keyserver/test/integration/public-key-test.js

350 lines
12 KiB
JavaScript
Raw Normal View History

2016-06-01 12:28:37 +02:00
'use strict';
2016-06-01 15:20:49 +02:00
const config = require('config');
2016-06-01 12:28:37 +02:00
const nodemailer = require('nodemailer');
const Email = require('../../src/email/email');
const Mongo = require('../../src/dao/mongo');
const PGP = require('../../src/service/pgp');
2016-06-01 12:28:37 +02:00
const PublicKey = require('../../src/service/public-key');
describe('Public Key Integration Tests', function() {
this.timeout(20000);
2017-08-15 16:03:06 +08:00
let publicKey;
let email;
let mongo;
let pgp;
let sendEmailStub;
let publicKeyArmored;
let publicKeyArmored2;
let mailsSent;
2016-06-01 12:28:37 +02:00
const DB_TYPE = 'publickey';
const primaryEmail = 'test1@example.com';
const primaryEmail2 = 'test2@example.com';
2017-08-15 16:03:06 +08:00
const origin = {host: 'localhost', protocol: 'http'};
2016-06-01 12:28:37 +02:00
before(function *() {
2017-08-15 16:03:06 +08:00
publicKeyArmored = require('fs').readFileSync(`${__dirname}/../key3.asc`, 'utf8');
publicKeyArmored2 = require('fs').readFileSync(`${__dirname}/../key4.asc`, 'utf8');
2016-06-08 14:01:30 +02:00
mongo = new Mongo();
yield mongo.init(config.mongo);
2016-06-01 12:28:37 +02:00
});
beforeEach(function *() {
yield mongo.clear(DB_TYPE);
mailsSent = [];
2017-08-15 16:03:06 +08:00
sendEmailStub = sinon.stub().returns(Promise.resolve({response: '250'}));
2016-06-01 12:28:37 +02:00
sendEmailStub.withArgs(sinon.match(recipient => {
2017-08-15 16:03:06 +08:00
mailsSent[mailsSent.length] = {to: recipient.to.address};
return true;
2016-06-01 12:28:37 +02:00
}), sinon.match(params => {
mailsSent[mailsSent.length - 1].params = params;
expect(params.nonce).to.exist;
expect(params.keyId).to.exist;
return true;
2016-06-01 12:28:37 +02:00
}));
sinon.stub(nodemailer, 'createTransport').returns({
2017-08-15 16:03:06 +08:00
templateSender: () => sendEmailStub
2016-06-01 12:28:37 +02:00
});
email = new Email(nodemailer);
email.init({
host: 'localhost',
2017-08-15 16:03:06 +08:00
auth: {user: 'user', pass: 'pass'},
sender: {name: 'Foo Bar', email: 'foo@bar.com'}
2016-06-01 12:28:37 +02:00
});
pgp = new PGP();
publicKey = new PublicKey(pgp, mongo, email);
2016-06-01 12:28:37 +02:00
});
afterEach(() => {
nodemailer.createTransport.restore();
});
after(function *() {
yield mongo.clear(DB_TYPE);
2016-06-01 12:28:37 +02:00
yield mongo.disconnect();
});
describe('put', () => {
2016-06-01 15:20:49 +02:00
it('should persist key and send verification email with primaryEmail', function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, primaryEmail, origin});
expect(mailsSent.length).to.equal(1);
expect(mailsSent[0].to).to.equal(primaryEmail);
expect(mailsSent[0].params.keyId).to.exist;
expect(mailsSent[0].params.nonce).to.exist;
2016-06-01 12:28:37 +02:00
});
2016-06-01 15:20:49 +02:00
it('should persist key and send verification email without primaryEmail', function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, origin});
expect(mailsSent.length).to.equal(4);
2016-06-01 15:20:49 +02:00
});
2016-06-01 12:28:37 +02:00
it('should work twice if not yet verified', function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, primaryEmail, origin});
expect(mailsSent.length).to.equal(1);
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, primaryEmail, origin});
expect(mailsSent.length).to.equal(2);
2016-06-01 12:28:37 +02:00
});
it('should throw 304 if key already exists', function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, primaryEmail, origin});
yield publicKey.verify(mailsSent[0].params);
2016-06-01 12:28:37 +02:00
try {
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, primaryEmail, origin});
2016-06-01 12:28:37 +02:00
expect(false).to.be.true;
2017-08-15 16:03:06 +08:00
} catch (e) {
2016-06-01 12:28:37 +02:00
expect(e.status).to.equal(304);
}
});
});
describe('verify', () => {
it('should update the document', function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, primaryEmail, origin});
const emailParams = mailsSent[0].params;
yield publicKey.verify(emailParams);
2017-08-15 16:03:06 +08:00
const gotten = yield mongo.get({keyId: emailParams.keyId}, DB_TYPE);
expect(gotten.userIds[0].verified).to.be.true;
expect(gotten.userIds[0].nonce).to.be.null;
expect(gotten.userIds[1].verified).to.be.false;
