1*d9f75844SAndroid Build Coastguard Worker /*
2*d9f75844SAndroid Build Coastguard Worker * Copyright 2018 The WebRTC project authors. All Rights Reserved.
3*d9f75844SAndroid Build Coastguard Worker *
4*d9f75844SAndroid Build Coastguard Worker * Use of this source code is governed by a BSD-style license
5*d9f75844SAndroid Build Coastguard Worker * that can be found in the LICENSE file in the root of the source
6*d9f75844SAndroid Build Coastguard Worker * tree. An additional intellectual property rights grant can be found
7*d9f75844SAndroid Build Coastguard Worker * in the file PATENTS. All contributing project authors may
8*d9f75844SAndroid Build Coastguard Worker * be found in the AUTHORS file in the root of the source tree.
9*d9f75844SAndroid Build Coastguard Worker */
10*d9f75844SAndroid Build Coastguard Worker
11*d9f75844SAndroid Build Coastguard Worker #include "pc/dtls_transport.h"
12*d9f75844SAndroid Build Coastguard Worker
13*d9f75844SAndroid Build Coastguard Worker #include <utility>
14*d9f75844SAndroid Build Coastguard Worker #include <vector>
15*d9f75844SAndroid Build Coastguard Worker
16*d9f75844SAndroid Build Coastguard Worker #include "absl/types/optional.h"
17*d9f75844SAndroid Build Coastguard Worker #include "api/make_ref_counted.h"
18*d9f75844SAndroid Build Coastguard Worker #include "api/rtc_error.h"
19*d9f75844SAndroid Build Coastguard Worker #include "p2p/base/fake_dtls_transport.h"
20*d9f75844SAndroid Build Coastguard Worker #include "p2p/base/p2p_constants.h"
21*d9f75844SAndroid Build Coastguard Worker #include "rtc_base/fake_ssl_identity.h"
22*d9f75844SAndroid Build Coastguard Worker #include "rtc_base/gunit.h"
23*d9f75844SAndroid Build Coastguard Worker #include "rtc_base/rtc_certificate.h"
24*d9f75844SAndroid Build Coastguard Worker #include "rtc_base/ssl_identity.h"
25*d9f75844SAndroid Build Coastguard Worker #include "test/gmock.h"
26*d9f75844SAndroid Build Coastguard Worker #include "test/gtest.h"
27*d9f75844SAndroid Build Coastguard Worker
28*d9f75844SAndroid Build Coastguard Worker constexpr int kDefaultTimeout = 1000; // milliseconds
29*d9f75844SAndroid Build Coastguard Worker constexpr int kNonsenseCipherSuite = 1234;
30*d9f75844SAndroid Build Coastguard Worker
31*d9f75844SAndroid Build Coastguard Worker using cricket::FakeDtlsTransport;
32*d9f75844SAndroid Build Coastguard Worker using ::testing::ElementsAre;
33*d9f75844SAndroid Build Coastguard Worker
34*d9f75844SAndroid Build Coastguard Worker namespace webrtc {
35*d9f75844SAndroid Build Coastguard Worker
36*d9f75844SAndroid Build Coastguard Worker class TestDtlsTransportObserver : public DtlsTransportObserverInterface {
37*d9f75844SAndroid Build Coastguard Worker public:
OnStateChange(DtlsTransportInformation info)38*d9f75844SAndroid Build Coastguard Worker void OnStateChange(DtlsTransportInformation info) override {
39*d9f75844SAndroid Build Coastguard Worker state_change_called_ = true;
40*d9f75844SAndroid Build Coastguard Worker states_.push_back(info.state());
41*d9f75844SAndroid Build Coastguard Worker info_ = info;
42*d9f75844SAndroid Build Coastguard Worker }
43*d9f75844SAndroid Build Coastguard Worker
OnError(RTCError error)44*d9f75844SAndroid Build Coastguard Worker void OnError(RTCError error) override {}
45*d9f75844SAndroid Build Coastguard Worker
state()46*d9f75844SAndroid Build Coastguard Worker DtlsTransportState state() {
47*d9f75844SAndroid Build Coastguard Worker if (states_.size() > 0) {
48*d9f75844SAndroid Build Coastguard Worker return states_[states_.size() - 1];
49*d9f75844SAndroid Build Coastguard Worker } else {
50*d9f75844SAndroid Build Coastguard Worker return DtlsTransportState::kNew;
