C2S: TLS - Client Cert: Two-way TLS - #2939

Test duration: 1.681s

Passed Tests
tigase.tests.server.TestTwoWayTLS
testConnectionWithCertificate 0.474s
2017-11-29 09:29:27 |

2017-11-29 09:29:27 | null / [TestClass name=class tigase.tests.server.TestTwoWayTLS]

2017-11-29 09:29:27 | ------------------------------------

2017-11-29 09:29:27 | == testConnectionWithCertificate

2017-11-29 09:29:27 | Private key: sun.security.rsa.RSAPrivateCrtKeyImpl@8132e
[
[
  Version: V3
  Subject: CN=Client, O=Internet Widgits Pty Ltd, ST=Some-State, C=US
  Signature Algorithm: SHA256withRSA, OID = 1.2.840.113549.1.1.11

  Key:  Sun RSA public key, 1024 bits
  modulus: 152761233143497582116717054095409374921484861881219838581049774918827920370633380183327557894608259805888440781489432167999315517717065393898030606251674341936883646661541606206019244807482197161925251151354063576657073657664807420344658857040469040824225256741751244332063539034528087632994997564807553381137
  public exponent: 65537
  Validity: [From: Mon Apr 20 13:19:08 CEST 2015,
               To: Fri Sep 05 13:19:08 CEST 2042]
  Issuer: CN=ROOT, O=Internet Widgits Pty Ltd, ST=Some-State, C=US
  SerialNumber: [    96f20c6d 2893e805]

Certificate Extensions: 4
[1]: ObjectId: 2.16.840.1.113730.1.13 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 1F 16 1D 4F 70 65 6E   53 53 4C 20 47 65 6E 65  ....OpenSSL Gene
0010: 72 61 74 65 64 20 43 65   72 74 69 66 69 63 61 74  rated Certificat
0020: 65                                                 e


[2]: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: 62 A9 11 75 F0 62 1D B8   CA F9 F3 7E A2 65 5A AB  b..u.b.......eZ.
0010: C9 97 49 0D                                        ..I.
]
]

[3]: ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
  CA:false
  PathLen: undefined
]

[4]: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: C1 FA 2F 1F 5C 62 EC 83   B0 7B 91 A7 A7 46 BB 62  ../.\b.......F.b
0010: 5D 23 3F D0                                        ]#?.
]
]

]
  Algorithm: [SHA256withRSA]
  Signature:
0000: 61 8E 44 18 EC 3B A3 3E   DF 8A DF 64 6F 79 FD C2  a.D..;.>...doy..
0010: 66 4F AC 58 4A 75 FD 08   12 F8 B4 69 13 59 75 2A  fO.XJu.....i.Yu*
0020: FD 64 F8 35 CC 40 64 D9   E3 F4 12 C1 68 A4 04 4E  .d.5.@d.....h..N
0030: 11 CB B2 ED 81 30 AA 5E   C9 F9 C7 57 0A 1E B6 2C  .....0.^...W...,
0040: F5 28 95 E9 D7 FD 95 36   A5 10 D1 0E 85 08 55 A0  .(.....6......U.
0050: C5 61 B9 B1 56 3A 81 D8   F5 95 E8 04 AB DB EE C3  .a..V:..........
0060: 2F B3 FC 70 00 F9 4F DD   D5 92 2E 25 0C 08 C2 56  /..p..O....%...V
0070: 94 9B CA 9F BA 64 4A 1F   11 91 C4 21 C2 75 D3 01  .....dJ....!.u..
0080: E3 91 27 7C F1 7B E0 8B   F9 1C ED 06 7D 6F 02 FC  ..'..........o..
0090: C4 CD 63 98 64 20 F3 A9   18 51 F8 41 57 B0 AE C9  ..c.d ...Q.AW...
00A0: A4 C7 C3 AD 3E 2C CF 30   59 E9 22 CD A3 6A F7 49  ....>,.0Y."..j.I
00B0: BA 42 7F D7 D6 4B D0 BE   AB A5 7C 46 F0 11 C1 D7  .B...K.....F....
00C0: 89 C8 2E F4 83 9B 90 AD   49 1E B1 A1 DD F6 C7 79  ........I......y
00D0: 89 7F 1E 3F 2E 18 33 D8   90 71 8C 44 86 CF 66 B5  ...?..3..q.D..f.
00E0: D7 89 60 1B 48 C7 CF 9E   A1 AC 0C 3D 6B CA 7A F8  ..`.H......=k.z.
00F0: AD 92 55 9C 4E F7 58 A9   C8 16 4D 48 A3 46 8F D2  ..U.N.X...MH.F..

