06-sni-ticket.conf.in 2.6 KB
Newer Older
T
Todd Short 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29
# -*- mode: perl; -*-
# Copyright 2016-2016 The OpenSSL Project Authors. All Rights Reserved.
#
# Licensed under the OpenSSL license (the "License").  You may not use
# this file except in compliance with the License.  You can obtain a copy
# in the file LICENSE in the source distribution or at
# https://www.openssl.org/source/license.html


## Test version negotiation

use strict;
use warnings;

package ssltests;


our @tests = ();

sub generate_tests() {
    foreach my $c ("SessionTicket", "-SessionTicket") {
	foreach my $s1 ("SessionTicket", "-SessionTicket") {
	    foreach my $s2 ("SessionTicket", "-SessionTicket") {
		foreach my $n ("server1", "server2") {
		    my $result = expected_result($c, $s1, $s2, $n);
                    push @tests, {
                        "name" => "sni-session-ticket",
                        "client" => {
                            "Options" => $c,
E
Emilia Kasper 已提交
30 31 32
                            "extra" => {
                                "ServerName" => $n,
                            },
T
Todd Short 已提交
33 34 35
                        },
                        "server" => {
                            "Options" => $s1,
E
Emilia Kasper 已提交
36 37 38 39
                            "extra" => {
                                # We don't test mismatch here.
                                "ServerNameCallback" => "IgnoreMismatch",
                            },
T
Todd Short 已提交
40 41 42 43 44
                        },
			"server2" => {
			    "Options" => $s2,
			},
                        "test" => {
45
                            "ExpectedServerName" => $n,
T
Todd Short 已提交
46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75
                            "ExpectedResult" => "Success",
			    "SessionTicketExpected" => $result,
                        }
                    };
                }
            }
        }
    }
}

# If the client has session tickets disabled, then No support
# If the server initial_ctx has session tickets disabled, then No support
# If SNI is in use, then if the "switched-to" context has session tickets disabled,
#    then No support
sub expected_result {
    my ($c, $s1, $s2, $n) = @_;

    return "No" if $c eq "-SessionTicket";
    return "No" if $s1 eq "-SessionTicket";
    return "No" if ($s2 eq "-SessionTicket" && $n eq "server2");

    return "Yes";

}

# Add a "Broken" case.
push @tests, {
    "name" => "sni-session-ticket",
    "client" => {
	"Options" => "SessionTicket",
E
Emilia Kasper 已提交
76 77 78
        "extra" => {
            "ServerName" => "server1",
        }
T
Todd Short 已提交
79 80 81
    },
    "server" => {
	"Options" => "SessionTicket",
E
Emilia Kasper 已提交
82 83 84
        "extra" => {
              "BrokenSessionTicket" => "Yes",
        },
T
Todd Short 已提交
85 86 87 88 89 90
    },
    "server2" => {
	"Options" => "SessionTicket",
    },
    "test" => {
	"ExpectedResult" => "Success",
E
Emilia Kasper 已提交
91
	"SessionTicketExpected" => "No",
T
Todd Short 已提交
92 93 94 95
    }
};

generate_tests();