Mercurial > hg > orthanc-tests
annotate Tests/CheckDicomTls.py @ 408:4e0b9fddbc71
test "Replace" for UID in subsequences
author | Sebastien Jodogne <s.jodogne@gmail.com> |
---|---|
date | Thu, 10 Jun 2021 13:10:11 +0200 |
parents | f454fe86061b |
children | e769bcf2b94f |
rev | line source |
---|---|
375 | 1 #!/usr/bin/python |
2 | |
3 # Orthanc - A Lightweight, RESTful DICOM Store | |
4 # Copyright (C) 2012-2016 Sebastien Jodogne, Medical Physics | |
5 # Department, University Hospital of Liege, Belgium | |
6 # Copyright (C) 2017-2021 Osimis S.A., Belgium | |
7 # | |
8 # This program is free software: you can redistribute it and/or | |
9 # modify it under the terms of the GNU General Public License as | |
10 # published by the Free Software Foundation, either version 3 of the | |
11 # License, or (at your option) any later version. | |
12 # | |
13 # This program is distributed in the hope that it will be useful, but | |
14 # WITHOUT ANY WARRANTY; without even the implied warranty of | |
15 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU | |
16 # General Public License for more details. | |
17 # | |
18 # You should have received a copy of the GNU General Public License | |
19 # along with this program. If not, see <http://www.gnu.org/licenses/>. | |
20 | |
21 | |
22 | |
23 import argparse | |
24 import os | |
25 import pprint | |
26 import re | |
27 import sys | |
28 import subprocess | |
29 import unittest | |
30 | |
31 from Toolbox import * | |
32 | |
33 | |
34 ## | |
35 ## Parse the command-line arguments | |
36 ## | |
37 | |
38 parser = argparse.ArgumentParser(description = 'Run the integration tests for DICOM TLS in Orthanc.') | |
39 | |
40 parser.add_argument('--server', | |
41 default = 'localhost', | |
42 help = 'Address of the Orthanc server to test') | |
43 parser.add_argument('--aet', | |
44 default = 'ORTHANC', | |
45 help = 'AET of the Orthanc instance to test') | |
46 parser.add_argument('--dicom', | |
47 type = int, | |
48 default = 4242, | |
49 help = 'DICOM port of the Orthanc instance to test') | |
50 parser.add_argument('--rest', | |
51 type = int, | |
52 default = 8042, | |
53 help = 'Port to the REST API') | |
54 parser.add_argument('--username', | |
55 default = 'alice', | |
56 help = 'Username to the REST API') | |
57 parser.add_argument('--password', | |
58 default = 'orthanctest', | |
59 help = 'Password to the REST API') | |
60 parser.add_argument('--force', help = 'Do not warn the user', | |
61 action = 'store_true') | |
62 parser.add_argument('--config', help = 'Create the configuration files for this test in the current folder', | |
63 action = 'store_true') | |
64 parser.add_argument('options', metavar = 'N', nargs = '*', | |
65 help='Arguments to Python unittest') | |
66 | |
67 args = parser.parse_args() | |
68 | |
69 | |
70 ## | |
71 ## Configure the testing context | |
72 ## | |
73 | |
74 | |
75 if args.config: | |
76 def CreateCertificate(name): | |
77 subprocess.check_call([ 'openssl', 'req', '-x509', '-nodes', '-days', '365', '-newkey', 'rsa:2048', | |
78 '-keyout', '%s.key' % name, | |
79 '-out', '%s.crt' % name, | |
80 '-subj', '/C=BE/CN=localhost' ]) | |
81 | |
82 print('Writing configuration to folder: %s' % args.config) | |
83 CreateCertificate('dicom-tls-a') | |
84 CreateCertificate('dicom-tls-b') | |
85 CreateCertificate('dicom-tls-c') # Not trusted by Orthanc | |
86 | |
87 with open('dicom-tls-trusted.crt', 'w') as f: | |
88 for i in [ 'dicom-tls-a.crt', 'dicom-tls-b.crt' ]: | |
89 with open(i, 'r') as g: | |
90 f.write(g.read()) | |
91 | |
92 with open('dicom-tls.json', 'w') as f: | |
93 f.write(json.dumps({ | |
94 'DicomTlsEnabled' : True, | |
95 'DicomTlsCertificate' : 'dicom-tls-a.crt', | |
96 'DicomTlsPrivateKey' : 'dicom-tls-a.key', | |
97 'DicomTlsTrustedCertificates' : 'dicom-tls-trusted.crt', | |
98 'ExecuteLuaEnabled' : True, | |
99 'RemoteAccessAllowed' : True, | |
100 'RegisteredUsers' : { | |
101 'alice' : 'orthanctest' | |
102 }, | |
400
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
103 'DicomTlsRemoteCertificateRequired' : False, # New in Orthanc 1.9.3 |
375 | 104 })) |
105 | |
106 exit(0) | |
107 | |
108 | |
109 if not args.force: | |
110 print(""" | |
111 WARNING: This test will remove all the content of your | |