51*d9f75844SAndroid Build Coastguard Worker }
52*d9f75844SAndroid Build Coastguard Worker }
53*d9f75844SAndroid Build Coastguard Worker
54*d9f75844SAndroid Build Coastguard Worker bool state_change_called_ = false;
55*d9f75844SAndroid Build Coastguard Worker DtlsTransportInformation info_;
56*d9f75844SAndroid Build Coastguard Worker std::vector<DtlsTransportState> states_;
57*d9f75844SAndroid Build Coastguard Worker };
58*d9f75844SAndroid Build Coastguard Worker
59*d9f75844SAndroid Build Coastguard Worker class DtlsTransportTest : public ::testing::Test {
60*d9f75844SAndroid Build Coastguard Worker public:
transport()61*d9f75844SAndroid Build Coastguard Worker DtlsTransport* transport() { return transport_.get(); }
observer()62*d9f75844SAndroid Build Coastguard Worker DtlsTransportObserverInterface* observer() { return &observer_; }
63*d9f75844SAndroid Build Coastguard Worker
CreateTransport(rtc::FakeSSLCertificate * certificate=nullptr)64*d9f75844SAndroid Build Coastguard Worker void CreateTransport(rtc::FakeSSLCertificate* certificate = nullptr) {
65*d9f75844SAndroid Build Coastguard Worker auto cricket_transport = std::make_unique<FakeDtlsTransport>(
66*d9f75844SAndroid Build Coastguard Worker "audio", cricket::ICE_CANDIDATE_COMPONENT_RTP);
67*d9f75844SAndroid Build Coastguard Worker if (certificate) {
68*d9f75844SAndroid Build Coastguard Worker cricket_transport->SetRemoteSSLCertificate(certificate);
69*d9f75844SAndroid Build Coastguard Worker }
70*d9f75844SAndroid Build Coastguard Worker cricket_transport->SetSslCipherSuite(kNonsenseCipherSuite);
71*d9f75844SAndroid Build Coastguard Worker transport_ =
72*d9f75844SAndroid Build Coastguard Worker rtc::make_ref_counted<DtlsTransport>(std::move(cricket_transport));
73*d9f75844SAndroid Build Coastguard Worker }
74*d9f75844SAndroid Build Coastguard Worker
CompleteDtlsHandshake()75*d9f75844SAndroid Build Coastguard Worker void CompleteDtlsHandshake() {
76*d9f75844SAndroid Build Coastguard Worker auto fake_dtls1 = static_cast<FakeDtlsTransport*>(transport_->internal());
77*d9f75844SAndroid Build Coastguard Worker auto fake_dtls2 = std::make_unique<FakeDtlsTransport>(
78*d9f75844SAndroid Build Coastguard Worker "audio", cricket::ICE_CANDIDATE_COMPONENT_RTP);
79*d9f75844SAndroid Build Coastguard Worker auto cert1 = rtc::RTCCertificate::Create(
80*d9f75844SAndroid Build Coastguard Worker rtc::SSLIdentity::Create("session1", rtc::KT_DEFAULT));
81*d9f75844SAndroid Build Coastguard Worker fake_dtls1->SetLocalCertificate(cert1);
82*d9f75844SAndroid Build Coastguard Worker auto cert2 = rtc::RTCCertificate::Create(
83*d9f75844SAndroid Build Coastguard Worker rtc::SSLIdentity::Create("session1", rtc::KT_DEFAULT));
84*d9f75844SAndroid Build Coastguard Worker fake_dtls2->SetLocalCertificate(cert2);
85*d9f75844SAndroid Build Coastguard Worker fake_dtls1->SetDestination(fake_dtls2.get());
86*d9f75844SAndroid Build Coastguard Worker }
87*d9f75844SAndroid Build Coastguard Worker
88*d9f75844SAndroid Build Coastguard Worker rtc::AutoThread main_thread_;
89*d9f75844SAndroid Build Coastguard Worker rtc::scoped_refptr<DtlsTransport> transport_;
90*d9f75844SAndroid Build Coastguard Worker TestDtlsTransportObserver observer_;
91*d9f75844SAndroid Build Coastguard Worker };
92*d9f75844SAndroid Build Coastguard Worker
TEST_F(DtlsTransportTest,CreateClearDelete)93*d9f75844SAndroid Build Coastguard Worker TEST_F(DtlsTransportTest, CreateClearDelete) {
94*d9f75844SAndroid Build Coastguard Worker auto cricket_transport = std::make_unique<FakeDtlsTransport>(
95*d9f75844SAndroid Build Coastguard Worker "audio", cricket::ICE_CANDIDATE_COMPONENT_RTP);
