version 1.4.0 documentation

This commit is contained in:
Jeremy Long
2016-06-16 19:24:14 -04:00
parent 60c8655b95
commit 427a7b4ec8
1209 changed files with 57762 additions and 51538 deletions

View File

@@ -34,136 +34,132 @@
<a class="jxr_linenumber" name="L26" href="#L26">26</a> <strong class="jxr_keyword">import</strong> javax.xml.validation.Validator;
<a class="jxr_linenumber" name="L27" href="#L27">27</a> <strong class="jxr_keyword">import</strong> org.junit.Before;
<a class="jxr_linenumber" name="L28" href="#L28">28</a> <strong class="jxr_keyword">import</strong> org.junit.Test;
<a class="jxr_linenumber" name="L29" href="#L29">29</a> <strong class="jxr_keyword">import</strong> org.owasp.dependencycheck.BaseTest;
<a class="jxr_linenumber" name="L30" href="#L30">30</a> <strong class="jxr_keyword">import</strong> org.owasp.dependencycheck.Engine;
<a class="jxr_linenumber" name="L31" href="#L31">31</a> <strong class="jxr_keyword">import</strong> org.owasp.dependencycheck.data.nvdcve.CveDB;
<a class="jxr_linenumber" name="L32" href="#L32">32</a> <strong class="jxr_keyword">import</strong> org.owasp.dependencycheck.data.nvdcve.DatabaseProperties;
<a class="jxr_linenumber" name="L33" href="#L33">33</a> <strong class="jxr_keyword">import</strong> org.owasp.dependencycheck.utils.Settings;
<a class="jxr_linenumber" name="L34" href="#L34">34</a>
<a class="jxr_linenumber" name="L35" href="#L35">35</a> <em class="jxr_javadoccomment">/**</em>
<a class="jxr_linenumber" name="L36" href="#L36">36</a> <em class="jxr_javadoccomment"> *</em>
<a class="jxr_linenumber" name="L37" href="#L37">37</a> <em class="jxr_javadoccomment"> * @author Jeremy Long</em>
<a class="jxr_linenumber" name="L38" href="#L38">38</a> <em class="jxr_javadoccomment"> */</em>
<a class="jxr_linenumber" name="L39" href="#L39">39</a> <strong class="jxr_keyword">public</strong> <strong class="jxr_keyword">class</strong> <a href="../../../../org/owasp/dependencycheck/reporting/ReportGeneratorIntegrationTest.html">ReportGeneratorIntegrationTest</a> <strong class="jxr_keyword">extends</strong> <a href="../../../../org/owasp/dependencycheck/BaseTest.html">BaseTest</a> {
<a class="jxr_linenumber" name="L40" href="#L40">40</a>
<a class="jxr_linenumber" name="L41" href="#L41">41</a> @Before
<a class="jxr_linenumber" name="L42" href="#L42">42</a> <strong class="jxr_keyword">public</strong> <strong class="jxr_keyword">void</strong> setUp() <strong class="jxr_keyword">throws</strong> Exception {
<a class="jxr_linenumber" name="L43" href="#L43">43</a> org.owasp.dependencycheck.BaseDBTestCase.ensureDBExists();
<a class="jxr_linenumber" name="L44" href="#L44">44</a> }
<a class="jxr_linenumber" name="L45" href="#L45">45</a>
<a class="jxr_linenumber" name="L46" href="#L46">46</a> <em class="jxr_javadoccomment">/**</em>
<a class="jxr_linenumber" name="L47" href="#L47">47</a> <em class="jxr_javadoccomment"> * Test of generateReport method, of class ReportGenerator.</em>
<a class="jxr_linenumber" name="L48" href="#L48">48</a> <em class="jxr_javadoccomment"> *</em>
<a class="jxr_linenumber" name="L49" href="#L49">49</a> <em class="jxr_javadoccomment"> * @throws Exception is thrown when an exception occurs.</em>
<a class="jxr_linenumber" name="L50" href="#L50">50</a> <em class="jxr_javadoccomment"> */</em>
<a class="jxr_linenumber" name="L51" href="#L51">51</a> @Test
<a class="jxr_linenumber" name="L52" href="#L52">52</a> <strong class="jxr_keyword">public</strong> <strong class="jxr_keyword">void</strong> testGenerateReport() <strong class="jxr_keyword">throws</strong> Exception {
<a class="jxr_linenumber" name="L53" href="#L53">53</a> String templateName = <span class="jxr_string">"HtmlReport"</span>;
<a class="jxr_linenumber" name="L54" href="#L54">54</a> <em class="jxr_comment">// File f = new File("target/test-reports");</em>
<a class="jxr_linenumber" name="L55" href="#L55">55</a> <em class="jxr_comment">// if (!f.exists()) {</em>
<a class="jxr_linenumber" name="L56" href="#L56">56</a> <em class="jxr_comment">// f.mkdir();</em>
<a class="jxr_linenumber" name="L57" href="#L57">57</a> <em class="jxr_comment">// }</em>
<a class="jxr_linenumber" name="L58" href="#L58">58</a> <em class="jxr_comment">// String writeTo = "target/test-reports/Report.html";</em>
<a class="jxr_linenumber" name="L59" href="#L59">59</a> <em class="jxr_comment">// Map&lt;String, Object&gt; properties = new HashMap&lt;String, Object&gt;();</em>
<a class="jxr_linenumber" name="L60" href="#L60">60</a> <em class="jxr_comment">// Dependency d = new Dependency();</em>
<a class="jxr_linenumber" name="L61" href="#L61">61</a> <em class="jxr_comment">// d.setFileName("FileName.jar");</em>