112 Orthanc instance running on %s! | |
113 | |
114 Are you sure ["yes" to go on]?""" % args.server) | |
115 | |
116 if sys.stdin.readline().strip() != 'yes': | |
117 print('Aborting...') | |
118 exit(0) | |
119 | |
120 | |
121 ORTHANC = DefineOrthanc(server = args.server, | |
122 username = args.username, | |
123 password = args.password, | |
124 restPort = args.rest, | |
125 aet = args.aet, | |
126 dicomPort = args.dicom) | |
127 | |
128 | |
129 ## | |
130 ## The tests | |
131 ## | |
132 | |
133 | |
134 FNULL = open(os.devnull, 'w') # Emulates "subprocess.DEVNULL" on Python 2.7 | |
135 | |
136 | |
137 class Orthanc(unittest.TestCase): | |
138 def setUp(self): | |
139 if (sys.version_info >= (3, 0)): | |
140 # Remove annoying warnings about unclosed socket in Python 3 | |
141 import warnings | |
142 warnings.simplefilter('ignore', ResourceWarning) | |
143 | |
144 DropOrthanc(ORTHANC) | |
145 | |
146 | |
147 def test_incoming(self): | |
148 # No certificate | |
149 self.assertRaises(Exception, lambda: subprocess.check_call([ | |
150 FindExecutable('echoscu'), | |
151 ORTHANC['Server'], | |
152 str(ORTHANC['DicomPort']), | |
153 '-aec', 'ORTHANC', | |
154 ], stderr = FNULL)) | |
155 | |
156 subprocess.check_call([ | |
157 FindExecutable('echoscu'), | |
158 ORTHANC['Server'], | |
159 str(ORTHANC['DicomPort']), | |
160 '-aec', 'ORTHANC', | |
161 '+tls', 'dicom-tls-b.key', 'dicom-tls-b.crt', | |
162 '+cf', 'dicom-tls-a.crt', | |
163 ], stderr = FNULL) | |
164 | |
165 self.assertRaises(Exception, lambda: subprocess.check_call([ | |
166 FindExecutable('echoscu'), | |
167 ORTHANC['Server'], | |
168 str(ORTHANC['DicomPort']), | |
169 '-aec', 'ORTHANC', | |
170 '+tls', 'dicom-tls-c.key', 'dicom-tls-c.crt', # Not trusted by Orthanc | |
171 '+cf', 'dicom-tls-a.crt', | |
172 ], stderr = FNULL)) | |
173 | |
174 self.assertRaises(Exception, lambda: subprocess.check_call([ | |
175 FindExecutable('echoscu'), | |
176 ORTHANC['Server'], | |
177 str(ORTHANC['DicomPort']), | |
178 '-aec', 'ORTHANC', | |
179 '+tls', 'dicom-tls-b.key', 'dicom-tls-b.crt', | |
180 '+cf', 'dicom-tls-b.crt', # Not the certificate of Orthanc | |
181 ], stderr = FNULL)) | |
182 | |
183 | |
184 def test_outgoing_to_self(self): | |
185 u = UploadInstance(ORTHANC, 'DummyCT.dcm') ['ID'] | |
186 | |
187 # Error, as DICOM TLS is not enabled | |
188 DoPut(ORTHANC, '/modalities/self', { | |
189 'AET' : 'ORTHANC', | |
190 'Host' : ORTHANC['Server'], | |
191 'Port' : ORTHANC['DicomPort'], | |
192 }) | |
193 | |
194 self.assertRaises(Exception, lambda: DoPost(ORTHANC, '/modalities/self/store', u)) | |
195 | |
196 # Retry using DICOM TLS | |
197 DoPut(ORTHANC, '/modalities/self', { | |
198 'AET' : 'ORTHANC', | |
199 'Host' : ORTHANC['Server'], | |
200 'Port' : ORTHANC['DicomPort'], | |
201 'UseDicomTls' : True, | |
202 }) | |
203 | |
204 self.assertEqual(1, DoPost(ORTHANC, '/modalities/self/store', u) ['InstancesCount']) | |
205 | |
400
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
206 |
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
207 def test_anonymous(self): |
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
208 # Fails on Orthanc <= 1.9.2 |
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
209 # https://book.orthanc-server.com/faq/dicom-tls.html#secure-tls-connections-without-certificate |
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
210 subprocess.check_call([ |
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
211 FindExecutable('echoscu'), |
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
212 ORTHANC['Server'], |
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
213 str(ORTHANC['DicomPort']), |
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
214 '-aec', 'ORTHANC', |
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
215 '--anonymous-tls', |
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
216 '+cf', 'dicom-tls-a.crt', |
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
217 ], stderr = FNULL) |
f454fe86061b
dicom tls: test_anonymous
Sebastien Jodogne <s.jodogne@gmail.com>
parents:
375
diff
changeset
|
218 |
375 | 219 |
220 try: | |
221 print('\nStarting the tests...') | |
222 unittest.main(argv = [ sys.argv[0] ] + args.options) | |
223 | |
224 finally: | |
225 print('\nDone') |