96*d9f75844SAndroid Build Coastguard Worker auto webrtc_transport =
97*d9f75844SAndroid Build Coastguard Worker rtc::make_ref_counted<DtlsTransport>(std::move(cricket_transport));
98*d9f75844SAndroid Build Coastguard Worker ASSERT_TRUE(webrtc_transport->internal());
99*d9f75844SAndroid Build Coastguard Worker ASSERT_EQ(DtlsTransportState::kNew, webrtc_transport->Information().state());
100*d9f75844SAndroid Build Coastguard Worker webrtc_transport->Clear();
101*d9f75844SAndroid Build Coastguard Worker ASSERT_FALSE(webrtc_transport->internal());
102*d9f75844SAndroid Build Coastguard Worker ASSERT_EQ(DtlsTransportState::kClosed,
103*d9f75844SAndroid Build Coastguard Worker webrtc_transport->Information().state());
104*d9f75844SAndroid Build Coastguard Worker }
105*d9f75844SAndroid Build Coastguard Worker
TEST_F(DtlsTransportTest,EventsObservedWhenConnecting)106*d9f75844SAndroid Build Coastguard Worker TEST_F(DtlsTransportTest, EventsObservedWhenConnecting) {
107*d9f75844SAndroid Build Coastguard Worker CreateTransport();
108*d9f75844SAndroid Build Coastguard Worker transport()->RegisterObserver(observer());
109*d9f75844SAndroid Build Coastguard Worker CompleteDtlsHandshake();
110*d9f75844SAndroid Build Coastguard Worker ASSERT_TRUE_WAIT(observer_.state_change_called_, kDefaultTimeout);
111*d9f75844SAndroid Build Coastguard Worker EXPECT_THAT(
112*d9f75844SAndroid Build Coastguard Worker observer_.states_,
113*d9f75844SAndroid Build Coastguard Worker ElementsAre( // FakeDtlsTransport doesn't signal the "connecting" state.
114*d9f75844SAndroid Build Coastguard Worker // TODO(hta): fix FakeDtlsTransport or file bug on it.
115*d9f75844SAndroid Build Coastguard Worker // DtlsTransportState::kConnecting,
116*d9f75844SAndroid Build Coastguard Worker DtlsTransportState::kConnected));
117*d9f75844SAndroid Build Coastguard Worker }
118*d9f75844SAndroid Build Coastguard Worker
TEST_F(DtlsTransportTest,CloseWhenClearing)119*d9f75844SAndroid Build Coastguard Worker TEST_F(DtlsTransportTest, CloseWhenClearing) {
120*d9f75844SAndroid Build Coastguard Worker CreateTransport();
121*d9f75844SAndroid Build Coastguard Worker transport()->RegisterObserver(observer());
122*d9f75844SAndroid Build Coastguard Worker CompleteDtlsHandshake();
123*d9f75844SAndroid Build Coastguard Worker ASSERT_TRUE_WAIT(observer_.state() == DtlsTransportState::kConnected,
124*d9f75844SAndroid Build Coastguard Worker kDefaultTimeout);
125*d9f75844SAndroid Build Coastguard Worker transport()->Clear();
126*d9f75844SAndroid Build Coastguard Worker ASSERT_TRUE_WAIT(observer_.state() == DtlsTransportState::kClosed,
127*d9f75844SAndroid Build Coastguard Worker kDefaultTimeout);
128*d9f75844SAndroid Build Coastguard Worker }
129*d9f75844SAndroid Build Coastguard Worker
TEST_F(DtlsTransportTest,RoleAppearsOnConnect)130*d9f75844SAndroid Build Coastguard Worker TEST_F(DtlsTransportTest, RoleAppearsOnConnect) {
131*d9f75844SAndroid Build Coastguard Worker rtc::FakeSSLCertificate fake_certificate("fake data");
132*d9f75844SAndroid Build Coastguard Worker CreateTransport(&fake_certificate);
133*d9f75844SAndroid Build Coastguard Worker transport()->RegisterObserver(observer());
134*d9f75844SAndroid Build Coastguard Worker EXPECT_FALSE(transport()->Information().role());
135*d9f75844SAndroid Build Coastguard Worker CompleteDtlsHandshake();
136*d9f75844SAndroid Build Coastguard Worker ASSERT_TRUE_WAIT(observer_.state() == DtlsTransportState::kConnected,
137*d9f75844SAndroid Build Coastguard Worker kDefaultTimeout);
138*d9f75844SAndroid Build Coastguard Worker EXPECT_TRUE(observer_.info_.role());
