test/cmp_{client,msg}_test.c: minor code cleanup
[openssl.git] / test / cmp_msg_test.c
1 /*
2  * Copyright 2007-2020 The OpenSSL Project Authors. All Rights Reserved.
3  * Copyright Nokia 2007-2019
4  * Copyright Siemens AG 2015-2019
5  *
6  * Licensed under the Apache License 2.0 (the "License").  You may not use
7  * this file except in compliance with the License.  You can obtain a copy
8  * in the file LICENSE in the source distribution or at
9  * https://www.openssl.org/source/license.html
10  */
11
12 #include "cmp_testlib.h"
13
14 DEFINE_STACK_OF(OSSL_CMP_CERTRESPONSE)
15
16 static const char *newkey_f;
17 static const char *server_cert_f;
18 static const char *pkcs10_f;
19
20 typedef struct test_fixture {
21     const char *test_case_name;
22     OSSL_CMP_CTX *cmp_ctx;
23     /* for msg create tests */
24     int bodytype;
25     int err_code;
26     /* for certConf */
27     int fail_info;
28     /* for protection tests */
29     OSSL_CMP_MSG *msg;
30     int expected;
31     /* for error and response messages */
32     OSSL_CMP_PKISI *si;
33 } CMP_MSG_TEST_FIXTURE;
34
35 static OPENSSL_CTX *libctx = NULL;
36 static OSSL_PROVIDER *default_null_provider = NULL, *provider = NULL;
37
38 /* TODO(3.0) Clean this up - See issue #12680 */
39 static X509 *X509_dup_with_libctx(const X509 *cert)
40 {
41     X509 *dup = X509_dup(cert);
42
43     if (dup != NULL)
44         x509_set0_libctx(dup, libctx, NULL);
45     return dup;
46 }
47
48 static unsigned char ref[CMP_TEST_REFVALUE_LENGTH];
49
50 static void tear_down(CMP_MSG_TEST_FIXTURE *fixture)
51 {
52     OSSL_CMP_CTX_free(fixture->cmp_ctx);
53     OSSL_CMP_MSG_free(fixture->msg);
54     OSSL_CMP_PKISI_free(fixture->si);
55     OPENSSL_free(fixture);
56 }
57
58 #define SET_OPT_UNPROTECTED_SEND(ctx, val) \
59     OSSL_CMP_CTX_set_option((ctx), OSSL_CMP_OPT_UNPROTECTED_SEND, (val))
60 static CMP_MSG_TEST_FIXTURE *set_up(const char *const test_case_name)
61 {
62     CMP_MSG_TEST_FIXTURE *fixture;
63
64     if (!TEST_ptr(fixture = OPENSSL_zalloc(sizeof(*fixture))))
65         return NULL;
66     fixture->test_case_name = test_case_name;
67
68     if (!TEST_ptr(fixture->cmp_ctx = OSSL_CMP_CTX_new(libctx, NULL))
69             || !TEST_true(SET_OPT_UNPROTECTED_SEND(fixture->cmp_ctx, 1))
70             || !TEST_true(OSSL_CMP_CTX_set1_referenceValue(fixture->cmp_ctx,
71                                                            ref, sizeof(ref)))) {
72         tear_down(fixture);
73         return NULL;
74     }
75     return fixture;
76 }
77
78 static EVP_PKEY *newkey = NULL;
79 static X509 *cert = NULL;
80
81 #define EXECUTE_MSG_CREATION_TEST(expr) \
82     do { \
83         OSSL_CMP_MSG *msg = NULL; \
84         int good = fixture->expected != 0 ? \
85             TEST_ptr(msg = (expr)) && TEST_true(valid_asn1_encoding(msg)) : \
86             TEST_ptr_null(msg = (expr)); \
87  \
88         OSSL_CMP_MSG_free(msg); \
89         ERR_print_errors_fp(stderr); \
90         return good; \
91     } while (0)
92
93 /*-
94  * The following tests call a cmp message creation function.
95  * if fixture->expected != 0:
96  *         returns 1 if the message is created and syntactically correct.
