2012-08-15 13:01:43 +00:00
|
|
|
<?php
|
|
|
|
/**
|
|
|
|
* Copyright (c) 2012 Sam Tuke <samtuke@owncloud.com>
|
|
|
|
* This file is licensed under the Affero General Public License version 3 or
|
|
|
|
* later.
|
|
|
|
* See the COPYING-README file.
|
|
|
|
*/
|
2013-05-18 19:37:00 +00:00
|
|
|
|
2013-08-21 08:59:31 +00:00
|
|
|
require_once __DIR__ . '/../../../lib/base.php';
|
|
|
|
require_once __DIR__ . '/../lib/crypt.php';
|
|
|
|
require_once __DIR__ . '/../lib/keymanager.php';
|
|
|
|
require_once __DIR__ . '/../lib/proxy.php';
|
|
|
|
require_once __DIR__ . '/../lib/stream.php';
|
|
|
|
require_once __DIR__ . '/../lib/util.php';
|
|
|
|
require_once __DIR__ . '/../lib/helper.php';
|
|
|
|
require_once __DIR__ . '/../appinfo/app.php';
|
|
|
|
require_once __DIR__ . '/util.php';
|
2012-08-15 13:01:43 +00:00
|
|
|
|
2012-11-16 18:31:37 +00:00
|
|
|
use OCA\Encryption;
|
|
|
|
|
2013-05-19 20:28:48 +00:00
|
|
|
/**
|
|
|
|
* Class Test_Encryption_Keymanager
|
|
|
|
*/
|
2013-05-26 18:44:15 +00:00
|
|
|
class Test_Encryption_Keymanager extends \PHPUnit_Framework_TestCase {
|
2013-05-19 20:28:48 +00:00
|
|
|
|
2013-07-19 12:54:10 +00:00
|
|
|
const TEST_USER = "test-keymanager-user";
|
|
|
|
|
2013-05-19 20:28:48 +00:00
|
|
|
public $userId;
|
|
|
|
public $pass;
|
|
|
|
public $stateFilesTrashbin;
|
|
|
|
/**
|
2014-05-12 14:30:39 +00:00
|
|
|
* @var OC\Files\View
|
2013-05-19 20:28:48 +00:00
|
|
|
*/
|
|
|
|
public $view;
|
|
|
|
public $randomKey;
|
2013-05-21 22:55:16 +00:00
|
|
|
public $dataShort;
|
2013-05-19 20:28:48 +00:00
|
|
|
|
2013-05-26 01:22:16 +00:00
|
|
|
public static function setUpBeforeClass() {
|
2013-05-19 23:24:36 +00:00
|
|
|
// reset backend
|
|
|
|
\OC_User::clearBackends();
|
2013-05-26 18:44:15 +00:00
|
|
|
\OC_User::useBackend('database');
|
2013-04-29 21:41:49 +00:00
|
|
|
|
2013-05-26 01:22:16 +00:00
|
|
|
// Filesystem related hooks
|
|
|
|
\OCA\Encryption\Helper::registerFilesystemHooks();
|
|
|
|
|
|
|
|
// clear and register hooks
|
|
|
|
\OC_FileProxy::clearProxies();
|
2013-05-26 18:44:15 +00:00
|
|
|
\OC_FileProxy::register(new OCA\Encryption\Proxy());
|
2013-05-26 01:22:16 +00:00
|
|
|
|
|
|
|
// disable file proxy by default
|
2012-08-15 13:01:43 +00:00
|
|
|
\OC_FileProxy::$enabled = false;
|
2013-05-19 23:24:36 +00:00
|
|
|
|
2013-07-19 12:54:10 +00:00
|
|
|
// create test user
|
|
|
|
\OC_User::deleteUser(\Test_Encryption_Keymanager::TEST_USER);
|
|
|
|
\Test_Encryption_Util::loginHelper(\Test_Encryption_Keymanager::TEST_USER, true);
|
2013-05-26 01:22:16 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
function setUp() {
|
2013-01-06 18:38:35 +00:00
|
|
|
// set content for encrypting / decrypting in tests
|
2013-08-21 08:59:31 +00:00
|
|
|
$this->dataLong = file_get_contents(__DIR__ . '/../lib/crypt.php');
|
2013-01-06 18:38:35 +00:00
|
|
|
$this->dataShort = 'hats';
|
2013-08-21 08:59:31 +00:00
