#!/bin/sh # # Copyright (c) 2006 - 2007 Kungliga Tekniska Högskolan # (Royal Institute of Technology, Stockholm, Sweden). # All rights reserved. # # Redistribution and use in source and binary forms, with or without # modification, are permitted provided that the following conditions # are met: # # 1. Redistributions of source code must retain the above copyright # notice, this list of conditions and the following disclaimer. # # 2. Redistributions in binary form must reproduce the above copyright # notice, this list of conditions and the following disclaimer in the # documentation and/or other materials provided with the distribution. # # 3. Neither the name of the Institute nor the names of its contributors # may be used to endorse or promote products derived from this software # without specific prior written permission. # # THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND # ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE # IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE # ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE # FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL # DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS # OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) # HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT # LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY # OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF # SUCH DAMAGE. top_builddir="@top_builddir@" env_setup="@env_setup@" objdir="@objdir@" srcdir="@srcdir@" . ${env_setup} KRB5_CONFIG="${1-${objdir}/krb5.conf}" export KRB5_CONFIG testfailed="echo test failed; cat messages.log; exit 1" # If there is no useful db support compile in, disable test ${have_db} || exit 77 R=TEST.H5L.SE keytabfile=${objdir}/server.keytab keytab="FILE:${keytabfile}" keyfile="${hx509_data}/key.der" keyfile2="${hx509_data}/key2.der" kadmin="${kadmin} -l -r $R" server=host/datan.test.h5l.se rsa=yes pkinit=no if ${hxtool} info | grep 'rsa: hx509 null RSA' > /dev/null ; then rsa=no fi if ${hxtool} info | grep 'rand: not available' > /dev/null ; then rsa=no fi if ${kinit} --help 2>&1 | grep "CA certificates" > /dev/null; then pkinit=yes fi # If we doesn't support pkinit and have RSA, give up if test "$rsa" != yes ; then pkinit=no fi rm -f ${keytabfile} rm -f current-db* rm -f out-* rm -f mkey.file* > messages.log echo Creating database ${kadmin} \ init \ --realm-max-ticket-life=1day \ --realm-max-renewable-life=1month \ ${R} || exit 1 ${kadmin} add -p foo --use-defaults ${server}@${R} || exit 1 ${kadmin} add -p foo --use-defaults foo@${R} || exit 1 ${kadmin} ext -k ${keytab} foo@${R} || exit 1 ${kadmin} ext -k ${keytab} ${server}@${R} || exit 1 echo "password" ${kdc_tester} ${srcdir}/kdc-tester1.json > out-log 2>&1 || exit 1 sed 's/^/ /' out-log echo "keytab" ${kdc_tester} ${srcdir}/kdc-tester2.json > out-log 2>&1 || exit 1 sed 's/^/ /' out-log echo "FAST + keytab" ${kdc_tester} ${srcdir}/kdc-tester3.json > out-log 2>&1 || exit 1 sed 's/^/ /' out-log if test "$pkinit" = yes ; then echo "pkinit" ${kdc_tester} ${objdir}/kdc-tester4.json > out-log 2>&1 || exit 1 sed 's/^/ /' out-log fi exit $ec