| 
									
										
										
										
											2014-08-13 10:39:27 +01:00
										 |  |  | // | 
					
						
							|  |  |  | // SamlSecurityTokenAuthenticatorTest.cs | 
					
						
							|  |  |  | // | 
					
						
							|  |  |  | // Author: | 
					
						
							|  |  |  | //	Atsushi Enomoto <atsushi@ximian.com> | 
					
						
							|  |  |  | // | 
					
						
							|  |  |  | // Copyright (C) 2006 Novell, Inc.  http://www.novell.com | 
					
						
							|  |  |  | // | 
					
						
							|  |  |  | // Permission is hereby granted, free of charge, to any person obtaining | 
					
						
							|  |  |  | // a copy of this software and associated documentation files (the | 
					
						
							|  |  |  | // "Software"), to deal in the Software without restriction, including | 
					
						
							|  |  |  | // without limitation the rights to use, copy, modify, merge, publish, | 
					
						
							|  |  |  | // distribute, sublicense, and/or sell copies of the Software, and to | 
					
						
							|  |  |  | // permit persons to whom the Software is furnished to do so, subject to | 
					
						
							|  |  |  | // the following conditions: | 
					
						
							|  |  |  | //  | 
					
						
							|  |  |  | // The above copyright notice and this permission notice shall be | 
					
						
							|  |  |  | // included in all copies or substantial portions of the Software. | 
					
						
							|  |  |  | //  | 
					
						
							|  |  |  | // THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, | 
					
						
							|  |  |  | // EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF | 
					
						
							|  |  |  | // MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND | 
					
						
							|  |  |  | // NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE | 
					
						
							|  |  |  | // LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION | 
					
						
							|  |  |  | // OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION | 
					
						
							|  |  |  | // WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE. | 
					
						
							|  |  |  | // | 
					
						
							| 
									
										
										
										
											2018-01-24 17:04:36 +00:00
										 |  |  | #if !MOBILE && !XAMMAC_4_5 | 
					
						
							| 
									
										
										
										
											2014-08-13 10:39:27 +01:00
										 |  |  | using System; | 
					
						
							|  |  |  | using System.Collections.Generic; | 
					
						
							|  |  |  | using System.IdentityModel.Claims; | 
					
						
							|  |  |  | using System.IdentityModel.Policy; | 
					
						
							|  |  |  | using System.IdentityModel.Selectors; | 
					
						
							|  |  |  | using System.IdentityModel.Tokens; | 
					
						
							|  |  |  | using System.Security.Principal; | 
					
						
							|  |  |  | using System.Security.Cryptography.X509Certificates; | 
					
						
							|  |  |  | using System.Xml; | 
					
						
							|  |  |  | using NUnit.Framework; | 
					
						
							|  |  |  | 
 | 
					
						
							| 
									
										
										
										
											2019-02-04 20:11:37 +00:00
										 |  |  | using MonoTests.Helpers; | 
					
						
							|  |  |  | 
 | 
					
						
							| 
									
										
										
										
											2014-08-13 10:39:27 +01:00
										 |  |  | using MonoTests.System.IdentityModel.Common; | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | using Authenticator = System.IdentityModel.Selectors.SamlSecurityTokenAuthenticator; | 
					
						
							|  |  |  | using PolicyCollection = System.Collections.ObjectModel.ReadOnlyCollection<System.IdentityModel.Policy.IAuthorizationPolicy>; | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | namespace MonoTests.System.IdentityModel.Selectors | 
					
						
							|  |  |  | { | 
					
						
							|  |  |  | 	[TestFixture] | 
					
						
							|  |  |  | 	public class SamlSecurityTokenAuthenticatorTest | 
					
						
							|  |  |  | 	{ | 
					
						
							|  |  |  | 		[Test] | 
					
						
							|  |  |  | 		[ExpectedException (typeof (ArgumentNullException))] | 
					
						
							|  |  |  | 		public void ConstructorCertNull () | 
					
						
							|  |  |  | 		{ | 
					
						
							|  |  |  | 			new Authenticator (null); | 
					
						
							|  |  |  | 		} | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | 		[Test] | 
					
						
							|  |  |  | 		[Ignore ("not done yet")] | 
					
						
							|  |  |  | 		public void Validation () | 
					
						
							|  |  |  | 		{ | 
					
						
							|  |  |  | 			Authenticator a = new Authenticator ( | 
					
						
							|  |  |  | 				new SecurityTokenAuthenticator [] { | 
					
						
							|  |  |  | 					new CustomUserNameSecurityTokenAuthenticator (UserNamePasswordValidator.None), | 
					
						
							|  |  |  | 					new X509SecurityTokenAuthenticator (X509CertificateValidator.None), | 
					