97  * if fixture->expected == 0
98  *         returns 1 if message creation returns NULL
99  */
100 static int execute_certreq_create_test(CMP_MSG_TEST_FIXTURE *fixture)
101 {
102     EXECUTE_MSG_CREATION_TEST(ossl_cmp_certreq_new(fixture->cmp_ctx,
103                                                    fixture->bodytype,
104                                                    NULL));
105 }
106
107 static int execute_errormsg_create_test(CMP_MSG_TEST_FIXTURE *fixture)
108 {
109     EXECUTE_MSG_CREATION_TEST(ossl_cmp_error_new(fixture->cmp_ctx, fixture->si,
110                                                  fixture->err_code,
111                                                  "details", 0));
112 }
113
114 static int execute_rr_create_test(CMP_MSG_TEST_FIXTURE *fixture)
115 {
116     EXECUTE_MSG_CREATION_TEST(ossl_cmp_rr_new(fixture->cmp_ctx));
117 }
118
119 static int execute_certconf_create_test(CMP_MSG_TEST_FIXTURE *fixture)
120 {
121     EXECUTE_MSG_CREATION_TEST(ossl_cmp_certConf_new
122                               (fixture->cmp_ctx, fixture->fail_info, NULL));
123 }
124
125 static int execute_genm_create_test(CMP_MSG_TEST_FIXTURE *fixture)
126 {
127     EXECUTE_MSG_CREATION_TEST(ossl_cmp_genm_new(fixture->cmp_ctx));
128 }
129
130 static int execute_pollreq_create_test(CMP_MSG_TEST_FIXTURE *fixture)
131 {
132     EXECUTE_MSG_CREATION_TEST(ossl_cmp_pollReq_new(fixture->cmp_ctx, 4711));
133 }
134
135 static int execute_pkimessage_create_test(CMP_MSG_TEST_FIXTURE *fixture)
136 {
137     EXECUTE_MSG_CREATION_TEST(ossl_cmp_msg_create
138                               (fixture->cmp_ctx, fixture->bodytype));
139 }
140
141 static int set1_newPkey(OSSL_CMP_CTX *ctx, EVP_PKEY *pkey)
142 {
143     if (!EVP_PKEY_up_ref(pkey))
144         return 0;
145
146     if (!OSSL_CMP_CTX_set0_newPkey(ctx, 1, pkey)) {
147         EVP_PKEY_free(pkey);
148         return 0;
149     }
150     return 1;
151 }
152
153 static int test_cmp_create_ir_protection_set(void)
154 {
155     OSSL_CMP_CTX *ctx;
156     unsigned char secret[16];
157
158     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
159
160     ctx = fixture->cmp_ctx;
161     fixture->bodytype = OSSL_CMP_PKIBODY_IR;
162     fixture->err_code = -1;
163     fixture->expected = 1;
164     if (!TEST_int_eq(1, RAND_bytes_ex(libctx, secret, sizeof(secret)))
165             || !TEST_true(SET_OPT_UNPROTECTED_SEND(ctx, 0))
166             || !TEST_true(set1_newPkey(ctx, newkey))
167             || !TEST_true(OSSL_CMP_CTX_set1_secretValue(ctx, secret,
168                                                         sizeof(secret)))) {
169         tear_down(fixture);
170         fixture = NULL;
171     }
172     EXECUTE_TEST(execute_certreq_create_test, tear_down);
173     return result;
174 }
175
176 static int test_cmp_create_ir_protection_fails(void)
177 {
178     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
179     fixture->bodytype = OSSL_CMP_PKIBODY_IR;
180     fixture->err_code = -1;
181     fixture->expected = 0;
182     if (!TEST_true(OSSL_CMP_CTX_set1_pkey(fixture->cmp_ctx, newkey))
183             || !TEST_true(SET_OPT_UNPROTECTED_SEND(fixture->cmp_ctx, 0))
184             /* newkey used by default for signing does not match cert: */
185             || !TEST_true(OSSL_CMP_CTX_set1_cert(fixture->cmp_ctx, cert))) {
186         tear_down(fixture);
187         fixture = NULL;
188     }
189     EXECUTE_TEST(execute_certreq_create_test, tear_down);
190     return result;
191 }
192
193 static int test_cmp_create_cr_without_key(void)
194 {
195     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
