2 Copyright (C) 2013-2015 Carl Hetherington <cth@carlh.net>
4 This program is free software; you can redistribute it and/or modify
5 it under the terms of the GNU General Public License as published by
6 the Free Software Foundation; either version 2 of the License, or
7 (at your option) any later version.
9 This program is distributed in the hope that it will be useful,
10 but WITHOUT ANY WARRANTY; without even the implied warranty of
11 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12 GNU General Public License for more details.
14 You should have received a copy of the GNU General Public License
15 along with this program; if not, write to the Free Software
16 Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
22 #include "certificate.h"
24 #include "certificate_chain.h"
26 #include "mono_picture_asset.h"
27 #include "picture_asset_writer.h"
28 #include "sound_asset_writer.h"
29 #include "sound_asset.h"
33 #include "subtitle_asset.h"
34 #include "reel_mono_picture_asset.h"
35 #include "reel_sound_asset.h"
36 #include "encrypted_kdm.h"
37 #include "decrypted_kdm.h"
39 #include <boost/test/unit_test.hpp>
40 #include <boost/shared_ptr.hpp>
43 using boost::shared_ptr;
45 /** Load a certificate chain from build/test/data/ *.pem and then build
46 * an encrypted DCP and a KDM using it.
48 BOOST_AUTO_TEST_CASE (encryption_test)
50 boost::filesystem::remove_all ("build/test/signer");
51 boost::filesystem::create_directory ("build/test/signer");
53 Kumu::cth_test = true;
55 dcp::MXFMetadata mxf_metadata;
56 mxf_metadata.company_name = "OpenDCP";
57 mxf_metadata.product_name = "OpenDCP";
58 mxf_metadata.product_version = "0.0.25";
60 dcp::XMLMetadata xml_metadata;
61 xml_metadata.issuer = "OpenDCP 0.0.25";
62 xml_metadata.creator = "OpenDCP 0.0.25";
63 xml_metadata.issue_date = "2012-07-17T04:45:18+00:00";
65 boost::filesystem::remove_all ("build/test/DCP/encryption_test");
66 boost::filesystem::create_directories ("build/test/DCP/encryption_test");
67 dcp::DCP d ("build/test/DCP/encryption_test");
69 /* Use test/ref/crypt so this test is repeatable */
70 shared_ptr<dcp::CertificateChain> signer (new dcp::CertificateChain ());
71 signer->add (dcp::Certificate (dcp::file_to_string ("test/ref/crypt/ca.self-signed.pem")));
72 signer->add (dcp::Certificate (dcp::file_to_string ("test/ref/crypt/intermediate.signed.pem")));
73 signer->add (dcp::Certificate (dcp::file_to_string ("test/ref/crypt/leaf.signed.pem")));
74 signer->set_key (dcp::file_to_string ("test/ref/crypt/leaf.key"));
76 shared_ptr<dcp::CPL> cpl (new dcp::CPL ("A Test DCP", dcp::FEATURE));
80 shared_ptr<dcp::MonoPictureAsset> mp (new dcp::MonoPictureAsset (dcp::Fraction (24, 1)));
81 mp->set_metadata (mxf_metadata);
84 shared_ptr<dcp::PictureAssetWriter> writer = mp->start_write ("build/test/DCP/encryption_test/video.mxf", dcp::SMPTE, false);
85 dcp::File j2c ("test/data/32x32_red_square.j2c");
86 for (int i = 0; i < 24; ++i) {
87 writer->write (j2c.data (), j2c.size ());
91 shared_ptr<dcp::SoundAsset> ms (new dcp::SoundAsset (dcp::Fraction (24, 1), 48000, 1));
92 ms->set_metadata (mxf_metadata);
94 shared_ptr<dcp::SoundAssetWriter> sound_writer = ms->start_write ("build/test/DCP/encryption_test/audio.mxf", dcp::SMPTE);
98 SNDFILE* sndfile = sf_open ("test/data/1s_24-bit_48k_silence.wav", SFM_READ, &info);
99 BOOST_CHECK (sndfile);
100 float buffer[4096*6];
102 channels[0] = buffer;
104 sf_count_t N = sf_readf_float (sndfile, buffer, 4096);
105 sound_writer->write (channels, N);
111 sound_writer->finalize ();
113 cpl->add (shared_ptr<dcp::Reel> (new dcp::Reel (
114 shared_ptr<dcp::ReelMonoPictureAsset> (new dcp::ReelMonoPictureAsset (mp, 0)),
115 shared_ptr<dcp::ReelSoundAsset> (new dcp::ReelSoundAsset (ms, 0)),
116 shared_ptr<dcp::ReelSubtitleAsset> ()
118 cpl->set_content_version_id ("urn:uri:81fb54df-e1bf-4647-8788-ea7ba154375b_2012-07-17T04:45:18+00:00");
119 cpl->set_content_version_label_text ("81fb54df-e1bf-4647-8788-ea7ba154375b_2012-07-17T04:45:18+00:00");
120 cpl->set_metadata (xml_metadata);
124 d.write_xml (dcp::SMPTE, xml_metadata, signer);
126 dcp::DecryptedKDM kdm (
129 dcp::LocalTime ("2013-01-01T00:00:00+00:00"),
130 dcp::LocalTime ("2017-01-08T00:00:00+00:00"),
133 "2012-07-17T04:45:18+00:00"
136 kdm.encrypt (signer, signer->leaf(), vector<dcp::Certificate>(), dcp::MODIFIED_TRANSITIONAL_1).as_xml ("build/test/encryption_test.kdm.xml");
139 "xmllint --path schema --nonet --noout --schema schema/SMPTE-430-1-2006-Amd-1-2009-KDM.xsd build/test/encryption_test.kdm.xml "
140 "> build/test/xmllint.log 2>&1 < /dev/null"
144 BOOST_CHECK_EQUAL (WEXITSTATUS (r), 0);
146 BOOST_CHECK_EQUAL (r, 0);
149 r = system ("xmlsec1 verify "
150 "--pubkey-cert-pem test/ref/crypt/leaf.signed.pem "
151 "--trusted-pem test/ref/crypt/intermediate.signed.pem "
152 "--trusted-pem test/ref/crypt/ca.self-signed.pem "
153 "--id-attr:Id http://www.smpte-ra.org/schemas/430-3/2006/ETM:AuthenticatedPublic "
154 "--id-attr:Id http://www.smpte-ra.org/schemas/430-3/2006/ETM:AuthenticatedPrivate "
155 "build/test/encryption_test.kdm.xml > build/test/xmlsec1.log 2>&1 < /dev/null");
158 BOOST_CHECK_EQUAL (WEXITSTATUS (r), 0);
160 BOOST_CHECK_EQUAL (r, 0);