wallet-core/packages/taler-harness/src/integrationtests/test-libeufin-keyrotation.ts

82 lines
2.3 KiB
TypeScript
Raw Normal View History

2021-07-27 10:08:00 +02:00
/*
This file is part of GNU Taler
(C) 2020 Taler Systems S.A.
GNU Taler is free software; you can redistribute it and/or modify it under the
terms of the GNU General Public License as published by the Free Software
Foundation; either version 3, or (at your option) any later version.
GNU Taler is distributed in the hope that it will be useful, but WITHOUT ANY
WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR
A PARTICULAR PURPOSE. See the GNU General Public License for more details.
You should have received a copy of the GNU General Public License along with
GNU Taler; see the file COPYING. If not, see <http://www.gnu.org/licenses/>
*/
/**
* Imports.
*/
2021-10-20 13:06:31 +02:00
import { GlobalTestState } from "../harness/harness.js";
2021-07-27 10:08:00 +02:00
import {
SandboxUserBundle,
NexusUserBundle,
launchLibeufinServices,
LibeufinSandboxApi,
LibeufinNexusApi,
} from "../harness/libeufin.js";
2021-07-27 10:08:00 +02:00
/**
* Run basic test with LibEuFin.
*/
export async function runLibeufinKeyrotationTest(t: GlobalTestState) {
/**
* User saltetd "01"
*/
const user01nexus = new NexusUserBundle(
"01",
"http://localhost:5010/ebicsweb",
);
const user01sandbox = new SandboxUserBundle("01");
/**
* Launch Sandbox and Nexus.
*/
const libeufinServices = await launchLibeufinServices(
2023-01-19 20:16:42 +01:00
t,
[user01nexus],
[user01sandbox],
2021-07-27 10:08:00 +02:00
);
await LibeufinNexusApi.fetchTransactions(
2021-07-27 10:08:00 +02:00
libeufinServices.libeufinNexus,
user01nexus.localAccountName,
);
/* Rotate the Sandbox keys, and fetch the transactions again */
await LibeufinSandboxApi.rotateKeys(
libeufinServices.libeufinSandbox,
user01sandbox.ebicsBankAccount.subscriber.hostID,
);
2021-10-14 23:23:35 +02:00
try {
await LibeufinNexusApi.fetchTransactions(
libeufinServices.libeufinNexus,
user01nexus.localAccountName,
);
} catch (e: any) {
/**
* Asserting that Nexus responded with a 500 Internal server
* error, because the bank signed the last response with a new
* key pair that was never downloaded by Nexus.
*
* NOTE: the bank accepted the request addressed to the old
* public key. Should it in this case reject the request even
* before trying to verify it?
*/
t.assertTrue(e.response.status == 500);
t.assertTrue(e.response.data.code == 9000);
}
2021-07-27 10:08:00 +02:00
}
runLibeufinKeyrotationTest.suites = ["libeufin"];