]

2017-11-29 09:29:27 | admin :: admin@a.localhost << <features xmlns="http://etherx.jabber.org/streams"><sm xmlns="urn:xmpp:sm:3"/><auth xmlns="http://jabber.org/features/iq-auth"/><mechanisms xmlns="urn:ietf:params:xml:ns:xmpp-sasl"><mechanism>SCRAM-SHA-256</mechanism><mechanism>SCRAM-SHA-1</mechanism><mechanism>PLAIN</mechanism><mechanism>ANONYMOUS</mechanism></mechanisms><register xmlns="http://jabber.org/features/iq-register"/><ver xmlns="urn:xmpp:features:rosterver"/><sub xmlns="urn:xmpp:features:pre-approval"/><starttls xmlns="urn:ietf:params:xml:ns:xmpp-tls"/><compression xmlns="http://jabber.org/features/compress"><method>zlib</method></compression></features>

2017-11-29 09:29:28 | admin :: admin@a.localhost << <features xmlns="http://etherx.jabber.org/streams"><sm xmlns="urn:xmpp:sm:3"/><auth xmlns="http://jabber.org/features/iq-auth"/><mechanisms xmlns="urn:ietf:params:xml:ns:xmpp-sasl"><mechanism>SCRAM-SHA-256</mechanism><mechanism>SCRAM-SHA-1</mechanism><mechanism>PLAIN</mechanism><mechanism>ANONYMOUS</mechanism></mechanisms><register xmlns="http://jabber.org/features/iq-register"/><ver xmlns="urn:xmpp:features:rosterver"/><sub xmlns="urn:xmpp:features:pre-approval"/><compression xmlns="http://jabber.org/features/compress"><method>zlib</method></compression></features>

2017-11-29 09:29:28 | admin :: admin@a.localhost >> <auth xmlns="urn:ietf:params:xml:ns:xmpp-sasl" mechanism="SCRAM-SHA-256">biwsbj1hZG1pbixyPXRzU2lYaVhlUFlQMjZMdWE1cnMx</auth>

2017-11-29 09:29:28 | admin :: admin@a.localhost << <challenge xmlns="urn:ietf:params:xml:ns:xmpp-sasl">cj10c1NpWGlYZVBZUDI2THVhNXJzMWw5MVVEQWpnem41SWhQUjRXMFNBLHM9T0FIeHhhbCtmQ2hkeXc9PSxpPTQwOTY=</challenge>

2017-11-29 09:29:28 | admin :: admin@a.localhost >> <response xmlns="urn:ietf:params:xml:ns:xmpp-sasl">Yz1iaXdzLHI9dHNTaVhpWGVQWVAyNkx1YTVyczFsOTFVREFqZ3puNUloUFI0VzBTQSxwPTM3dXpFanBWZkRxNnR4aW1ZSjU3TG14SC9tdVJ6TFZCSklyWWZDc25FT289</response>

2017-11-29 09:29:28 | admin :: admin@a.localhost << <success xmlns="urn:ietf:params:xml:ns:xmpp-sasl">dj1kaUMzZ25XMmZVNmRhWmhhdmtOdVVSTnB2N3RpZFZPbEpkTXNWOHU1L25BPQ==</success>

2017-11-29 09:29:28 | admin :: admin@a.localhost << <features xmlns="http://etherx.jabber.org/streams"><sm xmlns="urn:xmpp:sm:3"/><register xmlns="http://jabber.org/features/iq-register"/><csi xmlns="urn:xmpp:csi:0"/><ver xmlns="urn:xmpp:features:rosterver"/><sub xmlns="urn:xmpp:features:pre-approval"/><compression xmlns="http://jabber.org/features/compress"><method>zlib</method></compression><bind xmlns="urn:ietf:params:xml:ns:xmpp-bind"/><session xmlns="urn:ietf:params:xml:ns:xmpp-session"><optional/></session></features>

2017-11-29 09:29:28 | admin :: admin@a.localhost >> <iq xmlns="jabber:client" id="lafhIq" type="set"><bind xmlns="urn:ietf:params:xml:ns:xmpp-bind"><resource/></bind></iq>

2017-11-29 09:29:28 | admin :: admin@a.localhost << <iq xmlns="jabber:client" type="result" to="admin@a.localhost/1686442457-tigase-148" id="lafhIq"><bind xmlns="urn:ietf:params:xml:ns:xmpp-bind"><jid>admin@a.localhost/1686442457-tigase-148</jid></bind></iq>

2017-11-29 09:29:28 | admin :: admin@a.localhost/1686442457-tigase-148 >> <iq xmlns="jabber:client" id="7ZG6zx" type="set"><session xmlns="urn:ietf:params:xml:ns:xmpp-session"/></iq>

