mirror of
https://github.com/php/php-src.git
synced 2025-08-15 13:38:49 +02:00

The allows cipher_algo to be specified as a string. It means the not only predefined ID ciphers are available which means that also auth enveloped data can be created using AES GCM. Closes GH-19459
75 lines
2.8 KiB
PHP
75 lines
2.8 KiB
PHP
--TEST--
|
|
openssl_cms_encrypt() tests
|
|
--EXTENSIONS--
|
|
openssl
|
|
--FILE--
|
|
<?php
|
|
$infile = __DIR__ . "/plain.txt";
|
|
$outfile = __DIR__ . "/openssl_cms_encrypt_basic.out1";
|
|
$outfile2 = __DIR__ . "/openssl_cms_encrypt_basic.out2";
|
|
$outfile3 = __DIR__ . "/openssl_cms_encrypt_basic.out3";
|
|
$single_cert = "file://" . __DIR__ . "/cert.crt";
|
|
$privkey = "file://" . __DIR__ . "/private_rsa_1024.key";
|
|
$wrongkey = "file://" . __DIR__ . "/private_rsa_2048.key";
|
|
$multi_certs = array($single_cert, $single_cert);
|
|
$assoc_headers = array("To" => "test@test", "Subject" => "testing openssl_cms_encrypt()");
|
|
$headers = array("test@test", "testing openssl_cms_encrypt()");
|
|
$empty_headers = array();
|
|
$wrong = "wrong";
|
|
$empty = "";
|
|
$cipher = OPENSSL_CIPHER_AES_128_CBC;
|
|
|
|
var_dump(openssl_cms_encrypt($infile, $outfile, $single_cert, $headers, cipher_algo: $cipher));
|
|
var_dump(openssl_cms_encrypt($infile, $outfile, openssl_x509_read($single_cert), $headers, cipher_algo: $cipher));
|
|
var_dump(openssl_cms_decrypt($outfile, $outfile2, $single_cert, $privkey));
|
|
readfile($outfile2);
|
|
var_dump(openssl_cms_encrypt($infile, $outfile, $single_cert, $assoc_headers, cipher_algo: "AES-128-CBC"));
|
|
var_dump(openssl_cms_encrypt($infile, $outfile, $single_cert, $empty_headers, cipher_algo: $cipher));
|
|
var_dump(openssl_cms_encrypt($wrong, $outfile, $single_cert, $headers, cipher_algo: $cipher));
|
|
var_dump(openssl_cms_encrypt($empty, $outfile, $single_cert, $headers, cipher_algo: $cipher));
|
|
var_dump(openssl_cms_encrypt($infile, $empty, $single_cert, $headers, cipher_algo: $cipher));
|
|
var_dump(openssl_cms_encrypt($infile, $outfile, $wrong, $headers, cipher_algo: $cipher));
|
|
var_dump(openssl_cms_encrypt($infile, $outfile, $empty, $headers, cipher_algo: $cipher));
|
|
var_dump(openssl_cms_encrypt($infile, $outfile, $multi_certs, $headers, cipher_algo: $cipher));
|
|
var_dump(openssl_cms_encrypt($infile, $outfile, array_map('openssl_x509_read', $multi_certs), $headers, cipher_algo: $cipher));
|
|
var_dump(openssl_cms_encrypt($infile, $outfile3, $single_cert, $headers, flags: OPENSSL_CMS_OLDMIMETYPE, cipher_algo: $cipher));
|
|
|
|
if (file_exists($outfile)) {
|
|
echo "true\n";
|
|
}
|
|
if (file_exists($outfile2)) {
|
|
echo "true\n";
|
|
}
|
|
|
|
if (file_exists($outfile3)) {
|
|
$content = file_get_contents($outfile3, false, null, 0, 256);
|
|
if (str_contains($content, 'Content-Type: application/x-pkcs7-mime; smime-type=enveloped-data; name="smime.p7m"')) {
|
|
echo "true\n";
|
|
}
|
|
unset($content);
|
|
}
|
|
?>
|
|
--CLEAN--
|
|
<?php
|
|
@unlink(__DIR__ . "/openssl_cms_encrypt_basic.out1");
|
|
@unlink(__DIR__ . "/openssl_cms_encrypt_basic.out2");
|
|
@unlink(__DIR__ . "/openssl_cms_encrypt_basic.out3");
|
|
?>
|
|
--EXPECT--
|
|
bool(true)
|
|
bool(true)
|
|
bool(true)
|
|
Now is the winter of our discontent.
|
|
bool(true)
|
|
bool(true)
|
|
bool(false)
|
|
bool(false)
|
|
bool(false)
|
|
bool(false)
|
|
bool(false)
|
|
bool(true)
|
|
bool(true)
|
|
bool(true)
|
|
true
|
|
true
|
|
true
|