComments\" /></Transforms><DigestMethod Algorithm=\"http://www.w3.org/2000/09/xmldsig#sha1\" /><DigestValue>AAAAAAAAAAAAAAAAAAAAAAAAAAA=</DigestValue></Reference>";
86                         XmlDocument doc = new XmlDocument ();
87                         doc.LoadXml (test);
88                         reference.LoadXml (doc.DocumentElement);
89                         Assert.AreEqual (test, (reference.GetXml().OuterXml), "Load-C14NWithComments");
90                         Assert.AreEqual (1, reference.TransformChain.Count, "Load-#Transform");
91                 }
92
93                 [Test]
94                 public void LoadEnvelopedSignatureTransforms () 
95                 {
96                         string test = "<Reference xmlns=\"http://www.w3.org/2000/09/xmldsig#\"><Transforms><Transform Algorithm=\"http://www.w3.org/2000/09/xmldsig#enveloped-signature\" /></Transforms><DigestMethod Algorithm=\"http://www.w3.org/2000/09/xmldsig#sha1\" /><DigestValue>AAAAAAAAAAAAAAAAAAAAAAAAAAA=</DigestValue></Reference>";
97                         XmlDocument doc = new XmlDocument ();
98                         doc.LoadXml (test);
99                         reference.LoadXml (doc.DocumentElement);
100                         Assert.AreEqual (test, (reference.GetXml().OuterXml), "Load-Enveloped");
101                         Assert.AreEqual (1, reference.TransformChain.Count, "Load-#Transform");
102                 }
103
104                 [Test]
105                 public void LoadXPathTransforms () 
106                 {
107                         // test1 (MS) is an XML equivalent to test2 (Mono)
108                         string test1 = "<Reference xmlns=\"http://www.w3.org/2000/09/xmldsig#\"><Transforms><Transform Algorithm=\"http://www.w3.org/TR/1999/REC-xpath-19991116\"><XPath></XPath></Transform></Transforms><DigestMethod Algorithm=\"http://www.w3.org/2000/09/xmldsig#sha1\" /><DigestValue>AAAAAAAAAAAAAAAAAAAAAAAAAAA=</DigestValue></Reference>";
109                         string test2 = "<Reference xmlns=\"http://www.w3.org/2000/09/xmldsig#\"><Transforms><Transform Algorithm=\"http://www.w3.org/TR/1999/REC-xpath-19991116\"><XPath /></Transform></Transforms><DigestMethod Algorithm=\"http://www.w3.org/2000/09/xmldsig#sha1\" /><DigestValue>AAAAAAAAAAAAAAAAAAAAAAAAAAA=</DigestValue></Reference>";
110                         XmlDocument doc = new XmlDocument ();
111                         doc.LoadXml (test1);
112                         reference.LoadXml (doc.DocumentElement);
113                         string result = (reference.GetXml().OuterXml);
114                         Assert.IsTrue (((test1 == result) || (test2 == result)), result);
115                         Assert.AreEqual (1, reference.TransformChain.Count, "Load-#Transform");
116                 }
117
118                 [Test]
119                 public void LoadXsltTransforms () 
120                 {
121                         string test = "<Reference xmlns=\"http://www.w3.org/2000/09/xmldsig#\"><Transforms>";
122                         test += "<Transform Algorithm=\"http://www.w3.org/TR/1999/REC-xslt-19991116\">";
123                         test += "<xsl:stylesheet xmlns:xsl=\"http://www.w3.org/1999/XSL/Transform\" xmlns=\"http://www.w3.org/TR/xhtml1/strict\" exclude-result-prefixes=\"foo\" version=\"1.0\">";
124                         test += "<xsl:output encoding=\"UTF-8\" indent=\"no\" method=\"xml\" />";
125                         test += "<xsl:template match=\"/\"><html><head><title>Notaries</title>";
126                         test += "</head><body><table><xsl:for-each select=\"Notaries/Notary\">";
127                         test += "<tr><th><xsl:value-of select=\"@name\" /></th></tr></xsl:for-each>";
128                         test += "</table></body></html></xsl:template></xsl:stylesheet></Transform>";
129                         test += "</Transforms><DigestMethod Algorithm=\"http://www.w3.org/2000/09/xmldsig#sha1\" /><DigestValue>AAAAAAAAAAAAAAAAAAAAAAAAAAA=</DigestValue></Reference>";
130                         XmlDocument doc = new XmlDocument ();
131                         doc.LoadXml (test);
132                         reference.LoadXml (doc.DocumentElement);