|
|
|
$this->dataUrl = __DIR__ . '/../lib/crypt.php';
|
|
|
|
$this->legacyData = __DIR__ . '/legacy-text.txt';
|
|
|
|
$this->legacyEncryptedData = __DIR__ . '/legacy-encrypted-text.txt';
|
2013-01-06 18:38:35 +00:00
|
|
|
$this->randomKey = Encryption\Crypt::generateKey();
|
2013-05-19 23:24:36 +00:00
|
|
|
|
2013-01-06 18:38:35 +00:00
|
|
|
$keypair = Encryption\Crypt::createKeypair();
|
2013-05-19 23:24:36 +00:00
|
|
|
$this->genPublicKey = $keypair['publicKey'];
|
2013-01-06 18:38:35 +00:00
|
|
|
$this->genPrivateKey = $keypair['privateKey'];
|
2013-05-15 00:38:08 +00:00
|
|
|
|
2014-05-12 14:30:39 +00:00
|
|
|
$this->view = new \OC\Files\View('/');
|
2013-05-15 00:38:08 +00:00
|
|
|
|
2013-07-19 12:54:10 +00:00
|
|
|
\OC_User::setUserId(\Test_Encryption_Keymanager::TEST_USER);
|
|
|
|
$this->userId = \Test_Encryption_Keymanager::TEST_USER;
|
|
|
|
$this->pass = \Test_Encryption_Keymanager::TEST_USER;
|
2013-04-29 21:41:49 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$userHome = \OC_User::getHome($this->userId);
|
|
|
|
$this->dataDir = str_replace('/' . $this->userId, '', $userHome);
|
2013-05-15 00:38:08 +00:00
|
|
|
|
2013-05-16 23:07:26 +00:00
|
|
|
// remember files_trashbin state
|
2013-05-26 18:44:15 +00:00
|
|
|
$this->stateFilesTrashbin = OC_App::isEnabled('files_trashbin');
|
2013-05-16 23:07:26 +00:00
|
|
|
|
|
|
|
// we don't want to tests with app files_trashbin enabled
|
2013-05-26 18:44:15 +00:00
|
|
|
\OC_App::disable('files_trashbin');
|
2012-08-15 13:01:43 +00:00
|
|
|
}
|
2013-05-19 23:24:36 +00:00
|
|
|
|
2013-05-26 01:22:16 +00:00
|
|
|
function tearDown() {
|
2013-05-16 23:07:26 +00:00
|
|
|
// reset app files_trashbin
|
2013-05-26 18:44:15 +00:00
|
|
|
if ($this->stateFilesTrashbin) {
|
|
|
|
OC_App::enable('files_trashbin');
|
|
|
|
}
|
|
|
|
else {
|
|
|
|
OC_App::disable('files_trashbin');
|
2013-05-16 23:07:26 +00:00
|
|
|
}
|
2012-08-15 13:01:43 +00:00
|
|
|
}
|
|
|
|
|
2013-05-26 01:22:16 +00:00
|
|
|
public static function tearDownAfterClass() {
|
|
|
|
\OC_FileProxy::$enabled = true;
|
2013-07-19 12:54:10 +00:00
|
|
|
|
|
|
|
// cleanup test user
|
|
|
|
\OC_User::deleteUser(\Test_Encryption_Keymanager::TEST_USER);
|
2013-05-26 01:22:16 +00:00
|
|
|
}
|
|
|
|
|
2013-06-10 07:31:22 +00:00
|
|
|
/**
|
|
|
|
* @medium
|
|
|
|
*/
|
2013-05-26 01:22:16 +00:00
|
|
|
function testGetPrivateKey() {
|
2013-05-19 23:24:36 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$key = Encryption\Keymanager::getPrivateKey($this->view, $this->userId);
|
2013-04-29 23:54:19 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$privateKey = Encryption\Crypt::symmetricDecryptFileContent($key, $this->pass);
|
2013-04-29 23:54:19 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$res = openssl_pkey_get_private($privateKey);
|
2013-04-29 23:54:19 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$this->assertTrue(is_resource($res));