196     fixture->bodytype = OSSL_CMP_PKIBODY_CR;
197     fixture->err_code = -1;
198     fixture->expected = 0;
199     EXECUTE_TEST(execute_certreq_create_test, tear_down);
200     return result;
201 }
202
203 static int test_cmp_create_cr(void)
204 {
205     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
206     fixture->bodytype = OSSL_CMP_PKIBODY_CR;
207     fixture->err_code = -1;
208     fixture->expected = 1;
209     if (!TEST_true(set1_newPkey(fixture->cmp_ctx, newkey))) {
210         tear_down(fixture);
211         fixture = NULL;
212     }
213     EXECUTE_TEST(execute_certreq_create_test, tear_down);
214     return result;
215 }
216
217 static int test_cmp_create_certreq_with_invalid_bodytype(void)
218 {
219     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
220     fixture->bodytype = OSSL_CMP_PKIBODY_RR;
221     fixture->err_code = -1;
222     fixture->expected = 0;
223     if (!TEST_true(set1_newPkey(fixture->cmp_ctx, newkey))) {
224         tear_down(fixture);
225         fixture = NULL;
226     }
227     EXECUTE_TEST(execute_certreq_create_test, tear_down);
228     return result;
229 }
230
231 static int test_cmp_create_p10cr(void)
232 {
233     OSSL_CMP_CTX *ctx;
234     X509_REQ *p10cr = NULL;
235
236     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
237     ctx = fixture->cmp_ctx;
238     fixture->bodytype = OSSL_CMP_PKIBODY_P10CR;
239     fixture->err_code = CMP_R_ERROR_CREATING_CERTREQ;
240     fixture->expected = 1;
241     if (!TEST_ptr(p10cr = load_csr(pkcs10_f))
242             || !TEST_true(set1_newPkey(ctx, newkey))
243             || !TEST_true(OSSL_CMP_CTX_set1_p10CSR(ctx, p10cr))) {
244         tear_down(fixture);
245         fixture = NULL;
246     }
247     X509_REQ_free(p10cr);
248     EXECUTE_TEST(execute_certreq_create_test, tear_down);
249     return result;
250 }
251
252 static int test_cmp_create_p10cr_null(void)
253 {
254     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
255     fixture->bodytype = OSSL_CMP_PKIBODY_P10CR;
256     fixture->err_code = CMP_R_ERROR_CREATING_CERTREQ;
257     fixture->expected = 0;
258     if (!TEST_true(set1_newPkey(fixture->cmp_ctx, newkey))) {
259         tear_down(fixture);
260         fixture = NULL;
261     }
262     EXECUTE_TEST(execute_certreq_create_test, tear_down);
263     return result;
264 }
265
266 static int test_cmp_create_kur(void)
267 {
268     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
269     fixture->bodytype = OSSL_CMP_PKIBODY_KUR;
270     fixture->err_code = -1;
271     fixture->expected = 1;
272     if (!TEST_true(set1_newPkey(fixture->cmp_ctx, newkey))
273             || !TEST_true(OSSL_CMP_CTX_set1_oldCert(fixture->cmp_ctx, cert))) {
274         tear_down(fixture);
275         fixture = NULL;
276     }
277     EXECUTE_TEST(execute_certreq_create_test, tear_down);
278     return result;
279 }
280
281 static int test_cmp_create_kur_without_oldcert(void)
282 {
283     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
284     fixture->bodytype = OSSL_CMP_PKIBODY_KUR;
285     fixture->err_code = -1;
286     fixture->expected = 0;
287     if (!TEST_true(set1_newPkey(fixture->cmp_ctx, newkey))) {
288         tear_down(fixture);
289         fixture = NULL;
290     }
291     EXECUTE_TEST(execute_certreq_create_test, tear_down);
292     return result;
293 }
294
295 static int test_cmp_create_certconf(void)
296 {
297     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
298     fixture->fail_info = 0;
299     fixture->expected = 1;
300     if (!TEST_true(ossl_cmp_ctx_set0_newCert(fixture->cmp_ctx,