133                         string result = reference.GetXml().OuterXml;
134                         Assert.AreEqual (test, result, result);
135                         Assert.AreEqual (1, reference.TransformChain.Count, "Load-#Transform");
136                 }
137
138                 [Test]
139                 public void LoadAllTransforms () 
140                 {
141                         string test1 = "<Reference xmlns=\"http://www.w3.org/2000/09/xmldsig#\"><Transforms><Transform Algorithm=\"http://www.w3.org/2000/09/xmldsig#base64\" /><Transform Algorithm=\"http://www.w3.org/TR/2001/REC-xml-c14n-20010315\" /><Transform Algorithm=\"http://www.w3.org/TR/2001/REC-xml-c14n-20010315#WithComments\" /><Transform Algorithm=\"http://www.w3.org/2000/09/xmldsig#enveloped-signature\" /><Transform Algorithm=\"http://www.w3.org/TR/1999/REC-xpath-19991116\"><XPath></XPath></Transform>";
142                         test1 += "<Transform Algorithm=\"http://www.w3.org/TR/1999/REC-xslt-19991116\">";
143                         test1 += "<xsl:stylesheet xmlns:xsl=\"http://www.w3.org/1999/XSL/Transform\" xmlns=\"http://www.w3.org/TR/xhtml1/strict\" exclude-result-prefixes=\"foo\" version=\"1.0\">";
144                         test1 += "<xsl:output encoding=\"UTF-8\" indent=\"no\" method=\"xml\" />";
145                         test1 += "<xsl:template match=\"/\"><html><head><title>Notaries</title>";
146                         test1 += "</head><body><table><xsl:for-each select=\"Notaries/Notary\">";
147                         test1 += "<tr><th><xsl:value-of select=\"@name\" /></th></tr></xsl:for-each>";
148                         test1 += "</table></body></html></xsl:template></xsl:stylesheet></Transform>";
149                         test1 += "</Transforms><DigestMethod Algorithm=\"http://www.w3.org/2000/09/xmldsig#sha1\" /><DigestValue>AAAAAAAAAAAAAAAAAAAAAAAAAAA=</DigestValue></Reference>";
150                         string test2 = test1.Replace ("<XPath></XPath>", "<XPath />"); // Mono
151                         XmlDocument doc = new XmlDocument ();
152                         doc.LoadXml (test1);
153                         reference.LoadXml (doc.DocumentElement);
154                         string result = reference.GetXml().OuterXml;
155                         Assert.IsTrue (((result == test1) || (result == test2)), result);
156                         Assert.AreEqual (6, reference.TransformChain.Count, "Load-#Transform");
157                 }
158
159                 [Test]
160                 public void AddAllTransforms () 
161                 {
162                         reference.DigestMethod = SignedXml.XmlDsigSHA1Url;
163                         reference.DigestValue = new byte [20];
164
165                         reference.AddTransform (new XmlDsigBase64Transform ());
166                         reference.AddTransform (new XmlDsigC14NTransform ());
167                         reference.AddTransform (new XmlDsigC14NWithCommentsTransform ());
168                         reference.AddTransform (new XmlDsigEnvelopedSignatureTransform ());
169                         reference.AddTransform (new XmlDsigXPathTransform ());
170                         reference.AddTransform (new XmlDsigXsltTransform ());
171
172                         const string expected = "<Reference xmlns=\"http://www.w3.org/2000/09/xmldsig#\"><Transforms><Transform Algorithm=\"http://www.w3.org/2000/09/xmldsig#base64\" /><Transform Algorithm=\"http://www.w3.org/TR/2001/REC-xml-c14n-20010315\" /><Transform Algorithm=\"http://www.w3.org/TR/2001/REC-xml-c14n-20010315#WithComments\" /><Transform Algorithm=\"http://www.w3.org/2000/09/xmldsig#enveloped-signature\" /><Transform Algorithm=\"http://www.w3.org/TR/1999/REC-xpath-19991116\"><XPath /></Transform><Transform Algorithm=\"http://www.w3.org/TR/1999/REC-xslt-19991116\" /></Transforms><DigestMethod Algorithm=\"http://www.w3.org/2000/09/xmldsig#sha1\" /><DigestValue>AAAAAAAAAAAAAAAAAAAAAAAAAAA=</DigestValue></Reference>";
173                         Assert.That (reference.GetXml ().OuterXml, Is.EqualTo (expected), "OuterXml");
174
175                         // can we add them again ?