|
2013-05-18 20:00:35 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$sslInfo = openssl_pkey_get_details($res);
|
2013-05-18 20:00:35 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$this->assertArrayHasKey('key', $sslInfo);
|
2013-05-19 23:24:36 +00:00
|
|
|
|
2012-08-15 13:13:03 +00:00
|
|
|
}
|
2013-01-05 17:12:23 +00:00
|
|
|
|
2013-06-10 07:31:22 +00:00
|
|
|
/**
|
|
|
|
* @medium
|
|
|
|
*/
|
2013-05-26 01:22:16 +00:00
|
|
|
function testGetPublicKey() {
|
2013-05-19 23:24:36 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$publiceKey = Encryption\Keymanager::getPublicKey($this->view, $this->userId);
|
2013-05-18 20:00:35 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$res = openssl_pkey_get_public($publiceKey);
|
2013-05-18 20:00:35 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$this->assertTrue(is_resource($res));
|
2013-05-18 20:00:35 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$sslInfo = openssl_pkey_get_details($res);
|
2013-05-18 20:00:35 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$this->assertArrayHasKey('key', $sslInfo);
|
2013-01-05 17:12:23 +00:00
|
|
|
}
|
2013-05-19 23:24:36 +00:00
|
|
|
|
2014-02-03 12:39:05 +00:00
|
|
|
/**
|
|
|
|
* @small
|
|
|
|
*/
|
|
|
|
function testGetFilenameFromShareKey() {
|
|
|
|
$this->assertEquals("file",
|
|
|
|
\TestProtectedKeymanagerMethods::testGetFilenameFromShareKey("file.user.shareKey"));
|
|
|
|
$this->assertEquals("file.name.with.dots",
|
|
|
|
\TestProtectedKeymanagerMethods::testGetFilenameFromShareKey("file.name.with.dots.user.shareKey"));
|
|
|
|
$this->assertFalse(\TestProtectedKeymanagerMethods::testGetFilenameFromShareKey("file.txt"));
|
|
|
|
}
|
|
|
|
|
2013-06-10 07:31:22 +00:00
|
|
|
/**
|
|
|
|
* @medium
|
|
|
|
*/
|
2013-05-26 01:22:16 +00:00
|
|
|
function testSetFileKey() {
|
2013-05-19 23:24:36 +00:00
|
|
|
|
2013-08-08 11:35:01 +00:00
|
|
|
$key = $this->randomKey;
|
2013-05-19 23:24:36 +00:00
|
|
|
|
2014-01-21 15:19:26 +00:00
|
|
|
$file = 'unittest-' . uniqid() . '.txt';
|
2013-04-29 21:41:49 +00:00
|
|
|
|
2013-11-20 23:23:38 +00:00
|
|
|
$util = new Encryption\Util($this->view, $this->userId);
|
|
|
|
|
2013-05-19 23:24:36 +00:00
|
|
|
// Disable encryption proxy to prevent recursive calls
|
|
|
|
$proxyStatus = \OC_FileProxy::$enabled;
|
|
|
|
\OC_FileProxy::$enabled = false;
|
2013-04-29 21:41:49 +00:00
|
|
|
|
2013-08-08 11:35:01 +00:00
|
|
|
$this->view->file_put_contents($this->userId . '/files/' . $file, $this->dataShort);
|
2013-05-19 23:24:36 +00:00
|
|
|
|
2013-11-27 14:08:09 +00:00
|
|
|
Encryption\Keymanager::setFileKey($this->view, $util, $file, $key);
|
2013-04-29 21:41:49 +00:00
|
|
|
|
2013-08-08 11:35:01 +00:00
|
|
|
$this->assertTrue($this->view->file_exists('/' . $this->userId . '/files_encryption/keyfiles/' . $file . '.key'));
|
2013-05-16 23:07:26 +00:00
|
|
|
|
|
|
