← Prev in month ← Prev in thread
Next in thread → Next in month →

QS-M-2-20

From
Martin Shannon
Date
2019-02-05T06:57:00+00:00
ID
Thread
QS-M-2-20
Hi All,

According to the test XML test QS-M-2-20 should return an error response which contains an empty ResponsePayload.
But isn’t the (more) correct behaviour to completely omit the payload under error conditions?

aaa

<  ResponseMessage  >

<  ResponseHeader  >

<  ProtocolVersion  >

<  ProtocolVersionMajor
type  =  "Integer"
value  =  "2"  />

<  ProtocolVersionMinor
type  =  "Integer"
value  =  "0"  />

</  ProtocolVersion  >

<  TimeStamp
type  =  "DateTime"
value  =  "$NOW"  />

<  BatchCount
type  =  "Integer"
value  =  "1"  />

</  ResponseHeader  >

<  BatchItem  >

<  Operation
type  =  "Enumeration"
value  =  "Create"  />

<  ResultStatus
type  =  "Enumeration"
value  =  "OperationFailed"  />

<  ResultReason
type  =  "Enumeration"
value  =  "PolicyProhibited"  />

<  ResultMessage
type  =  "Enumeration"
value  =  "NOT_SAFE"  />

<  ResponsePayload  >

</  ResponsePayload  >

</  BatchItem  >
</  ResponseMessage
>

aaaaa

Martin Shannon
Software Developer   QuintessenceLabs
W:
quintessencelabs.com


 Unit 1 Lower Ground  15 Denison St
Deakin ACT 2600
P: +61 2 6260 4922


 Delivering quantum enhanced cyber-security for over ten years

 Find out more at   quintessencelabs.com
From:
Martin Shannon
Sent:  Monday, 4 February 2019 3:01 PM
To:  '' <>
Subject:  TC-PKCS12-2-20

Hi All,

The XML for this test specifies PermissionDenied  in the ResultReason for the Register operation (PrivateKey) response.
However, several servers return “WrongKeyLifecycleState” in this field.

Which is correct?

Thanks

Martin


Martin Shannon
Software Developer   QuintessenceLabs
W:
quintessencelabs.com


 Unit 1 Lower Ground  15 Denison St
Deakin ACT 2600
P: +61 2 6260 4922


 Delivering quantum enhanced cyber-security for over ten years

 Find out more at   quintessencelabs.com
From:
Martin Shannon
Sent:  Monday, 4 February 2019 11:27 AM
To:

Subject:  TC-IMPEXP-3-20

Hi All,

We have detected a few servers failing this test due to the value of the Fresh attribute in the Export response. So, I thought ‘d pose a few questions to the group.
Since we are exporting a newly registered object, it makes sense that the Fresh attribute should be True when exported. And several vendors’ servers exhibit this behaviour. But TC-IMPEXP-3-20.xml, the reference, has the Fresh attribute  set to False in the export response.
Which is correct?
What is the use case for Export?

Furthermore, should the Import operation really be allowed to specify a value for Fresh? Fresh is supposed to be set by the server, not the client.

Martin



Martin Shannon
Software Developer   QuintessenceLabs
W:
quintessencelabs.com


 Unit 1 Lower Ground  15 Denison St
Deakin ACT 2600
P: +61 2 6260 4922


 Delivering quantum enhanced cyber-security for over ten years

 Find out more at   quintessencelabs.com
← Prev in month ← Prev in thread
Next in thread → Next in month →