139*d9f75844SAndroid Build Coastguard Worker EXPECT_TRUE(transport()->Information().role());
140*d9f75844SAndroid Build Coastguard Worker EXPECT_EQ(transport()->Information().role(), DtlsTransportTlsRole::kClient);
141*d9f75844SAndroid Build Coastguard Worker }
142*d9f75844SAndroid Build Coastguard Worker
TEST_F(DtlsTransportTest,CertificateAppearsOnConnect)143*d9f75844SAndroid Build Coastguard Worker TEST_F(DtlsTransportTest, CertificateAppearsOnConnect) {
144*d9f75844SAndroid Build Coastguard Worker rtc::FakeSSLCertificate fake_certificate("fake data");
145*d9f75844SAndroid Build Coastguard Worker CreateTransport(&fake_certificate);
146*d9f75844SAndroid Build Coastguard Worker transport()->RegisterObserver(observer());
147*d9f75844SAndroid Build Coastguard Worker CompleteDtlsHandshake();
148*d9f75844SAndroid Build Coastguard Worker ASSERT_TRUE_WAIT(observer_.state() == DtlsTransportState::kConnected,
149*d9f75844SAndroid Build Coastguard Worker kDefaultTimeout);
150*d9f75844SAndroid Build Coastguard Worker EXPECT_TRUE(observer_.info_.remote_ssl_certificates() != nullptr);
151*d9f75844SAndroid Build Coastguard Worker }
152*d9f75844SAndroid Build Coastguard Worker
TEST_F(DtlsTransportTest,CertificateDisappearsOnClose)153*d9f75844SAndroid Build Coastguard Worker TEST_F(DtlsTransportTest, CertificateDisappearsOnClose) {
154*d9f75844SAndroid Build Coastguard Worker rtc::FakeSSLCertificate fake_certificate("fake data");
155*d9f75844SAndroid Build Coastguard Worker CreateTransport(&fake_certificate);
156*d9f75844SAndroid Build Coastguard Worker transport()->RegisterObserver(observer());
157*d9f75844SAndroid Build Coastguard Worker CompleteDtlsHandshake();
158*d9f75844SAndroid Build Coastguard Worker ASSERT_TRUE_WAIT(observer_.state() == DtlsTransportState::kConnected,
159*d9f75844SAndroid Build Coastguard Worker kDefaultTimeout);
160*d9f75844SAndroid Build Coastguard Worker EXPECT_TRUE(observer_.info_.remote_ssl_certificates() != nullptr);
161*d9f75844SAndroid Build Coastguard Worker transport()->Clear();
162*d9f75844SAndroid Build Coastguard Worker ASSERT_TRUE_WAIT(observer_.state() == DtlsTransportState::kClosed,
163*d9f75844SAndroid Build Coastguard Worker kDefaultTimeout);
164*d9f75844SAndroid Build Coastguard Worker EXPECT_FALSE(observer_.info_.remote_ssl_certificates());
165*d9f75844SAndroid Build Coastguard Worker }
166*d9f75844SAndroid Build Coastguard Worker
TEST_F(DtlsTransportTest,CipherSuiteVisibleWhenConnected)167*d9f75844SAndroid Build Coastguard Worker TEST_F(DtlsTransportTest, CipherSuiteVisibleWhenConnected) {
168*d9f75844SAndroid Build Coastguard Worker CreateTransport();
169*d9f75844SAndroid Build Coastguard Worker transport()->RegisterObserver(observer());
170*d9f75844SAndroid Build Coastguard Worker CompleteDtlsHandshake();
171*d9f75844SAndroid Build Coastguard Worker ASSERT_TRUE_WAIT(observer_.state() == DtlsTransportState::kConnected,
172*d9f75844SAndroid Build Coastguard Worker kDefaultTimeout);
173*d9f75844SAndroid Build Coastguard Worker ASSERT_TRUE(observer_.info_.ssl_cipher_suite());
174*d9f75844SAndroid Build Coastguard Worker EXPECT_EQ(kNonsenseCipherSuite, *observer_.info_.ssl_cipher_suite());
175*d9f75844SAndroid Build Coastguard Worker transport()->Clear();
176*d9f75844SAndroid Build Coastguard Worker ASSERT_TRUE_WAIT(observer_.state() == DtlsTransportState::kClosed,
177*d9f75844SAndroid Build Coastguard Worker kDefaultTimeout);
178*d9f75844SAndroid Build Coastguard Worker EXPECT_FALSE(observer_.info_.ssl_cipher_suite());
179*d9f75844SAndroid Build Coastguard Worker }
180*d9f75844SAndroid Build Coastguard Worker
181*d9f75844SAndroid Build Coastguard Worker } // namespace webrtc
182