2 * Copyright (c) 2006 - 2007 Kungliga Tekniska Högskolan
3 * (Royal Institute of Technology, Stockholm, Sweden).
6 * Redistribution and use in source and binary forms, with or without
7 * modification, are permitted provided that the following conditions
10 * 1. Redistributions of source code must retain the above copyright
11 * notice, this list of conditions and the following disclaimer.
13 * 2. Redistributions in binary form must reproduce the above copyright
14 * notice, this list of conditions and the following disclaimer in the
15 * documentation and/or other materials provided with the distribution.
17 * 3. Neither the name of KTH nor the names of its contributors may be
18 * used to endorse or promote products derived from this software without
19 * specific prior written permission.
21 * THIS SOFTWARE IS PROVIDED BY KTH AND ITS CONTRIBUTORS ``AS IS'' AND ANY
22 * EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
23 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
24 * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL KTH OR ITS CONTRIBUTORS BE
25 * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
26 * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
27 * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR
28 * BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY,
29 * WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR
30 * OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF
31 * ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
49 const char *user
= "foo",
51 *password
= "digestpassword",
53 struct ntlm_type1 type1
;
54 struct ntlm_type2 type2
;
55 struct ntlm_type3 type3
;
60 memset(&type1
, 0, sizeof(type1
));
62 type1
.flags
= NTLM_NEG_UNICODE
|NTLM_NEG_TARGET
|NTLM_NEG_NTLM
;
63 type1
.domain
= rk_UNCONST(domain
);
64 type1
.hostname
= NULL
;
68 ret
= heim_ntlm_encode_type1(&type1
, &data
);
70 errx(1, "heim_ntlm_encode_type1");
72 memset(&type1
, 0, sizeof(type1
));
74 ret
= heim_ntlm_decode_type1(&data
, &type1
);
77 errx(1, "heim_ntlm_encode_type1");
79 heim_ntlm_free_type1(&type1
);
85 memset(&type2
, 0, sizeof(type2
));
87 flags
= NTLM_NEG_UNICODE
| NTLM_NEG_NTLM
| NTLM_TARGET_DOMAIN
;
90 memset(type2
.challange
, 0x7f, sizeof(type2
.challange
));
91 type2
.targetname
= rk_UNCONST(target
);
92 type2
.targetinfo
.data
= NULL
;
93 type2
.targetinfo
.length
= 0;
95 ret
= heim_ntlm_encode_type2(&type2
, &data
);
97 errx(1, "heim_ntlm_encode_type2");
99 memset(&type2
, 0, sizeof(type2
));
101 ret
= heim_ntlm_decode_type2(&data
, &type2
);
104 errx(1, "heim_ntlm_decode_type2");
106 heim_ntlm_free_type2(&type2
);
112 memset(&type3
, 0, sizeof(type3
));
115 type3
.username
= rk_UNCONST(user
);
116 type3
.targetname
= rk_UNCONST(target
);
117 type3
.ws
= rk_UNCONST("workstation");
121 heim_ntlm_nt_key(password
, &key
);
123 heim_ntlm_calculate_ntlm1(key
.data
, key
.length
,
129 ret
= heim_ntlm_encode_type3(&type3
, &data
);
131 errx(1, "heim_ntlm_encode_type3");
133 free(type3
.ntlm
.data
);
135 memset(&type3
, 0, sizeof(type3
));
137 ret
= heim_ntlm_decode_type3(&data
, 1, &type3
);
140 errx(1, "heim_ntlm_decode_type3");
142 if (strcmp("workstation", type3
.ws
) != 0)
143 errx(1, "type3 ws wrong");
145 if (strcmp(target
, type3
.targetname
) != 0)
146 errx(1, "type3 targetname wrong");
