|
1 /* Any copyright is dedicated to the Public Domain. |
|
2 http://creativecommons.org/publicdomain/zero/1.0/ */ |
|
3 |
|
4 function getPrincipalFromDomain(aDomain) { |
|
5 return Cc["@mozilla.org/scriptsecuritymanager;1"] |
|
6 .getService(Ci.nsIScriptSecurityManager) |
|
7 .getNoAppCodebasePrincipal(NetUtil.newURI("http://" + aDomain)); |
|
8 } |
|
9 |
|
10 function run_test() { |
|
11 let profile = do_get_profile(); |
|
12 let pm = Services.perms; |
|
13 let perm = 'test-idn'; |
|
14 |
|
15 // We create three principal linked to IDN. |
|
16 // One with just a domain, one with a subdomain and one with the TLD |
|
17 // containing a UTF-8 character. |
|
18 let mainDomainPrincipal = getPrincipalFromDomain("fôû.com"); |
|
19 let subDomainPrincipal = getPrincipalFromDomain("fôô.bàr.com"); |
|
20 let tldPrincipal = getPrincipalFromDomain("fôû.bàr.côm"); |
|
21 |
|
22 // We add those to the permission manager. |
|
23 pm.addFromPrincipal(mainDomainPrincipal, perm, pm.ALLOW_ACTION, 0, 0); |
|
24 pm.addFromPrincipal(subDomainPrincipal, perm, pm.ALLOW_ACTION, 0, 0); |
|
25 pm.addFromPrincipal(tldPrincipal, perm, pm.ALLOW_ACTION, 0, 0); |
|
26 |
|
27 // They should obviously be there now.. |
|
28 do_check_eq(pm.testPermissionFromPrincipal(mainDomainPrincipal, perm), pm.ALLOW_ACTION); |
|
29 do_check_eq(pm.testPermissionFromPrincipal(subDomainPrincipal, perm), pm.ALLOW_ACTION); |
|
30 do_check_eq(pm.testPermissionFromPrincipal(tldPrincipal, perm), pm.ALLOW_ACTION); |
|
31 |
|
32 // We do the same thing with the puny-encoded versions of the IDN. |
|
33 let punyMainDomainPrincipal = getPrincipalFromDomain('xn--f-xgav.com'); |
|
34 let punySubDomainPrincipal = getPrincipalFromDomain('xn--f-xgaa.xn--br-jia.com'); |
|
35 let punyTldPrincipal = getPrincipalFromDomain('xn--f-xgav.xn--br-jia.xn--cm-8ja'); |
|
36 |
|
37 // Those principals should have the permission granted too. |
|
38 do_check_eq(pm.testPermissionFromPrincipal(punyMainDomainPrincipal, perm), pm.ALLOW_ACTION); |
|
39 do_check_eq(pm.testPermissionFromPrincipal(punySubDomainPrincipal, perm), pm.ALLOW_ACTION); |
|
40 do_check_eq(pm.testPermissionFromPrincipal(punyTldPrincipal, perm), pm.ALLOW_ACTION); |
|
41 |
|
42 // However, those two principals shouldn't be allowed because they are like |
|
43 // the IDN but without the UT8-8 characters. |
|
44 let witnessPrincipal = getPrincipalFromDomain("foo.com"); |
|
45 do_check_eq(pm.testPermissionFromPrincipal(witnessPrincipal, perm), pm.UNKNOWN_ACTION); |
|
46 witnessPrincipal = getPrincipalFromDomain("foo.bar.com"); |
|
47 do_check_eq(pm.testPermissionFromPrincipal(witnessPrincipal, perm), pm.UNKNOWN_ACTION); |
|
48 } |