2018-09-27 10:50:39 -07:00
|
|
|
using System;
|
|
|
|
|
using Xunit;
|
|
|
|
|
using k8s;
|
|
|
|
|
using System.IO;
|
2019-03-11 06:39:28 -07:00
|
|
|
using System.Security.Cryptography.X509Certificates;
|
|
|
|
|
using System.Net.Security;
|
|
|
|
|
using System.Linq;
|
2018-09-27 10:50:39 -07:00
|
|
|
|
|
|
|
|
namespace k8s.Tests
|
|
|
|
|
{
|
|
|
|
|
public class CertUtilsTests
|
|
|
|
|
{
|
|
|
|
|
/// <summary>
|
2018-04-27 06:13:48 +02:00
|
|
|
/// This file contains a sample kubeconfig file. The paths to the certificate files are relative
|
2018-09-27 10:50:39 -07:00
|
|
|
/// to the current working directly.
|
|
|
|
|
/// </summary>
|
2018-04-27 06:13:48 +02:00
|
|
|
private static readonly string kubeConfigFileName = "assets/kubeconfig.yml";
|
2018-09-27 10:50:39 -07:00
|
|
|
|
|
|
|
|
/// <summary>
|
2018-04-27 06:13:48 +02:00
|
|
|
/// This file contains a sample kubeconfig file. The paths to the certificate files are relative
|
2018-09-27 10:50:39 -07:00
|
|
|
/// to the directory in which the kubeconfig file is located.
|
|
|
|
|
/// </summary>
|
|
|
|
|
private static readonly string kubeConfigWithRelativePathsFileName = "assets/kubeconfig.relative.yml";
|
|
|
|
|
|
|
|
|
|
/// <summary>
|
|
|
|
|
/// Checks that a certificate can be loaded from files.
|
|
|
|
|
/// </summary>
|
|
|
|
|
[Fact]
|
|
|
|
|
public void LoadFromFiles()
|
|
|
|
|
{
|
|
|
|
|
var cfg = KubernetesClientConfiguration.BuildConfigFromConfigFile(kubeConfigFileName, "federal-context", useRelativePaths: false);
|
|
|
|
|
|
|
|
|
|
// Just validate that this doesn't throw and private key is non-null
|
|
|
|
|
var cert = CertUtils.GeneratePfx(cfg);
|
|
|
|
|
Assert.NotNull(cert.PrivateKey);
|
2018-04-27 06:13:48 +02:00
|
|
|
}
|
2018-09-27 10:50:39 -07:00
|
|
|
|
|
|
|
|
/// <summary>
|
|
|
|
|
/// Checks that a certificate can be loaded from files, in a scenario where the files are using relative paths.
|
|
|
|
|
/// </summary>
|
|
|
|
|
[Fact]
|
2018-04-27 06:13:48 +02:00
|
|
|
public void LoadFromFilesRelativePath()
|
2018-09-27 10:50:39 -07:00
|
|
|
{
|
|
|
|
|
var cfg = KubernetesClientConfiguration.BuildConfigFromConfigFile(kubeConfigWithRelativePathsFileName, "federal-context");
|
|
|
|
|
|
|
|
|
|
// Just validate that this doesn't throw and private key is non-null
|
|
|
|
|
var cert = CertUtils.GeneratePfx(cfg);
|
|
|
|
|
Assert.NotNull(cert.PrivateKey);
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
/// <summary>
|
|
|
|
|
/// Checks that a certificate can be loaded from inline.
|
|
|
|
|
/// </summary>
|
|
|
|
|
[Fact]
|
|
|
|
|
public void LoadFromInlineData()
|
|
|
|
|
{
|
|
|
|
|
var cfg = KubernetesClientConfiguration.BuildConfigFromConfigFile(kubeConfigFileName, "victorian-context", useRelativePaths: false);
|
|
|
|
|
|
|
|
|
|
// Just validate that this doesn't throw and private key is non-null
|
|
|
|
|
var cert = CertUtils.GeneratePfx(cfg);
|
|
|
|
|
Assert.NotNull(cert.PrivateKey);
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
/// <summary>
|
|
|
|
|
/// Checks that a certificate can be loaded from inline, in a scenario where the files are using relative paths..
|
|
|
|
|
/// </summary>
|
|
|
|
|
[Fact]
|
2018-04-27 06:13:48 +02:00
|
|
|
public void LoadFromInlineDataRelativePath()
|
2018-09-27 10:50:39 -07:00
|
|
|
{
|
|
|
|
|
var cfg = KubernetesClientConfiguration.BuildConfigFromConfigFile(kubeConfigWithRelativePathsFileName, "victorian-context");
|
|
|
|
|
|
|
|
|
|
// Just validate that this doesn't throw and private key is non-null
|
|
|
|
|
var cert = CertUtils.GeneratePfx(cfg);
|
|
|
|
|
Assert.NotNull(cert.PrivateKey);
|
|
|
|
|
}
|
2019-02-15 11:57:24 -08:00
|
|
|
|
|
|
|
|
/// <summary>
|
2019-03-11 06:39:28 -07:00
|
|
|
/// Checks that the bundle certificate was loaded correctly
|
2019-02-15 11:57:24 -08:00
|
|
|
/// </summary>
|
|
|
|
|
[Fact]
|
|
|
|
|
public void LoadPemWithMultiCert()
|
|
|
|
|
{
|
2019-03-11 06:39:28 -07:00
|
|
|
var certCollection = CertUtils.LoadPemFileCert("assets/ca-bundle.crt");
|
|
|
|
|
|
|
|
|
|
var intermediateCert = new X509Certificate2("assets/ca-bundle-intermediate.crt");
|
|
|
|
|
var rootCert = new X509Certificate2("assets/ca-bundle-root.crt");
|
|
|
|
|
|
|
|
|
|
Assert.Equal(2, certCollection.Count);
|
|
|
|
|
|
|
|
|
|
Assert.True(certCollection[0].RawData.SequenceEqual(intermediateCert.RawData));
|
|
|
|
|
Assert.True(certCollection[1].RawData.SequenceEqual(rootCert.RawData));
|
2019-02-15 11:57:24 -08:00
|
|
|
}
|
2018-09-27 10:50:39 -07:00
|
|
|
}
|
2017-11-08 14:22:10 +08:00
|
|
|
}
|