301                                              X509_dup_with_libctx(cert)))) {
302         tear_down(fixture);
303         fixture = NULL;
304     }
305     EXECUTE_TEST(execute_certconf_create_test, tear_down);
306     return result;
307 }
308
309 static int test_cmp_create_certconf_badAlg(void)
310 {
311     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
312     fixture->fail_info = 1 << OSSL_CMP_PKIFAILUREINFO_badAlg;
313     fixture->expected = 1;
314     if (!TEST_true(ossl_cmp_ctx_set0_newCert(fixture->cmp_ctx,
315                                              X509_dup_with_libctx(cert)))) {
316         tear_down(fixture);
317         fixture = NULL;
318     }
319     EXECUTE_TEST(execute_certconf_create_test, tear_down);
320     return result;
321 }
322
323 static int test_cmp_create_certconf_fail_info_max(void)
324 {
325     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
326     fixture->fail_info = 1 << OSSL_CMP_PKIFAILUREINFO_MAX;
327     fixture->expected = 1;
328     if (!TEST_true(ossl_cmp_ctx_set0_newCert(fixture->cmp_ctx,
329                                              X509_dup_with_libctx(cert)))) {
330         tear_down(fixture);
331         fixture = NULL;
332     }
333     EXECUTE_TEST(execute_certconf_create_test, tear_down);
334     return result;
335 }
336
337 static int test_cmp_create_error_msg(void)
338 {
339     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
340     fixture->si = OSSL_CMP_STATUSINFO_new(OSSL_CMP_PKISTATUS_rejection,
341                                           OSSL_CMP_PKIFAILUREINFO_systemFailure,
342                                           NULL);
343     fixture->err_code = -1;
344     fixture->expected = 1; /* expected: message creation is successful */
345     if (!TEST_true(set1_newPkey(fixture->cmp_ctx, newkey))) {
346         tear_down(fixture);
347         fixture = NULL;
348     }
349     EXECUTE_TEST(execute_errormsg_create_test, tear_down);
350     return result;
351 }
352
353
354 static int test_cmp_create_pollreq(void)
355 {
356     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
357     fixture->expected = 1;
358     EXECUTE_TEST(execute_pollreq_create_test, tear_down);
359     return result;
360 }
361
362 static int test_cmp_create_rr(void)
363 {
364     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
365     fixture->expected = 1;
366     if (!TEST_true(OSSL_CMP_CTX_set1_oldCert(fixture->cmp_ctx, cert))) {
367         tear_down(fixture);
368         fixture = NULL;
369     }
370     EXECUTE_TEST(execute_rr_create_test, tear_down);
371     return result;
372 }
373
374 static int test_cmp_create_genm(void)
375 {
376     OSSL_CMP_ITAV *iv = NULL;
377
378     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
379     fixture->expected = 1;
380     iv = OSSL_CMP_ITAV_create(OBJ_nid2obj(NID_id_it_implicitConfirm), NULL);
381     if (!TEST_ptr(iv)
382             || !TEST_true(OSSL_CMP_CTX_push0_genm_ITAV(fixture->cmp_ctx, iv))) {
383         OSSL_CMP_ITAV_free(iv);
384         tear_down(fixture);
385         fixture = NULL;
386     }
387
388     EXECUTE_TEST(execute_genm_create_test, tear_down);
389     return result;
390 }
391
392 static int execute_certrep_create(CMP_MSG_TEST_FIXTURE *fixture)
393 {
394     OSSL_CMP_CTX *ctx = fixture->cmp_ctx;
395     OSSL_CMP_CERTREPMESSAGE *crepmsg = OSSL_CMP_CERTREPMESSAGE_new();
396     OSSL_CMP_CERTRESPONSE *read_cresp, *cresp = OSSL_CMP_CERTRESPONSE_new();
397     EVP_PKEY *privkey;
398     X509 *certfromresp = NULL;
399     int res = 0;
400
401     if (crepmsg == NULL || cresp == NULL)
402         goto err;
403     if (!ASN1_INTEGER_set(cresp->certReqId, 99))