148 if (strcmp(user
, type3
.username
) != 0)
149 errx(1, "type3 username wrong");
152 heim_ntlm_free_type3(&type3
);
158 memset(&type2
, 0, sizeof(type2
));
160 flags
= NTLM_NEG_UNICODE
| NTLM_NEG_NTLM
| NTLM_TARGET_DOMAIN
;
163 memset(type2
.challange
, 0x7f, sizeof(type2
.challange
));
164 type2
.targetname
= rk_UNCONST(target
);
165 type2
.targetinfo
.data
= "\x00\x00";
166 type2
.targetinfo
.length
= 2;
168 ret
= heim_ntlm_encode_type2(&type2
, &data
);
170 errx(1, "heim_ntlm_encode_type2");
172 memset(&type2
, 0, sizeof(type2
));
174 ret
= heim_ntlm_decode_type2(&data
, &type2
);
177 errx(1, "heim_ntlm_decode_type2");
179 heim_ntlm_free_type2(&type2
);
189 *password
= "test1234",
192 serverchallange
[8] = "\x67\x7f\x1c\x55\x7a\x5e\xe9\x6c";
193 struct ntlm_buf infotarget
, infotarget2
, answer
, key
;
194 unsigned char ntlmv2
[16], ntlmv2_1
[16];
197 infotarget
.length
= 70;
199 "\x02\x00\x0c\x00\x54\x00\x45\x00\x53\x00\x54\x00\x4e\x00\x54\x00"
200 "\x01\x00\x0c\x00\x4d\x00\x45\x00\x4d\x00\x42\x00\x45\x00\x52\x00"
201 "\x03\x00\x1e\x00\x6d\x00\x65\x00\x6d\x00\x62\x00\x65\x00\x72\x00"
202 "\x2e\x00\x74\x00\x65\x00\x73\x00\x74\x00\x2e\x00\x63\x00\x6f"
209 heim_ntlm_nt_key(password
, &key
);
211 ret
= heim_ntlm_calculate_ntlm2(key
.data
,
220 errx(1, "heim_ntlm_calculate_ntlm2");
222 ret
= heim_ntlm_verify_ntlm2(key
.data
,
232 errx(1, "heim_ntlm_verify_ntlm2");
234 if (memcmp(ntlmv2
, ntlmv2_1
, sizeof(ntlmv2
)) != 0)
235 errx(1, "ntlm master key not same");
237 if (infotarget
.length
> infotarget2
.length
)
238 errx(1, "infotarget length");
240 if (memcmp(infotarget
.data
, infotarget2
.data
, infotarget
.length
) != 0)
241 errx(1, "infotarget not the same");
245 free(infotarget2
.data
);
251 test_ntlm2_session_resp(void)
254 struct ntlm_buf lm
, ntlm
;
256 const unsigned char lm_resp
[24] =
257 "\xff\xff\xff\x00\x11\x22\x33\x44"
258 "\x00\x00\x00\x00\x00\x00\x00\x00"
259 "\x00\x00\x00\x00\x00\x00\x00\x00";
260 const unsigned char ntlm2_sess_resp
[24] =
261 "\x10\xd5\x50\x83\x2d\x12\xb2\xcc"
262 "\xb7\x9d\x5a\xd1\xf4\xee\xd3\xdf"
263 "\x82\xac\xa4\xc3\x68\x1d\xd4\x55";
265 const unsigned char client_nonce
[8] =
266 "\xff\xff\xff\x00\x11\x22\x33\x44";
267 const unsigned char server_challange
[8] =
268 "\x01\x23\x45\x67\x89\xab\xcd\xef";
270 const unsigned char ntlm_hash
[16] =
271 "\xcd\x06\xca\x7c\x7e\x10\xc9\x9b"
272 "\x1d\x33\xb7\x48\x5a\x2e\xd8\x08";
274 ret
= heim_ntlm_calculate_ntlm2_sess(client_nonce
,
280 errx(1, "heim_ntlm_calculate_ntlm2_sess_resp");
282 if (lm
.length
!= 24 || memcmp(lm
.data
, lm_resp
, 24) != 0)
283 errx(1, "lm_resp wrong");
284 if (ntlm
.length
!= 24 || memcmp(ntlm
.data
, ntlm2_sess_resp
, 24) != 0)
285 errx(1, "ntlm2_sess_resp wrong");
294 static int version_flag
= 0;
295 static int help_flag
= 0;
297 static struct getargs args
[] = {
298 {"version", 0, arg_flag
, &version_flag
, "print version", NULL
},
299 {"help", 0, arg_flag
, &help_flag
, NULL
, NULL
}
305 arg_printusage (args
, sizeof(args
)/sizeof(*args
),
311 main(int argc
, char **argv
)
313 int ret
= 0, optind
= 0;
315 setprogname(argv
[0]);
317 if(getarg(args
, sizeof(args
) / sizeof(args
[0]), argc
, argv
, &optind
))
331 printf("test_parse\n");
333 printf("test_keys\n");
335 printf("test_ntlm2_session_resp\n");
336 ret
+= test_ntlm2_session_resp();