1 /*
   2  * Copyright (c) 2012, Oracle and/or its affiliates. All rights reserved.
   3  * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
   4  *
   5  * This code is free software; you can redistribute it and/or modify it
   6  * under the terms of the GNU General Public License version 2 only, as
   7  * published by the Free Software Foundation.
   8  *
   9  * This code is distributed in the hope that it will be useful, but WITHOUT
  10  * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
  11  * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
  12  * version 2 for more details (a copy is included in the LICENSE file that
  13  * accompanied this code).
  14  *
  15  * You should have received a copy of the GNU General Public License version
  16  * 2 along with this work; if not, write to the Free Software Foundation,
  17  * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
  18  *
  19  * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
  20  * or visit www.oracle.com if you need additional information or have any
  21  * questions.
  22  */
  23 
  24 /*
  25  * @test
  26  * @bug 7197159
  27  * @modules java.base/sun.net.spi.nameservice
  28  *          java.base/sun.security.util
  29  *          java.security.jgss/sun.security.jgss
  30  *          java.security.jgss/sun.security.krb5
  31  *          java.security.jgss/sun.security.krb5.internal
  32  *          java.security.jgss/sun.security.krb5.internal.ccache
  33  *          java.security.jgss/sun.security.krb5.internal.crypto
  34  *          java.security.jgss/sun.security.krb5.internal.ktab
  35  * @compile -XDignore.symbol.file KvnoNA.java
  36  * @run main/othervm KvnoNA
  37  * @summary accept different kvno if there no match
  38  */
  39 
  40 import org.ietf.jgss.GSSException;
  41 import sun.security.jgss.GSSUtil;
  42 import sun.security.krb5.KrbException;
  43 import sun.security.krb5.PrincipalName;
  44 import sun.security.krb5.internal.ktab.KeyTab;
  45 import sun.security.krb5.internal.Krb5;
  46 
  47 public class KvnoNA {
  48 
  49     public static void main(String[] args)
  50             throws Exception {
  51 
  52         OneKDC kdc = new OneKDC(null);
  53         kdc.writeJAASConf();
  54 
  55         // In KDC, it's 2
  56         char[] pass = "pass2".toCharArray();
  57         kdc.addPrincipal(OneKDC.SERVER, pass);
  58 
  59         // In ktab, kvno is 1 or 3, 3 has the same password
  60         KeyTab ktab = KeyTab.create(OneKDC.KTAB);
  61         PrincipalName p = new PrincipalName(
  62             OneKDC.SERVER+"@"+OneKDC.REALM, PrincipalName.KRB_NT_SRV_HST);
  63         ktab.addEntry(p, "pass1".toCharArray(), 1, true);
  64         ktab.addEntry(p, "pass2".toCharArray(), 3, true);
  65         ktab.save();
  66 
  67         Context c, s;
  68 
  69         c = Context.fromUserPass("dummy", "bogus".toCharArray(), false);
  70         s = Context.fromJAAS("server");
  71 
  72         c.startAsClient(OneKDC.SERVER, GSSUtil.GSS_KRB5_MECH_OID);
  73         s.startAsServer(GSSUtil.GSS_KRB5_MECH_OID);
  74 
  75         Context.handshake(c, s);
  76 
  77         s.dispose();
  78         c.dispose();
  79     }
  80 }