Skip to content

Commit 0ba157c

Browse files
author
Daan Hoogland
committed
policy update and test
1 parent d83413a commit 0ba157c

File tree

2 files changed

+5
-2
lines changed

2 files changed

+5
-2
lines changed

utils/src/main/java/com/cloud/utils/net/NetUtils.java

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1265,7 +1265,7 @@ public static boolean isValidS2SVpnPolicy(final String policyType, final String
12651265
if (group == null && policyType.toLowerCase().matches("ike")) {
12661266
return false; // StrongSwan requires a DH group for the IKE policy
12671267
}
1268-
if (group != null && !group.matches("modp1024|modp1536|modp2048|modp3072|modp4096|modp6144|modp8192|modp1024s160|modp2048s224|modp2048s256|CURVE_25519")) {
1268+
if (group != null && !group.matches("modp1024|modp1536|modp2048|modp3072|modp4096|modp6144|modp8192|modp1024s160|modp2048s224|modp2048s256|curve25519")) {
12691269
return false;
12701270
}
12711271
}

utils/src/test/java/com/cloud/utils/net/NetUtilsTest.java

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -131,7 +131,10 @@ public void testIsValidS2SVpnPolicy() {
131131
assertTrue(NetUtils.isValidS2SVpnPolicy("ike", "3des-md5;modp1024"));
132132
assertTrue(NetUtils.isValidS2SVpnPolicy("ike", "3des-sha1;modp3072,aes128-sha1;modp1536"));
133133
assertTrue(NetUtils.isValidS2SVpnPolicy("ike", "3des-sha256;modp3072,aes128-sha512;modp1536"));
134-
assertTrue(NetUtils.isValidS2SVpnPolicy("ike", "aes256;modp1024s160,modp2048s224,modp2048s256,curve25519"));
134+
assertTrue(NetUtils.isValidS2SVpnPolicy("ike", "aes256-sha256;modp1024s160"));
135+
assertTrue(NetUtils.isValidS2SVpnPolicy("ike", "aes256-sha256;modp2048s224"));
136+
assertTrue(NetUtils.isValidS2SVpnPolicy("ike", "aes256-sha256;modp2048s256"));
137+
assertTrue(NetUtils.isValidS2SVpnPolicy("ike", "aes256-sha256;curve25519"));
135138
assertFalse(NetUtils.isValidS2SVpnPolicy("ike", "aes128-sha1"));
136139
assertFalse(NetUtils.isValidS2SVpnPolicy("ike", "3des-sha1"));
137140
assertFalse(NetUtils.isValidS2SVpnPolicy("ike", "3des-sha1,aes256-sha1"));

0 commit comments

Comments
 (0)