2017-11-29 09:29:28 | admin :: admin@a.localhost/1686442457-tigase-148 << <iq xmlns="jabber:client" type="result" to="admin@a.localhost/1686442457-tigase-148" id="7ZG6zx"/>

2017-11-29 09:29:28 | admin :: admin@a.localhost/1686442457-tigase-148 >> <iq to="a.localhost" id="ufqKLz" type="get"><query xmlns="http://jabber.org/protocol/disco#info"/></iq>

2017-11-29 09:29:28 | admin :: admin@a.localhost/1686442457-tigase-148 >> <enable xmlns="urn:xmpp:sm:3" resume="true"/>

2017-11-29 09:29:28 | admin :: admin@a.localhost/1686442457-tigase-148 << <iq from="a.localhost" xmlns="jabber:client" type="result" to="admin@a.localhost/1686442457-tigase-148" id="ufqKLz"><query xmlns="http://jabber.org/protocol/disco#info"><identity category="component" name="Tigase ver. 8.0.0-SNAPSHOT-b5086/2387b14d(2017-11-29/05:44:19)" type="im"/><identity category="server" name="Tigase ver. 8.0.0-SNAPSHOT-b5086/2387b14d(2017-11-29/05:44:19)" type="im"/><feature var="http://jabber.org/protocol/commands"/><feature var="urn:xmpp:carbons:2"/><feature var="http://jabber.org/protocol/stats"/><feature var="http://jabber.org/protocol/amp"/><feature var="msgoffline"/><feature var="vcard-temp"/><feature var="jabber:iq:auth"/><feature var="http://jabber.org/protocol/disco#info"/><feature var="http://jabber.org/protocol/disco#items"/><feature var="urn:xmpp:blocking"/><feature var="urn:xmpp:ping"/><feature var="urn:ietf:params:xml:ns:xmpp-sasl"/><feature var="http://jabber.org/protocol/pubsub"/><feature var="http://jabber.org/protocol/pubsub#owner"/><feature var="http://jabber.org/protocol/pubsub#publish"/><identity category="pubsub" type="pep"/><feature var="urn:xmpp:archive:auto"/><feature var="urn:xmpp:archive:manage"/><feature var="jabber:iq:roster"/><feature var="jabber:iq:roster-dynamic"/><feature var="jabber:iq:version"/><feature var="urn:xmpp:time"/><feature var="jabber:iq:privacy"/><feature var="urn:ietf:params:xml:ns:xmpp-bind"/><feature var="http://jabber.org/protocol/commands"/><feature var="urn:ietf:params:xml:ns:vcard-4.0"/><feature var="jabber:iq:private"/><feature var="urn:ietf:params:xml:ns:xmpp-session"/></query></iq>

2017-11-29 09:29:28 | admin :: admin@a.localhost/1686442457-tigase-148 << <enabled xmlns="urn:xmpp:sm:3" max="60" resume="true" id="50e64942-4627-4860-b244-3adc845d2751" location="build.xmpp-test.net"/>

2017-11-29 09:29:28 | admin :: admin@a.localhost/1686442457-tigase-148 >> <iq id="ugrMPH" type="get"><query xmlns="jabber:iq:roster"/></iq>

2017-11-29 09:29:28 | admin :: admin@a.localhost/1686442457-tigase-148 >> <presence><c xmlns="http://jabber.org/protocol/caps" node="http://tigase.org/jaxmpp" ver="GDJeU2PgGrtUeUH62yXz3492Sf0=" hash="sha-1"/></presence>

2017-11-29 09:29:28 | admin :: admin@a.localhost/1686442457-tigase-148 << <iq xmlns="jabber:client" type="result" to="admin@a.localhost/1686442457-tigase-148" id="ugrMPH"><query xmlns="jabber:iq:roster"/></iq>

2017-11-29 09:29:28 | admin :: admin@a.localhost/1686442457-tigase-148 << <presence from="admin@a.localhost/1686442457-tigase-148" xmlns="jabber:client" to="admin@a.localhost"><c hash="sha-1" xmlns="http://jabber.org/protocol/caps" node="http://tigase.org/jaxmpp" ver="GDJeU2PgGrtUeUH62yXz3492Sf0="/></presence>

2017-11-29 09:29:28 | admin :: admin@a.localhost/1686442457-tigase-148 << <presence from="admin@a.localhost/1686442457-tigase-149" xmlns="jabber:client" to="admin@a.localhost"><c hash="sha-1" xmlns="http://jabber.org/protocol/caps" node="http://tigase.org/jaxmpp" ver="GDJeU2PgGrtUeUH62yXz3492Sf0="/></presence>

testConnectionWithWrongCertificate 0.201s
2017-11-29 09:29:28 |

2017-11-29 09:29:28 | null / [TestClass name=class tigase.tests.server.TestTwoWayTLS]

