4 require_once($CFG->dirroot . '/lib/password_compat/lib/password.php');
6 class PasswordHashTest extends PHPUnit_Framework_TestCase {
8 public function testFuncExists() {
9 $this->assertTrue(function_exists('password_hash'));
12 public function testStringLength() {
13 $this->assertEquals(60, strlen(password_hash('foo', PASSWORD_BCRYPT)));
16 public function testHash() {
17 $hash = password_hash('foo', PASSWORD_BCRYPT);
18 $this->assertEquals($hash, crypt('foo', $hash));
21 public function testKnownSalt() {
22 $hash = password_hash("rasmuslerdorf", PASSWORD_BCRYPT, array("cost" => 7, "salt" => "usesomesillystringforsalt"));
23 $this->assertEquals('$2y$07$usesomesillystringfore2uDLvp1Ii2e./U9C8sBjqp8I90dH6hi', $hash);
26 public function testRawSalt() {
27 $hash = password_hash("test", PASSWORD_BCRYPT, array("salt" => "123456789012345678901" . chr(0)));
28 if (version_compare(PHP_VERSION, '5.5.0', '<')) {
29 $this->assertEquals('$2y$10$KRGxLBS0Lxe3KBCwKxOzLexLDeu0ZfqJAKTubOfy7O/yL2hjimw3u', $hash);
31 $this->assertEquals('$2y$10$MTIzNDU2Nzg5MDEyMzQ1Nej0NmcAWSLR.oP7XOR9HD/vjUuOj100y', $hash);
35 public function testNullBehavior() {
36 $hash = password_hash(null, PASSWORD_BCRYPT, array("salt" => "1234567890123456789012345678901234567890"));
37 $this->assertEquals('$2y$10$123456789012345678901uhihPb9QpE2n03zMu9TDdvO34jDn6mO.', $hash);
40 public function testIntegerBehavior() {
41 $hash = password_hash(12345, PASSWORD_BCRYPT, array("salt" => "1234567890123456789012345678901234567890"));
42 $this->assertEquals('$2y$10$123456789012345678901ujczD5TiARVFtc68bZCAlbEg1fCIexfO', $hash);
46 * @expectedException PHPUnit_Framework_Error
48 public function testInvalidAlgo() {
49 password_hash('foo', array());
53 * @expectedException PHPUnit_Framework_Error
55 public function testInvalidAlgo2() {
56 password_hash('foo', 2);
60 * @expectedException PHPUnit_Framework_Error
62 public function testInvalidPassword() {
63 password_hash(array(), 1);
67 * @expectedException PHPUnit_Framework_Error
69 public function testInvalidSalt() {
70 password_hash('foo', PASSWORD_BCRYPT, array('salt' => array()));
74 * @expectedException PHPUnit_Framework_Error
76 public function testInvalidBcryptCostLow() {
77 password_hash('foo', PASSWORD_BCRYPT, array('cost' => 3));
81 * @expectedException PHPUnit_Framework_Error
83 public function testInvalidBcryptCostHigh() {
84 password_hash('foo', PASSWORD_BCRYPT, array('cost' => 32));
88 * @expectedException PHPUnit_Framework_Error
90 public function testInvalidBcryptCostInvalid() {
91 password_hash('foo', PASSWORD_BCRYPT, array('cost' => 'foo'));
95 * @expectedException PHPUnit_Framework_Error
97 public function testInvalidBcryptSaltShort() {
98 password_hash('foo', PASSWORD_BCRYPT, array('salt' => 'abc'));