1 /*
   2  * Copyright (c) 2005, 2016, Oracle and/or its affiliates. All rights reserved.
   3  * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
   4  *
   5  * This code is free software; you can redistribute it and/or modify it
   6  * under the terms of the GNU General Public License version 2 only, as
   7  * published by the Free Software Foundation.
   8  *
   9  * This code is distributed in the hope that it will be useful, but WITHOUT
  10  * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
  11  * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
  12  * version 2 for more details (a copy is included in the LICENSE file that
  13  * accompanied this code).
  14  *
  15  * You should have received a copy of the GNU General Public License version
  16  * 2 along with this work; if not, write to the Free Software Foundation,
  17  * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
  18  *
  19  * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
  20  * or visit www.oracle.com if you need additional information or have any
  21  * questions.
  22  */
  23 
  24 /*
  25  * @test
  26  * @bug 6329006
  27  * @summary verify that NSS no-db mode works correctly
  28  * @author Andreas Sterbenz
  29  * @library ..
  30  * @modules jdk.crypto.token
  31  * @run main/othervm Crypto
  32  * @run main/othervm Crypto sm policy
  33  */
  34 
  35 import java.io.File;
  36 import java.security.KeyPair;
  37 import java.security.KeyPairGenerator;
  38 import java.security.Provider;
  39 import java.security.Signature;
  40 
  41 public class Crypto extends SecmodTest {
  42 
  43     public static void main(String[] args) throws Exception {
  44         if (initSecmod() == false) {
  45             return;
  46         }
  47 
  48         String configName = BASE + SEP + "nsscrypto.cfg";
  49         Provider p = getSunPKCS11(configName);
  50 
  51         if (args.length > 1 && "sm".equals(args[0])) {
  52             System.setProperty("java.security.policy",
  53                     BASE + File.separator + args[1]);
  54             System.setSecurityManager(new SecurityManager());
  55         }
  56 
  57         KeyPairGenerator kpg = KeyPairGenerator.getInstance("RSA", p);
  58         KeyPair kp = kpg.generateKeyPair();
  59 
  60         System.out.println(kp.getPublic());
  61         System.out.println(kp.getPrivate());
  62 
  63         byte[] data = generateData(2048);
  64 
  65         Signature sig = Signature.getInstance("SHA1withRSA", p);
  66         sig.initSign(kp.getPrivate());
  67 
  68         sig.update(data);
  69         byte[] s = sig.sign();
  70         System.out.println("signature: " + toString(s));
  71 
  72         sig.initVerify(kp.getPublic());
  73         sig.update(data);
  74         boolean ok = sig.verify(s);
  75         if (ok == false) {
  76             throw new Exception("Signature verification failed");
  77         }
  78 
  79         System.out.println("OK");
  80     }
  81 
  82 }