[ Merge of http://go/wvgerrit/23360 ] Service Certificates are used in two places, provisioning and licensing. The service certificate code depended on a session_id to get and set the service certificate properties, but the session_id was not available in the provisioning path. This patch pulls out the property lookup by session_id dependency, and passes the CdmImpl's property_set into the provisioning code, so the service certificate can be read and written there. Bug: 62972441 Test: WV unit/integration tests. This introduces three test failures * WvCdmRequestLicenseTest.PrivacyModeWithServiceCertificateTest * Cdm/WvCdmStreamingLicenseRenewalTest.WithClientId/4 * Cdm/WvCdmOfflineLicenseReleaseTest.WithClientId/3 Change-Id: I6e9d4e23a9e7e81a63a994db8ec0b443893449a6
142 lines
5.6 KiB
C++
142 lines
5.6 KiB
C++
// Copyright 2013 Google Inc. All Rights Reserved.
|
|
//
|
|
// Mock implementation of OEMCrypto APIs
|
|
//
|
|
#ifndef OEMCRYPTO_USAGE_TABLE_MOCK_H_
|
|
#define OEMCRYPTO_USAGE_TABLE_MOCK_H_
|
|
|
|
#include <stdint.h>
|
|
#include <map>
|
|
#include <string>
|
|
#include <vector>
|
|
|
|
#include "OEMCryptoCENC.h"
|
|
#include "file_store.h"
|
|
#include "lock.h"
|
|
#include "openssl/sha.h"
|
|
#include "wv_cdm_constants.h"
|
|
|
|
namespace wvoec_mock {
|
|
|
|
class SessionContext;
|
|
class CryptoEngine;
|
|
class UsageTable;
|
|
class OldUsageTable;
|
|
class OldUsageTableEntry;
|
|
|
|
const size_t kMaxPSTLength = 255;
|
|
// This is the data we store offline.
|
|
struct StoredUsageEntry {
|
|
int64_t generation_number;
|
|
int64_t time_of_license_received;
|
|
int64_t time_of_first_decrypt;
|
|
int64_t time_of_last_decrypt;
|
|
enum OEMCrypto_Usage_Entry_Status status;
|
|
uint8_t mac_key_server[wvcdm::MAC_KEY_SIZE];
|
|
uint8_t mac_key_client[wvcdm::MAC_KEY_SIZE];
|
|
uint32_t index;
|
|
uint8_t pst[kMaxPSTLength+1]; // add 1 for padding.
|
|
uint8_t pst_length;
|
|
};
|
|
|
|
class UsageTableEntry {
|
|
public:
|
|
UsageTableEntry(UsageTable* table, uint32_t index, int64_t generation);
|
|
// owner_(owner), session_(session), loaded_(false) {}
|
|
~UsageTableEntry(); // Free memory, remove reference in header.
|
|
bool Inactive() { return data_.status >= kInactive; }
|
|
OEMCryptoResult SetPST(const uint8_t* pst, size_t pst_length);
|
|
bool VerifyPST(const uint8_t* pst, size_t pst_length);
|
|
bool VerifyMacKeys(const std::vector<uint8_t>& server,
|
|
const std::vector<uint8_t>& client);
|
|
bool SetMacKeys(const std::vector<uint8_t>& server,
|
|
const std::vector<uint8_t>& client);
|
|
// Returns false if the entry is inactive. Otherwise, returns true.
|
|
// If the status was unused, it is updated, and decrypt times are flaged
|
|
// for update.
