xf.li | 6c8fc1e | 2023-08-12 00:11:09 -0700 | [diff] [blame^] | 1 | <testcase> |
| 2 | <info> |
| 3 | <keywords> |
| 4 | HTTP |
| 5 | HTTP POST |
| 6 | HTTP Digest auth |
| 7 | </keywords> |
| 8 | </info> |
| 9 | |
| 10 | # Server-side |
| 11 | <reply> |
| 12 | <data> |
| 13 | HTTP/1.1 401 authentication please swsbounce
|
| 14 | Server: Microsoft-IIS/6.0
|
| 15 | WWW-Authenticate: Digest realm="testrealm", nonce="1053604144", algorithm="SHA-512-256"
|
| 16 | Content-Type: text/html; charset=iso-8859-1
|
| 17 | Content-Length: 0
|
| 18 |
|
| 19 | </data> |
| 20 | <data1000> |
| 21 | HTTP/1.1 200 A OK
|
| 22 | Server: Microsoft-IIS/6.0
|
| 23 | Content-Type: text/html; charset=iso-8859-1
|
| 24 | Content-Length: 3
|
| 25 |
|
| 26 | ok |
| 27 | </data1000> |
| 28 | |
| 29 | <datacheck> |
| 30 | HTTP/1.1 401 authentication please swsbounce
|
| 31 | Server: Microsoft-IIS/6.0
|
| 32 | WWW-Authenticate: Digest realm="testrealm", nonce="1053604144", algorithm="SHA-512-256"
|
| 33 | Content-Type: text/html; charset=iso-8859-1
|
| 34 | Content-Length: 0
|
| 35 |
|
| 36 | HTTP/1.1 200 A OK
|
| 37 | Server: Microsoft-IIS/6.0
|
| 38 | Content-Type: text/html; charset=iso-8859-1
|
| 39 | Content-Length: 3
|
| 40 |
|
| 41 | ok |
| 42 | </datacheck> |
| 43 | |
| 44 | </reply> |
| 45 | |
| 46 | # Client-side |
| 47 | <client> |
| 48 | # |
| 49 | <server> |
| 50 | http |
| 51 | </server> |
| 52 | <features> |
| 53 | !SSPI |
| 54 | crypto |
| 55 | </features> |
| 56 | <name> |
| 57 | HTTP POST --digest with SHA-512-256, userhash=false and user-specified Content-Length header |
| 58 | </name> |
| 59 | # This test is to ensure 'Content-Length: 0' is sent while negotiating auth |
| 60 | # even when there is a user-specified Content-Length header. |
| 61 | # https://github.com/curl/curl/pull/1242 |
| 62 | <command> |
| 63 | -H "Content-Length: 11" -u auser:apasswd --digest -d "junkelijunk" http://%HOSTIP:%HTTPPORT/%TESTNUMBER |
| 64 | </command> |
| 65 | </client> |
| 66 | |
| 67 | # Verify data after the test has been "shot" |
| 68 | <verify> |
| 69 | <protocol nonewline="yes"> |
| 70 | POST /%TESTNUMBER HTTP/1.1
|
| 71 | Host: %HOSTIP:%HTTPPORT
|
| 72 | User-Agent: curl/%VERSION
|
| 73 | Accept: */*
|
| 74 | Content-Length: 0
|
| 75 | Content-Type: application/x-www-form-urlencoded
|
| 76 |
|
| 77 | POST /%TESTNUMBER HTTP/1.1
|
| 78 | Host: %HOSTIP:%HTTPPORT
|
| 79 | Authorization: Digest username="auser", realm="testrealm", nonce="1053604144", uri="/%TESTNUMBER", response="4bc9c97a72f1856bcec9b0e1518c6b7ee28773f91357d56840bdc30bd89ca68f", algorithm=SHA-512-256
|
| 80 | User-Agent: curl/%VERSION
|
| 81 | Accept: */*
|
| 82 | Content-Length: 11
|
| 83 | Content-Type: application/x-www-form-urlencoded
|
| 84 |
|
| 85 | junkelijunk |
| 86 | </protocol> |
| 87 | </verify> |
| 88 | </testcase> |