1 /*
2  * Copyright (c) 2012, Oracle and/or its affiliates. All rights reserved.
3  * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
4  *
5  * This code is free software; you can redistribute it and/or modify it
6  * under the terms of the GNU General Public License version 2 only, as
7  * published by the Free Software Foundation.
8  *
9  * This code is distributed in the hope that it will be useful, but WITHOUT
10  * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
11  * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
12  * version 2 for more details (a copy is included in the LICENSE file that
13  * accompanied this code).
14  *
15  * You should have received a copy of the GNU General Public License version
16  * 2 along with this work; if not, write to the Free Software Foundation,
17  * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
18  *
19  * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
20  * or visit www.oracle.com if you need additional information or have any
21  * questions.
22  */
23 
24 /*
25  * @test
26  * @bug 7197159
27  * @compile -XDignore.symbol.file KvnoNA.java
28  * @run main/othervm -Dsun.net.spi.nameservice.provider.1=ns,mock KvnoNA
29  * @summary accept different kvno if there no match
30  */
31 
32 import org.ietf.jgss.GSSException;
33 import sun.security.jgss.GSSUtil;
34 import sun.security.krb5.KrbException;
35 import sun.security.krb5.PrincipalName;
36 import sun.security.krb5.internal.ktab.KeyTab;
37 import sun.security.krb5.internal.Krb5;
38 
39 public class KvnoNA {
40 
main(String[] args)41     public static void main(String[] args)
42             throws Exception {
43 
44         OneKDC kdc = new OneKDC(null);
45         kdc.writeJAASConf();
46 
47         // In KDC, it's 2
48         char[] pass = "pass2".toCharArray();
49         kdc.addPrincipal(OneKDC.SERVER, pass);
50 
51         // In ktab, kvno is 1 or 3, 3 has the same password
52         KeyTab ktab = KeyTab.create(OneKDC.KTAB);
53         PrincipalName p = new PrincipalName(
54             OneKDC.SERVER+"@"+OneKDC.REALM, PrincipalName.KRB_NT_SRV_HST);
55         ktab.addEntry(p, "pass1".toCharArray(), 1, true);
56         ktab.addEntry(p, "pass2".toCharArray(), 3, true);
57         ktab.save();
58 
59         Context c, s;
60 
61         c = Context.fromUserPass("dummy", "bogus".toCharArray(), false);
62         s = Context.fromJAAS("server");
63 
64         c.startAsClient(OneKDC.SERVER, GSSUtil.GSS_KRB5_MECH_OID);
65         s.startAsServer(GSSUtil.GSS_KRB5_MECH_OID);
66 
67         Context.handshake(c, s);
68 
69         s.dispose();
70         c.dispose();
71     }
72 }
73