Skip to content

Commit 03e5d10

Browse files
committed
Add test_wolfSSL_dup_CA_list
1 parent 481ae20 commit 03e5d10

4 files changed

Lines changed: 55 additions & 6 deletions

File tree

src/internal.c

Lines changed: 12 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6238,8 +6238,18 @@ int SetSSL_CTX(WOLFSSL* ssl, WOLFSSL_CTX* ctx, int writeDup)
62386238
/* Don't change version on a SSL object that has already started a
62396239
* handshake */
62406240
#if defined(WOLFSSL_HAPROXY)
6241-
ssl->initial_ctx = ctx; /* Save access to session key materials */
6242-
wolfSSL_CTX_up_ref(ctx);
6241+
ret = wolfSSL_CTX_up_ref(ctx);
6242+
if (ret == WOLFSSL_SUCCESS) {
6243+
ssl->initial_ctx = ctx; /* Save access to session key materials */
6244+
}
6245+
else {
6246+
#ifdef WOLFSSL_REFCNT_ERROR_RETURN
6247+
return ret;
6248+
#else
6249+
(void)ret;
6250+
#endif
6251+
}
6252+
62436253
#endif
62446254
if (!ssl->msgsReceived.got_client_hello &&
62456255
!ssl->msgsReceived.got_server_hello)

src/ssl.c

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4511,8 +4511,9 @@ int wolfSSL_get_error(WOLFSSL* ssl, int ret)
45114511
return WOLFSSL_ERROR_ZERO_RETURN; /* convert to OpenSSL type */
45124512
#if defined(WOLFSSL_HAPROXY)
45134513
return GetX509Error(ssl->error);
4514-
#endif
4514+
#else
45154515
return (ssl->error);
4516+
#endif
45164517
}
45174518

45184519

src/x509_str.c

Lines changed: 4 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -979,10 +979,12 @@ int wolfSSL_X509_STORE_set_flags(WOLFSSL_X509_STORE* store, unsigned long flag)
979979
if (store == NULL)
980980
return WOLFSSL_FAILURE;
981981

982-
if ((flag & WOLFSSL_CRL_CHECKALL) || (flag & WOLFSSL_CRL_CHECK) ||
983-
flag == 0 ) {
982+
if ((flag & WOLFSSL_CRL_CHECKALL) || (flag & WOLFSSL_CRL_CHECK)) {
984983
ret = wolfSSL_CertManagerEnableCRL(store->cm, (int)flag);
985984
}
985+
else if (flag == 0) {
986+
ret = wolfSSL_CertManagerDisableCRL(store->cm);
987+
}
986988

987989
return ret;
988990
}

tests/api.c

Lines changed: 37 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -50277,7 +50277,43 @@ static int test_wolfSSL_X509_STORE_get1_certs(void)
5027750277
#endif /* OPENSSL_EXTRA && WOLFSSL_SIGNER_DER_CERT && !NO_FILESYSTEM */
5027850278
return EXPECT_RESULT();
5027950279
}
50280+
static int test_wolfSSL_dup_CA_list(void)
50281+
{
50282+
int res = TEST_SKIPPED;
50283+
#if defined(OPENSSL_ALL)
50284+
EXPECT_DECLS;
50285+
STACK_OF(X509_NAME) *originalStack = NULL;
50286+
STACK_OF(X509_NAME) *copyStack = NULL;
50287+
int originalCount = 0;
50288+
int copyCount = 0;
50289+
X509_NAME *name = NULL;
50290+
int i;
50291+
50292+
originalStack = sk_X509_NAME_new_null();
50293+
ExpectNotNull(originalStack);
50294+
50295+
for (i = 0; i < 3; i++) {
50296+
name = X509_NAME_new();
50297+
ExpectNotNull(name);
50298+
AssertIntEQ(sk_X509_NAME_push(originalStack, name), WOLFSSL_SUCCESS);
50299+
}
50300+
50301+
copyStack = SSL_dup_CA_list(originalStack);
50302+
ExpectNotNull(copyStack);
50303+
originalCount = sk_X509_NAME_num(originalStack);
50304+
copyCount = sk_X509_NAME_num(copyStack);
50305+
50306+
AssertIntEQ(originalCount, copyCount);
50307+
sk_X509_NAME_pop_free(originalStack, X509_NAME_free);
50308+
sk_X509_NAME_pop_free(copyStack, X509_NAME_free);
50309+
50310+
originalStack = NULL;
50311+
copyStack = NULL;
5028050312

50313+
res = EXPECT_RESULT();
50314+
#endif /* OPENSSL_ALL */
50315+
return res;
50316+
}
5028150317
/* include misc.c here regardless of NO_INLINE, because misc.c implementations
5028250318
* have default (hidden) visibility, and in the absence of visibility, it's
5028350319
* benign to mask out the library implementation.
@@ -60385,7 +60421,7 @@ TEST_CASE testCases[] = {
6038560421

6038660422
TEST_DECL(test_GENERAL_NAME_set0_othername),
6038760423
TEST_DECL(test_othername_and_SID_ext),
60388-
60424+
TEST_DECL(test_wolfSSL_dup_CA_list),
6038960425
/* OpenSSL sk_X509 API test */
6039060426
TEST_DECL(test_sk_X509),
6039160427
/* OpenSSL sk_X509_CRL API test */

0 commit comments

Comments
 (0)