404         goto err;
405     if ((cresp->certifiedKeyPair = OSSL_CMP_CERTIFIEDKEYPAIR_new()) == NULL)
406         goto err;
407     cresp->certifiedKeyPair->certOrEncCert->type =
408         OSSL_CMP_CERTORENCCERT_CERTIFICATE;
409     if ((cresp->certifiedKeyPair->certOrEncCert->value.certificate =
410          X509_dup_with_libctx(cert)) == NULL
411             || !sk_OSSL_CMP_CERTRESPONSE_push(crepmsg->response, cresp))
412         goto err;
413     cresp = NULL;
414     read_cresp = ossl_cmp_certrepmessage_get0_certresponse(crepmsg, 99);
415     if (!TEST_ptr(read_cresp))
416         goto err;
417     if (!TEST_ptr_null(ossl_cmp_certrepmessage_get0_certresponse(crepmsg, 88)))
418         goto err;
419     privkey = OSSL_CMP_CTX_get0_newPkey(ctx, 1); /* may be NULL */
420     certfromresp = ossl_cmp_certresponse_get1_cert(read_cresp, ctx, privkey);
421     if (certfromresp == NULL || !TEST_int_eq(X509_cmp(cert, certfromresp), 0))
422         goto err;
423
424     res = 1;
425  err:
426     X509_free(certfromresp);
427     OSSL_CMP_CERTRESPONSE_free(cresp);
428     OSSL_CMP_CERTREPMESSAGE_free(crepmsg);
429     return res;
430 }
431
432 static int test_cmp_create_certrep(void)
433 {
434     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
435     EXECUTE_TEST(execute_certrep_create, tear_down);
436     return result;
437 }
438
439
440 static int execute_rp_create(CMP_MSG_TEST_FIXTURE *fixture)
441 {
442     OSSL_CMP_PKISI *si = OSSL_CMP_STATUSINFO_new(33, 44, "a text");
443     X509_NAME *issuer = X509_NAME_new();
444     ASN1_INTEGER *serial = ASN1_INTEGER_new();
445     OSSL_CRMF_CERTID *cid = NULL;
446     OSSL_CMP_MSG *rpmsg = NULL;
447     int res = 0;
448
449     if (si == NULL || issuer == NULL || serial == NULL)
450         goto err;
451
452     if (!X509_NAME_add_entry_by_txt(issuer, "CN", MBSTRING_ASC,
453                                     (unsigned char *)"The Issuer", -1, -1, 0)
454             || !ASN1_INTEGER_set(serial, 99)
455             || (cid = OSSL_CRMF_CERTID_gen(issuer, serial)) == NULL
456             || (rpmsg = ossl_cmp_rp_new(fixture->cmp_ctx, si, cid, 1)) == NULL)
457         goto err;
458
459     if (!TEST_ptr(ossl_cmp_revrepcontent_get_CertId(rpmsg->body->value.rp, 0)))
460         goto err;
461
462     if (!TEST_ptr(ossl_cmp_revrepcontent_get_pkisi(rpmsg->body->value.rp, 0)))
463         goto err;
464
465     res = 1;
466  err:
467     ASN1_INTEGER_free(serial);
468     X509_NAME_free(issuer);
469     OSSL_CRMF_CERTID_free(cid);
470     OSSL_CMP_PKISI_free(si);
471     OSSL_CMP_MSG_free(rpmsg);
472     return res;
473 }
474
475 static int test_cmp_create_rp(void)
476 {
477     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
478     EXECUTE_TEST(execute_rp_create, tear_down);
479     return result;
480 }
481
482 static int execute_pollrep_create(CMP_MSG_TEST_FIXTURE *fixture)
483 {
484     OSSL_CMP_MSG *pollrep;
485     int res = 0;
486
487     pollrep = ossl_cmp_pollRep_new(fixture->cmp_ctx, 77, 2000);
488     if (!TEST_ptr(pollrep))
489         return 0;
490     if (!TEST_ptr(ossl_cmp_pollrepcontent_get0_pollrep(pollrep->body->
491                                                        value.pollRep, 77)))
492         goto err;
493     if (!TEST_ptr_null(ossl_cmp_pollrepcontent_get0_pollrep(pollrep->body->
494                                                             value.pollRep, 88)))
495         goto err;
496
497     res = 1;
498  err:
499     OSSL_CMP_MSG_free(pollrep);
500     return res;
501 }
502
503 static int test_cmp_create_pollrep(void)
504 {
505     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