176                         reference.AddTransform (new XmlDsigBase64Transform ());
177                         reference.AddTransform (new XmlDsigC14NTransform ());
178                         reference.AddTransform (new XmlDsigC14NWithCommentsTransform ());
179                         reference.AddTransform (new XmlDsigEnvelopedSignatureTransform ());
180                         reference.AddTransform (new XmlDsigXPathTransform ());
181                         reference.AddTransform (new XmlDsigXsltTransform ());
182
183                         // seems so ;-)
184                         Assert.AreEqual (12, reference.TransformChain.Count, "# Transforms");
185                 }
186
187                 [Test]
188                 public void Null () 
189                 {
190                         // null DigestMethod -> "" DigestMethod !!!
191                         reference.DigestMethod = null;
192                         Assert.IsNull (reference.DigestMethod, "DigestMethod null");
193                 }
194
195                 [Test]
196                 [ExpectedException (typeof (NullReferenceException))]
197                 public void Bad1 () 
198                 {
199                         reference.Uri = "#MyObjectId";
200                         // not enough info
201                         XmlElement bad = reference.GetXml ();
202                 }
203
204                 [Test]
205                 public void Bad2 () 
206                 {
207                         // bad hash - there's no validation!
208                         reference.DigestMethod = "http://www.w3.org/2000/09/xmldsig#mono";
209                 }
210
211                 const string xml = @"<player bats=""left"" id=""10012"" throws=""right"">
212         <!-- Here&apos;s a comment -->
213         <name>Alfonso Soriano</name>
214         <position>2B</position>
215         <team>New York Yankees</team>
216 <dsig:Signature xmlns=""http://www.w3.org/2000/09/xmldsig#"" xmlns:dsig=""http://www.w3.org/2000/09/xmldsig#"">"
217 + @"<dsig:SignedInfo><dsig:CanonicalizationMethod Algorithm=""http://www.w3.org/TR/2001/REC-xml-c14n-withcomments-20010315""/><dsig:SignatureMethod Algorithm=""http://www.w3.org/2000/09/xmldsig#rsa-sha1""/>"
218 + @"<dsig:Reference URI=""""><dsig:Transforms><dsig:Transform Algorithm=""http://www.w3.org/2000/09/xmldsig#enveloped-signature""/></dsig:Transforms><dsig:DigestMethod Algorithm=""http://www.w3.org/2000/09/xmldsig#sha1""/><dsig:DigestValue>nDF2V/bzRd0VE3EwShWtsBzTEDc=</dsig:DigestValue></dsig:Reference></dsig:SignedInfo><dsig:SignatureValue>fbye4Xm//RPUTsLd1dwJPo0gPZYX6gVYCEB/gz2348EARNk/nCCch1fFfpuqAGMKg4ayVC0yWkUyE5V4QB33jaGlh9wuNQSjxs6TIvFwSsT+0ioDgVgFv0gVeasbyNL4rFEHuAWL8QKwDT9L6b2wUvJC90DmpBs9GMR2jTZIWlM=</dsig:SignatureValue><dsig:KeyInfo><dsig:X509Data><dsig:X509Certificate>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</dsig:X509Certificate><dsig:X509IssuerSerial><dsig:X509IssuerName>CN=Test CA (RSA),OU=Engineering,O=Phaos Technology,L=New York,ST=New York,C=US</dsig:X509IssuerName><dsig:X509SerialNumber>1000001</dsig:X509SerialNumber></dsig:X509IssuerSerial><dsig:X509SubjectName>CN=Test Client (RSA),OU=Engineering,O=Phaos Technology,L=New York,ST=New York,C=US</dsig:X509SubjectName><dsig:X509SKI>E+fKwQsT5lS3mWmBkalUTp0JRW8=</dsig:X509SKI></dsig:X509Data></dsig:KeyInfo></dsig:Signature></player>";
219
220
221                 [Test]
222                 public void KeepDocument ()
223                 {
224                         string result = @"<dsig:Reference URI="""" xmlns:dsig=""http://www.w3.org/2000/09/xmldsig#""><dsig:Transforms><dsig:Transform Algorithm=""http://www.w3.org/2000/09/xmldsig#enveloped-signature"" /></dsig:Transforms><dsig:DigestMethod Algorithm=""http://www.w3.org/2000/09/xmldsig#sha1"" /><dsig:DigestValue>nDF2V/bzRd0VE3EwShWtsBzTEDc=</dsig:DigestValue></dsig:Reference>";
225
226                         XmlDocument doc = new XmlDocument ();
227                         doc.LoadXml (xml);
228                         XmlElement org = (XmlElement) doc.SelectSingleNode ("//*[local-name()='Reference']");
229                         Reference r = new Reference ();
230                         r.LoadXml (org);
231                         XmlElement el = r.GetXml ();
232                         Assert.AreEqual (doc, el.OwnerDocument);
233                         Assert.AreEqual (org, el);
234                         Assert.AreEqual (result, el.OuterXml);
235                 }
236         }
237 }