certutil_test.go 2.2 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768
  1. package certutil
  2. import (
  3. "fmt"
  4. "io/ioutil"
  5. "testing"
  6. "github.com/stretchr/testify/assert"
  7. )
  8. func TestLoadOriginCert(t *testing.T) {
  9. cert, err := DecodeOriginCert([]byte{})
  10. assert.Equal(t, fmt.Errorf("Cannot decode empty certificate"), err)
  11. assert.Nil(t, cert)
  12. blocks, err := ioutil.ReadFile("test-cert-no-key.pem")
  13. assert.Nil(t, err)
  14. cert, err = DecodeOriginCert(blocks)
  15. assert.Equal(t, fmt.Errorf("Missing private key in the certificate"), err)
  16. assert.Nil(t, cert)
  17. blocks, err = ioutil.ReadFile("test-cert-two-certificates.pem")
  18. assert.Nil(t, err)
  19. cert, err = DecodeOriginCert(blocks)
  20. assert.Equal(t, fmt.Errorf("Found multiple certificates in the certificate"), err)
  21. assert.Nil(t, cert)
  22. blocks, err = ioutil.ReadFile("test-cert-unknown-block.pem")
  23. assert.Nil(t, err)
  24. cert, err = DecodeOriginCert(blocks)
  25. assert.Equal(t, fmt.Errorf("Unknown block RSA PRIVATE KEY in the certificate"), err)
  26. assert.Nil(t, cert)
  27. blocks, err = ioutil.ReadFile("test-cert.pem")
  28. assert.Nil(t, err)
  29. cert, err = DecodeOriginCert(blocks)
  30. assert.Nil(t, err)
  31. assert.NotNil(t, cert)
  32. assert.Equal(t, "7b0a4d77dfb881c1a3b7d61ea9443e19", cert.ZoneID)
  33. key := "v1.0-58bd4f9e28f7b3c28e05a35ff3e80ab4fd9644ef3fece537eb0d12e2e9258217-183442fbb0bbdb3e571558fec9b5589ebd77aafc87498ee3f09f64a4ad79ffe8791edbae08b36c1d8f1d70a8670de56922dff92b15d214a524f4ebfa1958859e-7ce80f79921312a6022c5d25e2d380f82ceaefe3fbdc43dd13b080e3ef1e26f7"
  34. assert.Equal(t, key, cert.ServiceKey)
  35. }
  36. func TestNewlineArgoTunnelToken(t *testing.T) {
  37. ArgoTunnelTokenTest(t, "test-argo-tunnel-cert.pem")
  38. }
  39. func TestJSONArgoTunnelToken(t *testing.T) {
  40. // The given cert's Argo Tunnel Token was generated by base64 encoding this JSON:
  41. // {
  42. // "zoneID": "7b0a4d77dfb881c1a3b7d61ea9443e19",
  43. // "serviceKey": "test-service-key",
  44. // "accountID": "abcdabcdabcdabcd1234567890abcdef"
  45. // }
  46. ArgoTunnelTokenTest(t, "test-argo-tunnel-cert-json.pem")
  47. }
  48. func ArgoTunnelTokenTest(t *testing.T, path string) {
  49. blocks, err := ioutil.ReadFile(path)
  50. assert.Nil(t, err)
  51. cert, err := DecodeOriginCert(blocks)
  52. assert.Nil(t, err)
  53. assert.NotNil(t, cert)
  54. assert.Equal(t, "7b0a4d77dfb881c1a3b7d61ea9443e19", cert.ZoneID)
  55. key := "test-service-key"
  56. assert.Equal(t, key, cert.ServiceKey)
  57. }