						
							|  |  |  | 					}); | 
					
						
							|  |  |  | 			PolicyCollection pl = a.ValidateToken (GetSamlToken ()); | 
					
						
							|  |  |  | 			Assert.AreEqual (1, pl.Count, "#1"); | 
					
						
							|  |  |  | 			IAuthorizationPolicy p = pl [0]; | 
					
						
							|  |  |  | 			Assert.AreEqual (ClaimSet.System, p.Issuer, "#2"); | 
					
						
							|  |  |  | 			TestEvaluationContext ec = new TestEvaluationContext (); | 
					
						
							|  |  |  | 			object o = null; | 
					
						
							|  |  |  | 			Assert.IsTrue (p.Evaluate (ec, ref o), "#3"); | 
					
						
							|  |  |  | 			Assert.AreEqual (DateTime.MaxValue.AddDays (-1), ec.ExpirationTime, "#4"); | 
					
						
							|  |  |  | 			IList<IIdentity> identities = ec.Properties ["Identities"] as IList<IIdentity>; | 
					
						
							|  |  |  | 			Assert.IsNotNull (identities, "#5"); | 
					
						
							|  |  |  | 			Assert.AreEqual (1, identities.Count, "#6"); | 
					
						
							|  |  |  | 			IIdentity ident = identities [0]; | 
					
						
							|  |  |  | 			Assert.AreEqual (true, ident.IsAuthenticated, "#6-2"); | 
					
						
							|  |  |  | 			// it's implementation details. | 
					
						
							|  |  |  | 			//Assert.AreEqual ("NoneUserNamePasswordValidator", ident.AuthenticationType, "#6-3"); | 
					
						
							|  |  |  | 			Assert.AreEqual ("mono", ident.Name, "#6-4"); | 
					
						
							|  |  |  | 			Assert.AreEqual (1, ec.ClaimSets.Count, "#7"); | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | 			Assert.IsTrue (p.Evaluate (ec, ref o), "#8"); | 
					
						
							|  |  |  | 			identities = ec.Properties ["Identities"] as IList<IIdentity>; | 
					
						
							|  |  |  | 			Assert.AreEqual (2, identities.Count, "#9"); | 
					
						
							|  |  |  | 			Assert.AreEqual (2, ec.ClaimSets.Count, "#10"); | 
					
						
							|  |  |  | 		} | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | 		SamlSecurityToken GetSamlToken () | 
					
						
							|  |  |  | 		{ | 
					
						
							|  |  |  | 			SamlAssertion a = new SamlAssertion (); | 
					
						
							|  |  |  | 			 | 
					
						
							|  |  |  | 			SamlSubject subject = new SamlSubject ( | 
					
						
							|  |  |  | 				SamlConstants.UserNameNamespace, | 
					
						
							|  |  |  | 				"urn:myqualifier", | 
					
						
							|  |  |  | 				"myname"); | 
					
						
							|  |  |  | 			SamlAttribute attr = new SamlAttribute (Claim.CreateNameClaim ("myname")); | 
					
						
							|  |  |  | 			SamlAttributeStatement statement = | 
					
						
							|  |  |  | 				new SamlAttributeStatement (subject, new SamlAttribute [] {attr}); | 
					
						
							|  |  |  | 			a.Statements.Add (statement); | 
					
						
							|  |  |  | 			a.Issuer = "my_hero"; | 
					
						
							|  |  |  | 
 | 
					
						
							| 
									
										
										
										
											2019-02-04 20:11:37 +00:00
										 |  |  | 			X509Certificate2 cert = new X509Certificate2 (TestResourceHelper.GetFullPathOfResource ("Test/Resources/test.pfx"), "mono"); | 
					
						
							| 
									
										
										
										
											2014-08-13 10:39:27 +01:00
										 |  |  | 			X509AsymmetricSecurityKey key = | 
					
						
							|  |  |  | 				new X509AsymmetricSecurityKey (cert); | 
					
						
							|  |  |  | 			a.SigningCredentials = | 
					
						
							|  |  |  | 				new SigningCredentials (key, | 
					
						
							|  |  |  | 					SecurityAlgorithms.HmacSha1Signature,  | 
					
						
							|  |  |  | 					SecurityAlgorithms.Sha256Digest); | 
					
						
							|  |  |  | 			XmlDocument doc = new XmlDocument (); | 
					
						
							|  |  |  | 			XmlWriter w = doc.CreateNavigator ().AppendChild (); | 
					
						
							|  |  |  | 			using (XmlDictionaryWriter dw = XmlDictionaryWriter.CreateDictionaryWriter (w)) { | 
					
						
							|  |  |  | 				a.WriteXml (dw, new SamlSerializer (), new MySecurityTokenSerializer ()); | 
					
						
							|  |  |  | 			} | 
					
						
							|  |  |  | Console.Error.WriteLine (doc.OuterXml); | 
					
						
							|  |  |  | 			return new SamlSecurityToken (a); | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | 		} | 
					
						
							|  |  |  | 	} | 
					
						
							|  |  |  | } | 
					
						
							| 
									
										
										
										
											2018-01-24 17:04:36 +00:00
										 |  |  | #endif |