expect(gotten.userIds[1].nonce).to.exist;
});
it('should not find the document', function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, primaryEmail, origin});
const emailParams = mailsSent[0].params;
try {
2017-08-15 16:03:06 +08:00
yield publicKey.verify({keyId: emailParams.keyId, nonce: 'fake_nonce'});
expect(true).to.be.false;
2017-08-15 16:03:06 +08:00
} catch (e) {
expect(e.status).to.equal(404);
}
2017-08-15 16:03:06 +08:00
const gotten = yield mongo.get({keyId: emailParams.keyId}, DB_TYPE);
expect(gotten.userIds[0].verified).to.be.false;
expect(gotten.userIds[0].nonce).to.equal(emailParams.nonce);
expect(gotten.userIds[1].verified).to.be.false;
expect(gotten.userIds[1].nonce).to.exist;
});
it('should not verify a second key for already verified user id of another key', function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, primaryEmail: primaryEmail2, origin});
expect(mailsSent.length).to.equal(1);
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored: publicKeyArmored2, primaryEmail: primaryEmail2, origin});
expect(mailsSent.length).to.equal(2);
yield publicKey.verify(mailsSent[1].params);
try {
yield publicKey.verify(mailsSent[0].params);
expect(true).to.be.false;
2017-08-15 16:03:06 +08:00
} catch (e) {
expect(e.status).to.equal(304);
}
2017-08-15 16:03:06 +08:00
const gotten = yield mongo.get({keyId: mailsSent[0].params.keyId}, DB_TYPE);
expect(gotten.userIds[1].email).to.equal(primaryEmail2);
expect(gotten.userIds[1].verified).to.be.false;
expect(gotten.userIds[1].nonce).to.equal(mailsSent[0].params.nonce);
});
it('should be able to verify multiple user ids', function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, origin});
expect(mailsSent.length).to.equal(4);
yield publicKey.verify(mailsSent[0].params);
yield publicKey.verify(mailsSent[1].params);
yield publicKey.verify(mailsSent[2].params);
yield publicKey.verify(mailsSent[3].params);
2017-08-15 16:03:06 +08:00
const gotten = yield mongo.get({keyId: mailsSent[0].params.keyId}, DB_TYPE);
expect(gotten.userIds[0].verified).to.be.true;
expect(gotten.userIds[1].verified).to.be.true;
expect(gotten.userIds[2].verified).to.be.true;
expect(gotten.userIds[3].verified).to.be.true;
});
});
describe('getVerified', () => {
let key;
describe('should find a verified key', () => {
beforeEach(function *() {
key = pgp.parseKey(publicKeyArmored);
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, primaryEmail, origin});
yield publicKey.verify(mailsSent[0].params);
});
it('by fingerprint', function *() {
2017-08-15 16:03:06 +08:00
const verified = yield publicKey.getVerified({fingerprint: key.fingerprint});
expect(verified).to.exist;
});
it('by all userIds', function *() {
2017-08-15 16:03:06 +08:00
const verified = yield publicKey.getVerified({userIds: key.userIds});
expect(verified).to.exist;
});
it('by verified userId', function *() {
2017-08-15 16:03:06 +08:00
const verified = yield publicKey.getVerified({userIds: [key.userIds[0]]});
expect(verified).to.exist;
});
it('by unverified userId', function *() {
2017-08-15 16:03:06 +08:00
const verified = yield publicKey.getVerified({userIds: [key.userIds[1]]});
expect(verified).to.not.exist;
});
it('by keyId', function *() {
2017-08-15 16:03:06 +08:00
const verified = yield publicKey.getVerified({keyId: key.keyId});
expect(verified).to.exist;
});
it('by all params', function *() {
2017-08-15 16:03:06 +08:00
const verified = yield publicKey.getVerified(key);
expect(verified).to.exist;
});
});
describe('should not find an unverified key', () => {
beforeEach(function *() {
key = pgp.parseKey(publicKeyArmored);
key.userIds[0].verified = false;
yield mongo.create(key, DB_TYPE);
});
it('by fingerprint', function *() {
2017-08-15 16:03:06 +08:00
const verified = yield publicKey.getVerified({fingerprint: key.fingerprint});
expect(verified).to.not.exist;
});
it('by userIds', function *() {
2017-08-15 16:03:06 +08:00
const verified = yield publicKey.getVerified({userIds: key.userIds});
expect(verified).to.not.exist;
});
it('by keyId', function *() {
2017-08-15 16:03:06 +08:00
const verified = yield publicKey.getVerified({keyId: key.keyId});
expect(verified).to.not.exist;
});
it('by all params', function *() {
2017-08-15 16:03:06 +08:00
const verified = yield publicKey.getVerified(key);
expect(verified).to.not.exist;
});
});
});
2016-06-01 12:28:37 +02:00