|
// cleanup
|
2013-05-26 18:44:15 +00:00
|
|
|
$this->view->unlink('/' . $this->userId . '/files/' . $file);
|
2013-05-16 23:07:26 +00:00
|
|
|
|
2013-05-21 22:55:16 +00:00
|
|
|
// change encryption proxy to previous state
|
2013-05-16 23:07:26 +00:00
|
|
|
\OC_FileProxy::$enabled = $proxyStatus;
|
2012-08-23 15:43:10 +00:00
|
|
|
}
|
2013-05-19 23:24:36 +00:00
|
|
|
|
2013-06-10 07:31:22 +00:00
|
|
|
/**
|
|
|
|
* @medium
|
|
|
|
*/
|
2013-05-26 01:22:16 +00:00
|
|
|
function testGetUserKeys() {
|
2013-05-19 23:24:36 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$keys = Encryption\Keymanager::getUserKeys($this->view, $this->userId);
|
2013-04-29 23:54:19 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$resPublic = openssl_pkey_get_public($keys['publicKey']);
|
2013-04-29 23:54:19 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$this->assertTrue(is_resource($resPublic));
|
2013-04-29 23:54:19 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$sslInfoPublic = openssl_pkey_get_details($resPublic);
|
2013-04-29 23:54:19 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$this->assertArrayHasKey('key', $sslInfoPublic);
|
2013-05-18 20:25:47 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$privateKey = Encryption\Crypt::symmetricDecryptFileContent($keys['privateKey'], $this->pass);
|
2013-05-18 20:25:47 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$resPrivate = openssl_pkey_get_private($privateKey);
|
2013-05-18 20:25:47 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$this->assertTrue(is_resource($resPrivate));
|
2013-05-18 20:25:47 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$sslInfoPrivate = openssl_pkey_get_details($resPrivate);
|
2013-05-18 20:25:47 +00:00
|
|
|
|
2013-05-26 18:44:15 +00:00
|
|
|
$this->assertArrayHasKey('key', $sslInfoPrivate);
|
2013-01-05 17:12:23 +00:00
|
|
|
}
|
2013-05-21 22:55:16 +00:00
|
|
|
|
2013-06-10 07:31:22 +00:00
|
|
|
/**
|
|
|
|
* @medium
|
|
|
|
*/
|
2013-05-26 01:22:16 +00:00
|
|
|
function testRecursiveDelShareKeys() {
|
2013-05-21 22:55:16 +00:00
|
|
|
|
|
|
|
// generate filename
|
2014-01-21 15:19:26 +00:00
|
|
|
$filename = '/tmp-' . uniqid() . '.txt';
|
2013-05-21 22:55:16 +00:00
|
|
|
|
|
|
|
// create folder structure
|
2013-07-19 12:54:10 +00:00
|
|
|
$this->view->mkdir('/'.Test_Encryption_Keymanager::TEST_USER.'/files/folder1');
|
|
|
|
$this->view->mkdir('/'.Test_Encryption_Keymanager::TEST_USER.'/files/folder1/subfolder');
|
|
|
|
$this->view->mkdir('/'.Test_Encryption_Keymanager::TEST_USER.'/files/folder1/subfolder/subsubfolder');
|
2013-05-21 22:55:16 +00:00
|
|
|
|
|
|
|
// enable encryption proxy
|
|
|
|
$proxyStatus = \OC_FileProxy::$enabled;
|
|
|
|
\OC_FileProxy::$enabled = true;
|
|
|
|
|
|
|
|
// save file with content
|
2013-07-30 16:21:23 +00:00
|
|
|
$cryptedFile = file_put_contents('crypt:///'.Test_Encryption_Keymanager::TEST_USER.'/files/folder1/subfolder/subsubfolder' . $filename, $this->dataShort);