|
|
bool CheckForUse();
|
|
void Deactivate(const std::vector<uint8_t>& pst);
|
|
OEMCryptoResult ReportUsage(const std::vector<uint8_t>& pst, uint8_t* buffer,
|
|
size_t* buffer_length);
|
|
void UpdateAndIncrement();
|
|
OEMCryptoResult SaveData(CryptoEngine* ce, SessionContext* session,
|
|
uint8_t* signed_buffer, size_t buffer_size);
|
|
OEMCryptoResult LoadData(CryptoEngine* ce, uint32_t index,
|
|
const std::vector<uint8_t>& buffer);
|
|
OEMCryptoResult CopyOldUsageEntry(const std::vector<uint8_t>& pst);
|
|
int64_t generation_number() { return data_.generation_number; }
|
|
void set_generation_number(int64_t value) { data_.generation_number = value; }
|
|
void set_index(int32_t index) { data_.index = index; }
|
|
uint32_t index() { return data_.index; }
|
|
static size_t SignedEntrySize();
|
|
const uint8_t* mac_key_server() { return data_.mac_key_server; }
|
|
const uint8_t* mac_key_client() { return data_.mac_key_client; }
|
|
|
|
private:
|
|
UsageTable* usage_table_; // Owner of this object.
|
|
bool recent_decrypt_;
|
|
bool forbid_report_;
|
|
StoredUsageEntry data_;
|
|
};
|
|
|
|
class UsageTable {
|
|
public:
|
|
UsageTable(CryptoEngine* ce, wvcdm::FileSystem* /* file_system */)
|
|
: ce_(ce),
|
|
/* TODO: unused: file_system_(file_system), */
|
|
header_loaded_(false),
|
|
old_table_(NULL){};
|
|
~UsageTable();
|
|
|
|
OEMCryptoResult CreateNewUsageEntry(SessionContext* session,
|
|
UsageTableEntry** entry,
|
|
uint32_t* usage_entry_number);
|
|
OEMCryptoResult LoadUsageEntry(SessionContext* session,
|
|
UsageTableEntry** entry, uint32_t index,
|
|
const std::vector<uint8_t>& buffer);
|
|
OEMCryptoResult UpdateUsageEntry(SessionContext* session,
|
|
UsageTableEntry* entry,
|
|
uint8_t* header_buffer,
|
|
size_t* header_buffer_length,
|
|
uint8_t* entry_buffer,
|
|
size_t* entry_buffer_length);
|
|
OEMCryptoResult MoveEntry(UsageTableEntry* entry, uint32_t new_index);
|
|
OEMCryptoResult CreateUsageTableHeader(uint8_t* header_buffer,
|
|
size_t* header_buffer_length);
|
|
OEMCryptoResult LoadUsageTableHeader(const std::vector<uint8_t>& buffer);
|
|
OEMCryptoResult ShrinkUsageTableHeader(uint32_t new_table_size,
|
|
uint8_t* header_buffer,
|
|
size_t* header_buffer_length);
|
|
void ReleaseEntry(uint32_t index) { sessions_[index] = 0; }
|
|
void IncrementGeneration();
|
|
static size_t SignedHeaderSize(size_t count);
|
|
OldUsageTableEntry* FindOldUsageEntry(const std::vector<uint8_t>& pst);
|
|
OEMCryptoResult DeleteOldUsageTable();
|
|
OEMCryptoResult CreateOldUsageEntry(uint64_t time_since_license_received,
|
|
uint64_t time_since_first_decrypt,
|
|
uint64_t time_since_last_decrypt,
|
|
OEMCrypto_Usage_Entry_Status status,
|
|
uint8_t *server_mac_key,
|
|
uint8_t *client_mac_key,
|
|
const uint8_t* pst,
|
|
size_t pst_length);
|
|
|
|
private:
|
|
OEMCryptoResult SaveUsageTableHeader(uint8_t* signed_buffer,
|
|
size_t buffer_size);
|
|
bool SaveGenerationNumber();
|
|
bool LoadGenerationNumber(bool or_make_new_one);
|
|
|
|
CryptoEngine* ce_;
|
|
/* TODO: unused: wvcdm::FileSystem* file_system_; */
|
|
bool header_loaded_;
|
|
int64_t master_generation_number_;
|
|
std::vector<int64_t> generation_numbers_;
|
|
std::vector<SessionContext*> sessions_;
|
|
OldUsageTable *old_table_;
|
|
};
|
|
|
|
} // namespace wvoec_mock
|
|
|
|
#endif // OEMCRYPTO_USAGE_TABLE_MOCK_H_
|