1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
|
package localca
import (
"context"
"crypto/tls"
"io"
"io/ioutil"
"os"
"path"
"testing"
"time"
"golang.org/x/crypto/acme/autocert"
)
func TestLocalCA(t *testing.T) {
dir, err := ioutil.TempDir("", "localca-test")
if err != nil {
t.Fatal(err)
}
defer os.RemoveAll(dir)
cache := autocert.DirCache(dir)
keyFile := path.Join(dir, "key.pem")
certFile := path.Join(dir, "cert.pem")
const suffix = "club"
m, err := New(keyFile, certFile, suffix, cache)
if err != nil {
t.Fatal(err)
}
t.Run("local", func(t *testing.T) {
_, err = m.GetCertificate(&tls.ClientHelloInfo{
ServerName: "foo.local.cetacean.club",
})
if err != nil {
t.Fatal(err)
}
})
t.Run("network", func(t *testing.T) {
ctx, cancel := context.WithCancel(context.Background())
defer cancel()
tc := &tls.Config{
GetCertificate: m.GetCertificate,
}
go func() {
lis, err := tls.Listen("tcp", ":9293", tc)
if err != nil {
t.Fatal(err)
}
defer lis.Close()
for {
select {
case <-ctx.Done():
return
default:
}
cli, err := lis.Accept()
if err != nil {
t.Fatal(err)
}
defer cli.Close()
go io.Copy(cli, cli)
}
}()
time.Sleep(130 * time.Millisecond)
cli, err := tls.Dial("tcp", "foo.local.cetacean.club:9293", &tls.Config{InsecureSkipVerify: true})
if err != nil {
t.Fatal(err)
}
defer cli.Close()
cli.Write([]byte("butts"))
})
}
|