|
2013-05-21 22:55:16 +00:00
|
|
|
|
|
|
|
// test that data was successfully written
|
2013-05-26 18:44:15 +00:00
|
|
|
$this->assertTrue(is_int($cryptedFile));
|
2013-05-21 22:55:16 +00:00
|
|
|
|
|
|
|
// change encryption proxy to previous state
|
|
|
|
\OC_FileProxy::$enabled = $proxyStatus;
|
|
|
|
|
|
|
|
// recursive delete keys
|
2013-05-26 18:44:15 +00:00
|
|
|
Encryption\Keymanager::delShareKey($this->view, array('admin'), '/folder1/');
|
2013-05-21 22:55:16 +00:00
|
|
|
|
|
|
|
// check if share key not exists
|
2013-05-26 18:44:15 +00:00
|
|
|
$this->assertFalse($this->view->file_exists(
|
|
|
|
'/admin/files_encryption/share-keys/folder1/subfolder/subsubfolder/' . $filename . '.admin.shareKey'));
|
2013-05-21 22:55:16 +00:00
|
|
|
|
|
|
|
// enable encryption proxy
|
|
|
|
$proxyStatus = \OC_FileProxy::$enabled;
|
|
|
|
\OC_FileProxy::$enabled = true;
|
|
|
|
|
|
|
|
// cleanup
|
2014-06-24 08:43:07 +00:00
|
|
|
$this->view->deleteAll('/admin/files/folder1');
|
2013-05-21 22:55:16 +00:00
|
|
|
|
|
|
|
// change encryption proxy to previous state
|
|
|
|
\OC_FileProxy::$enabled = $proxyStatus;
|
|
|
|
}
|
2014-06-24 08:43:07 +00:00
|
|
|
|
|
|
|
function testKeySetPreperation() {
|
|
|
|
$basePath = '/'.Test_Encryption_Keymanager::TEST_USER.'/files';
|
|
|
|
$path = '/folder1/subfolder/subsubfolder';
|
|
|
|
|
|
|
|
$this->assertFalse($this->view->is_dir($basePath . '/testKeySetPreperation'));
|
|
|
|
|
|
|
|
$result = TestProtectedKeymanagerMethods::testKeySetPreperation($this->view, $path, $basePath);
|
|
|
|
|
|
|
|
// return path without leading slash
|
|
|
|
$this->assertSame('folder1/subfolder/subsubfolder', $result);
|
|
|
|
|
|
|
|
// check if directory structure was created
|
|
|
|
$this->assertTrue($this->view->is_dir($basePath . '/folder1/subfolder/subsubfolder'));
|
|
|
|
|
|
|
|
// cleanup
|
|
|
|
$this->view->deleteAll($basePath . '/folder1');
|
|
|
|
|
|
|
|
}
|
2012-08-15 13:01:43 +00:00
|
|
|
}
|
2014-02-03 12:39:05 +00:00
|
|
|
|
|
|
|
/**
|
|
|
|
* dummy class to access protected methods of \OCA\Encryption\Keymanager for testing
|
|
|
|
*/
|
|
|
|
class TestProtectedKeymanagerMethods extends \OCA\Encryption\Keymanager {
|
2014-02-06 15:30:58 +00:00
|
|
|
|
|
|
|
/**
|
|
|
|
* @param string $sharekey
|
|
|
|
*/
|
2014-02-03 12:39:05 +00:00
|
|
|
public static function testGetFilenameFromShareKey($sharekey) {
|
|
|
|
return self::getFilenameFromShareKey($sharekey);
|
|
|
|
}
|
2014-06-24 08:43:07 +00:00
|
|
|
|
|
|
|
/**
|
|
|
|
* @param \OC\Files\View $view relative to data/
|
|
|
|
* @param string $path
|
|
|
|
* @param string $basePath
|
|
|
|
*/
|
|
|
|
public static function testKeySetPreperation($view, $path, $basePath) {
|
|
|
|
return self::keySetPreparation($view, $path, $basePath, '');
|
|
|
|
}
|
2014-05-12 14:30:39 +00:00
|
|
|
}
|