2017-11-29 09:29:28 | ------------------------------------

2017-11-29 09:29:28 | == testConnectionWithWrongCertificate

2017-11-29 09:29:28 | [
[
  Version: V1
  Subject: CN=domain, CN=*.domain, EMAILADDRESS=alice@coffeebean.local, OU=org, O=org, L=tr, ST=kp, C=PL
  Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5

  Key:  Sun RSA public key, 1024 bits
  modulus: 106266879742805743724171961105538301506526354323167959695424057875493579958145454588048568210948616912282824765195531126931121635670723518019402208765544352686236175565183181611376532241627209535644477112374843896440553571804713894930423722175263117593782428578884534086105294621264056380256583227876258109489
  public exponent: 65537
  Validity: [From: Wed Nov 29 09:29:28 CET 2017,
               To: Thu Nov 29 09:29:28 CET 2018]
  Issuer: CN=domain, CN=*.domain, EMAILADDRESS=alice@coffeebean.local, OU=org, O=org, L=tr, ST=kp, C=PL
  SerialNumber: [    5a1e6fe8]

]
  Algorithm: [SHA1withRSA]
  Signature:
0000: 63 6C C4 21 54 B2 CC 90   79 DE 80 B0 CA 16 C3 A5  cl.!T...y.......
0010: 21 E2 B3 17 AB 56 CA 16   D9 5A 4F 50 3E 6B 89 FA  !....V...ZOP>k..
0020: CE 26 2C E0 11 FD F8 24   C5 15 7E A3 9E 2F 0C D8  .&,....$...../..
0030: 1C 99 07 53 93 F0 8C 65   40 CF 98 7F D0 55 1F 7F  ...S...e@....U..
0040: 35 6A 9F B2 96 A7 63 A9   52 BD 0E A1 07 65 19 47  5j....c.R....e.G
0050: 2D 48 C1 69 A7 B5 E5 B2   50 A7 73 96 47 76 1F BA  -H.i....P.s.Gv..
0060: CD E8 D6 6E 52 FA DA 28   02 B9 32 8C 0E 56 F7 35  ...nR..(..2..V.5
0070: 3F AF 75 6C 2B 05 68 09   D8 38 22 90 01 07 D4 2A  ?.ul+.h..8"....*

]

2017-11-29 09:29:28 | admin :: admin@a.localhost << <features xmlns="http://etherx.jabber.org/streams"><sm xmlns="urn:xmpp:sm:3"/><auth xmlns="http://jabber.org/features/iq-auth"/><mechanisms xmlns="urn:ietf:params:xml:ns:xmpp-sasl"><mechanism>SCRAM-SHA-256</mechanism><mechanism>SCRAM-SHA-1</mechanism><mechanism>PLAIN</mechanism><mechanism>ANONYMOUS</mechanism></mechanisms><register xmlns="http://jabber.org/features/iq-register"/><ver xmlns="urn:xmpp:features:rosterver"/><sub xmlns="urn:xmpp:features:pre-approval"/><starttls xmlns="urn:ietf:params:xml:ns:xmpp-tls"/><compression xmlns="http://jabber.org/features/compress"><method>zlib</method></compression></features>

testConnectionWithoutCertificate 0.087s
2017-11-29 09:29:29 |

2017-11-29 09:29:29 | null / [TestClass name=class tigase.tests.server.TestTwoWayTLS]

2017-11-29 09:29:29 | ------------------------------------

2017-11-29 09:29:29 | == testConnectionWithoutCertificate

2017-11-29 09:29:29 | admin :: admin@a.localhost << <features xmlns="http://etherx.jabber.org/streams"><sm xmlns="urn:xmpp:sm:3"/><auth xmlns="http://jabber.org/features/iq-auth"/><mechanisms xmlns="urn:ietf:params:xml:ns:xmpp-sasl"><mechanism>SCRAM-SHA-256</mechanism><mechanism>SCRAM-SHA-1</mechanism><mechanism>PLAIN</mechanism><mechanism>ANONYMOUS</mechanism></mechanisms><register xmlns="http://jabber.org/features/iq-register"/><ver xmlns="urn:xmpp:features:rosterver"/><sub xmlns="urn:xmpp:features:pre-approval"/><starttls xmlns="urn:ietf:params:xml:ns:xmpp-tls"/><compression xmlns="http://jabber.org/features/compress"><method>zlib</method></compression></features>