describe('get', () => {
let emailParams;
2016-06-01 12:28:37 +02:00
beforeEach(function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, primaryEmail, origin});
emailParams = mailsSent[0].params;
2016-06-01 12:28:37 +02:00
});
it('should return verified key by key id', function *() {
yield publicKey.verify(emailParams);
2017-08-15 16:03:06 +08:00
const key = yield publicKey.get({keyId: emailParams.keyId});
expect(key.publicKeyArmored).to.exist;
});
it('should return verified key by key id (uppercase)', function *() {
yield publicKey.verify(emailParams);
2017-08-15 16:03:06 +08:00
const key = yield publicKey.get({keyId: emailParams.keyId.toUpperCase()});
expect(key.publicKeyArmored).to.exist;
});
it('should return verified key by fingerprint', function *() {
yield publicKey.verify(emailParams);
2017-08-15 16:03:06 +08:00
const fingerprint = pgp.parseKey(publicKeyArmored).fingerprint;
const key = yield publicKey.get({fingerprint});
expect(key.publicKeyArmored).to.exist;
});
it('should return verified key by fingerprint (uppercase)', function *() {
yield publicKey.verify(emailParams);
2017-08-15 16:03:06 +08:00
const fingerprint = pgp.parseKey(publicKeyArmored).fingerprint.toUpperCase();
const key = yield publicKey.get({fingerprint});
expect(key.publicKeyArmored).to.exist;
2016-06-01 12:28:37 +02:00
});
it('should return verified key by email address', function *() {
yield publicKey.verify(emailParams);
2017-08-15 16:03:06 +08:00
const key = yield publicKey.get({email: primaryEmail});
expect(key.publicKeyArmored).to.exist;
});
it('should return verified key by email address (uppercase)', function *() {
yield publicKey.verify(emailParams);
2017-08-15 16:03:06 +08:00
const key = yield publicKey.get({email: primaryEmail.toUpperCase()});
expect(key.publicKeyArmored).to.exist;
2016-06-01 12:28:37 +02:00
});
it('should throw 404 for unverified key', function *() {
try {
2017-08-15 16:03:06 +08:00
yield publicKey.get({keyId: emailParams.keyId});
2016-06-01 12:28:37 +02:00
expect(false).to.be.true;
2017-08-15 16:03:06 +08:00
} catch (e) {
2016-06-01 12:28:37 +02:00
expect(e.status).to.equal(404);
}
});
});
describe('requestRemove', () => {
let keyId;
2016-06-01 12:28:37 +02:00
beforeEach(function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, primaryEmail, origin});
keyId = mailsSent[0].params.keyId;
2016-06-01 12:28:37 +02:00
});
it('should work for verified key', function *() {
yield publicKey.verify(mailsSent[0].params);
2017-08-15 16:03:06 +08:00
yield publicKey.requestRemove({keyId, origin});
expect(mailsSent.length).to.equal(5);
2016-06-01 12:28:37 +02:00
});
it('should work for unverified key', function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.requestRemove({keyId, origin});
expect(mailsSent.length).to.equal(5);
2016-06-01 12:28:37 +02:00
});
it('should work by email address', function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.requestRemove({email: primaryEmail, origin});
expect(mailsSent.length).to.equal(2);
2016-06-01 12:28:37 +02:00
});
it('should throw 404 for no key', function *() {
2017-08-15 16:03:06 +08:00
yield mongo.remove({keyId}, DB_TYPE);
2016-06-01 12:28:37 +02:00
try {
2017-08-15 16:03:06 +08:00
yield publicKey.requestRemove({keyId, origin});
2016-06-01 12:28:37 +02:00
expect(false).to.be.true;
2017-08-15 16:03:06 +08:00
} catch (e) {
2016-06-01 12:28:37 +02:00
expect(e.status).to.equal(404);
}
});
});
describe('verifyRemove', () => {
let keyId;
2016-06-01 12:28:37 +02:00
beforeEach(function *() {
2017-08-15 16:03:06 +08:00
yield publicKey.put({publicKeyArmored, primaryEmail, origin});
keyId = mailsSent[0].params.keyId;
2017-08-15 16:03:06 +08:00
yield publicKey.requestRemove({keyId, origin});
2016-06-01 12:28:37 +02:00
});
it('should remove key', function *() {
yield publicKey.verifyRemove(mailsSent[1].params);
2017-08-15 16:03:06 +08:00
const key = yield mongo.get({keyId}, DB_TYPE);
2016-06-01 12:28:37 +02:00
expect(key).to.not.exist;
});
it('should throw 404 for no key', function *() {
2017-08-15 16:03:06 +08:00
yield mongo.remove({keyId}, DB_TYPE);
2016-06-01 12:28:37 +02:00
try {
yield publicKey.verifyRemove(mailsSent[1].params);
2016-06-01 12:28:37 +02:00
expect(false).to.be.true;
2017-08-15 16:03:06 +08:00
} catch (e) {
2016-06-01 12:28:37 +02:00
expect(e.status).to.equal(404);
}
});
});
2017-08-15 16:03:06 +08:00
});