506     EXECUTE_TEST(execute_pollrep_create, tear_down);
507     return result;
508 }
509
510 static int test_cmp_pkimessage_create(int bodytype)
511 {
512     X509_REQ *p10cr = NULL;
513
514     SETUP_TEST_FIXTURE(CMP_MSG_TEST_FIXTURE, set_up);
515
516     switch (fixture->bodytype = bodytype) {
517     case OSSL_CMP_PKIBODY_P10CR:
518         fixture->expected = 1;
519         if (!TEST_true(OSSL_CMP_CTX_set1_p10CSR(fixture->cmp_ctx,
520                                                 p10cr = load_csr(pkcs10_f)))) {
521             tear_down(fixture);
522             fixture = NULL;
523         }
524         X509_REQ_free(p10cr);
525         break;
526     case OSSL_CMP_PKIBODY_IR:
527     case OSSL_CMP_PKIBODY_IP:
528     case OSSL_CMP_PKIBODY_CR:
529     case OSSL_CMP_PKIBODY_CP:
530     case OSSL_CMP_PKIBODY_KUR:
531     case OSSL_CMP_PKIBODY_KUP:
532     case OSSL_CMP_PKIBODY_RR:
533     case OSSL_CMP_PKIBODY_RP:
534     case OSSL_CMP_PKIBODY_PKICONF:
535     case OSSL_CMP_PKIBODY_GENM:
536     case OSSL_CMP_PKIBODY_GENP:
537     case OSSL_CMP_PKIBODY_ERROR:
538     case OSSL_CMP_PKIBODY_CERTCONF:
539     case OSSL_CMP_PKIBODY_POLLREQ:
540     case OSSL_CMP_PKIBODY_POLLREP:
541         fixture->expected = 1;
542         break;
543     default:
544         fixture->expected = 0;
545         break;
546     }
547
548     EXECUTE_TEST(execute_pkimessage_create_test, tear_down);
549     return result;
550 }
551
552 void cleanup_tests(void)
553 {
554     EVP_PKEY_free(newkey);
555     X509_free(cert);
556     OPENSSL_CTX_free(libctx);
557 }
558
559 #define USAGE "new.key server.crt pkcs10.der module_name [module_conf_file]\n"
560 OPT_TEST_DECLARE_USAGE(USAGE)
561
562 int setup_tests(void)
563 {
564     if (!test_skip_common_options()) {
565         TEST_error("Error parsing test options\n");
566         return 0;
567     }
568
569     if (!TEST_ptr(newkey_f = test_get_argument(0))
570             || !TEST_ptr(server_cert_f = test_get_argument(1))
571             || !TEST_ptr(pkcs10_f = test_get_argument(2))) {
572         TEST_error("usage: cmp_msg_test %s", USAGE);
573         return 0;
574     }
575
576     if (!test_get_libctx(&libctx, &default_null_provider, &provider, 3, USAGE))
577         return 0;
578
579     if (!TEST_ptr(newkey = load_pem_key(newkey_f, libctx))
580             || !TEST_ptr(cert = load_pem_cert(server_cert_f, libctx))
581             || !TEST_int_eq(1, RAND_bytes_ex(libctx, ref, sizeof(ref)))) {
582         cleanup_tests();
583         return 0;
584     }
585
586     /* Message creation tests */
587     ADD_TEST(test_cmp_create_certreq_with_invalid_bodytype);
588     ADD_TEST(test_cmp_create_ir_protection_fails);
589     ADD_TEST(test_cmp_create_ir_protection_set);
590     ADD_TEST(test_cmp_create_error_msg);
591     ADD_TEST(test_cmp_create_certconf);
592     ADD_TEST(test_cmp_create_certconf_badAlg);
593     ADD_TEST(test_cmp_create_certconf_fail_info_max);
594     ADD_TEST(test_cmp_create_kur);
595     ADD_TEST(test_cmp_create_kur_without_oldcert);
596     ADD_TEST(test_cmp_create_cr);
597     ADD_TEST(test_cmp_create_cr_without_key);
598     ADD_TEST(test_cmp_create_p10cr);
599     ADD_TEST(test_cmp_create_p10cr_null);
600     ADD_TEST(test_cmp_create_pollreq);
601     ADD_TEST(test_cmp_create_rr);
602     ADD_TEST(test_cmp_create_rp);
603     ADD_TEST(test_cmp_create_genm);
604     ADD_TEST(test_cmp_create_certrep);
605     ADD_TEST(test_cmp_create_pollrep);
606     ADD_ALL_TESTS_NOSUBTEST(test_cmp_pkimessage_create,
607                             OSSL_CMP_PKIBODY_POLLREP + 1);
608     return 1;
609 }