Thu, 22 Jan 2015 13:21:57 +0100
Incorporate requested changes from Mozilla in review:
https://bugzilla.mozilla.org/show_bug.cgi?id=1123480#c6
michael@0 | 1 | /* Any copyright is dedicated to the Public Domain. |
michael@0 | 2 | http://creativecommons.org/publicdomain/zero/1.0/ */ |
michael@0 | 3 | |
michael@0 | 4 | function getPrincipalFromDomain(aDomain) { |
michael@0 | 5 | return Cc["@mozilla.org/scriptsecuritymanager;1"] |
michael@0 | 6 | .getService(Ci.nsIScriptSecurityManager) |
michael@0 | 7 | .getNoAppCodebasePrincipal(NetUtil.newURI("http://" + aDomain)); |
michael@0 | 8 | } |
michael@0 | 9 | |
michael@0 | 10 | function run_test() { |
michael@0 | 11 | let profile = do_get_profile(); |
michael@0 | 12 | let pm = Services.perms; |
michael@0 | 13 | let perm = 'test-idn'; |
michael@0 | 14 | |
michael@0 | 15 | // We create three principal linked to IDN. |
michael@0 | 16 | // One with just a domain, one with a subdomain and one with the TLD |
michael@0 | 17 | // containing a UTF-8 character. |
michael@0 | 18 | let mainDomainPrincipal = getPrincipalFromDomain("fôû.com"); |
michael@0 | 19 | let subDomainPrincipal = getPrincipalFromDomain("fôô.bàr.com"); |
michael@0 | 20 | let tldPrincipal = getPrincipalFromDomain("fôû.bàr.côm"); |
michael@0 | 21 | |
michael@0 | 22 | // We add those to the permission manager. |
michael@0 | 23 | pm.addFromPrincipal(mainDomainPrincipal, perm, pm.ALLOW_ACTION, 0, 0); |
michael@0 | 24 | pm.addFromPrincipal(subDomainPrincipal, perm, pm.ALLOW_ACTION, 0, 0); |
michael@0 | 25 | pm.addFromPrincipal(tldPrincipal, perm, pm.ALLOW_ACTION, 0, 0); |
michael@0 | 26 | |
michael@0 | 27 | // They should obviously be there now.. |
michael@0 | 28 | do_check_eq(pm.testPermissionFromPrincipal(mainDomainPrincipal, perm), pm.ALLOW_ACTION); |
michael@0 | 29 | do_check_eq(pm.testPermissionFromPrincipal(subDomainPrincipal, perm), pm.ALLOW_ACTION); |
michael@0 | 30 | do_check_eq(pm.testPermissionFromPrincipal(tldPrincipal, perm), pm.ALLOW_ACTION); |
michael@0 | 31 | |
michael@0 | 32 | // We do the same thing with the puny-encoded versions of the IDN. |
michael@0 | 33 | let punyMainDomainPrincipal = getPrincipalFromDomain('xn--f-xgav.com'); |
michael@0 | 34 | let punySubDomainPrincipal = getPrincipalFromDomain('xn--f-xgaa.xn--br-jia.com'); |
michael@0 | 35 | let punyTldPrincipal = getPrincipalFromDomain('xn--f-xgav.xn--br-jia.xn--cm-8ja'); |
michael@0 | 36 | |
michael@0 | 37 | // Those principals should have the permission granted too. |
michael@0 | 38 | do_check_eq(pm.testPermissionFromPrincipal(punyMainDomainPrincipal, perm), pm.ALLOW_ACTION); |
michael@0 | 39 | do_check_eq(pm.testPermissionFromPrincipal(punySubDomainPrincipal, perm), pm.ALLOW_ACTION); |
michael@0 | 40 | do_check_eq(pm.testPermissionFromPrincipal(punyTldPrincipal, perm), pm.ALLOW_ACTION); |
michael@0 | 41 | |
michael@0 | 42 | // However, those two principals shouldn't be allowed because they are like |
michael@0 | 43 | // the IDN but without the UT8-8 characters. |
michael@0 | 44 | let witnessPrincipal = getPrincipalFromDomain("foo.com"); |
michael@0 | 45 | do_check_eq(pm.testPermissionFromPrincipal(witnessPrincipal, perm), pm.UNKNOWN_ACTION); |
michael@0 | 46 | witnessPrincipal = getPrincipalFromDomain("foo.bar.com"); |
michael@0 | 47 | do_check_eq(pm.testPermissionFromPrincipal(witnessPrincipal, perm), pm.UNKNOWN_ACTION); |
michael@0 | 48 | } |