<a class="jxr_linenumber" name="L62" href="#L62">62</a> <em class="jxr_comment">// d.setActualFilePath("lib/FileName.jar");</em>
<a class="jxr_linenumber" name="L63" href="#L63">63</a> <em class="jxr_comment">// d.addCPEentry("cpe://a:/some:cpe:1.0");</em>
<a class="jxr_linenumber" name="L29" href="#L29">29</a> <strong class="jxr_keyword">import</strong> org.owasp.dependencycheck.BaseDBTestCase;
<a class="jxr_linenumber" name="L30" href="#L30">30</a> <strong class="jxr_keyword">import</strong> org.owasp.dependencycheck.BaseTest;
<a class="jxr_linenumber" name="L31" href="#L31">31</a> <strong class="jxr_keyword">import</strong> org.owasp.dependencycheck.Engine;
<a class="jxr_linenumber" name="L32" href="#L32">32</a> <strong class="jxr_keyword">import</strong> org.owasp.dependencycheck.data.nvdcve.CveDB;
<a class="jxr_linenumber" name="L33" href="#L33">33</a> <strong class="jxr_keyword">import</strong> org.owasp.dependencycheck.data.nvdcve.DatabaseProperties;
<a class="jxr_linenumber" name="L34" href="#L34">34</a> <strong class="jxr_keyword">import</strong> org.owasp.dependencycheck.utils.Settings;
<a class="jxr_linenumber" name="L35" href="#L35">35</a>
<a class="jxr_linenumber" name="L36" href="#L36">36</a> <em class="jxr_javadoccomment">/**</em>
<a class="jxr_linenumber" name="L37" href="#L37">37</a> <em class="jxr_javadoccomment"> *</em>
<a class="jxr_linenumber" name="L38" href="#L38">38</a> <em class="jxr_javadoccomment"> * @author Jeremy Long</em>
<a class="jxr_linenumber" name="L39" href="#L39">39</a> <em class="jxr_javadoccomment"> */</em>
<a class="jxr_linenumber" name="L40" href="#L40">40</a> <strong class="jxr_keyword">public</strong> <strong class="jxr_keyword">class</strong> <a href="../../../../org/owasp/dependencycheck/reporting/ReportGeneratorIntegrationTest.html">ReportGeneratorIntegrationTest</a> <strong class="jxr_keyword">extends</strong> <a href="../../../../org/owasp/dependencycheck/BaseDBTestCase.html">BaseDBTestCase</a> {
<a class="jxr_linenumber" name="L41" href="#L41">41</a>
<a class="jxr_linenumber" name="L42" href="#L42">42</a> <em class="jxr_javadoccomment">/**</em>
<a class="jxr_linenumber" name="L43" href="#L43">43</a> <em class="jxr_javadoccomment"> * Test of generateReport method, of class ReportGenerator.</em>
<a class="jxr_linenumber" name="L44" href="#L44">44</a> <em class="jxr_javadoccomment"> *</em>
<a class="jxr_linenumber" name="L45" href="#L45">45</a> <em class="jxr_javadoccomment"> * @throws Exception is thrown when an exception occurs.</em>
<a class="jxr_linenumber" name="L46" href="#L46">46</a> <em class="jxr_javadoccomment"> */</em>
<a class="jxr_linenumber" name="L47" href="#L47">47</a> @Test
<a class="jxr_linenumber" name="L48" href="#L48">48</a> <strong class="jxr_keyword">public</strong> <strong class="jxr_keyword">void</strong> testGenerateReport() <strong class="jxr_keyword">throws</strong> Exception {
<a class="jxr_linenumber" name="L49" href="#L49">49</a> String templateName = <span class="jxr_string">"HtmlReport"</span>;
<a class="jxr_linenumber" name="L50" href="#L50">50</a> <em class="jxr_comment">// File f = new File("target/test-reports");</em>
<a class="jxr_linenumber" name="L51" href="#L51">51</a> <em class="jxr_comment">// if (!f.exists()) {</em>
<a class="jxr_linenumber" name="L52" href="#L52">52</a> <em class="jxr_comment">// f.mkdir();</em>
<a class="jxr_linenumber" name="L53" href="#L53">53</a> <em class="jxr_comment">// }</em>
<a class="jxr_linenumber" name="L54" href="#L54">54</a> <em class="jxr_comment">// String writeTo = "target/test-reports/Report.html";</em>
<a class="jxr_linenumber" name="L55" href="#L55">55</a> <em class="jxr_comment">// Map&lt;String, Object&gt; properties = new HashMap&lt;String, Object&gt;();</em>
<a class="jxr_linenumber" name="L56" href="#L56">56</a> <em class="jxr_comment">// Dependency d = new Dependency();</em>
<a class="jxr_linenumber" name="L57" href="#L57">57</a> <em class="jxr_comment">// d.setFileName("FileName.jar");</em>
<a class="jxr_linenumber" name="L58" href="#L58">58</a> <em class="jxr_comment">// d.setActualFilePath("lib/FileName.jar");</em>
<a class="jxr_linenumber" name="L59" href="#L59">59</a> <em class="jxr_comment">// d.addCPEentry("cpe://a:/some:cpe:1.0");</em>
<a class="jxr_linenumber" name="L60" href="#L60">60</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L61" href="#L61">61</a> <em class="jxr_comment">// List&lt;Dependency&gt; dependencies = new ArrayList&lt;Dependency&gt;();</em>
<a class="jxr_linenumber" name="L62" href="#L62">62</a> <em class="jxr_comment">// d.getProductEvidence().addEvidence("jar","filename","&lt;test&gt;test", Confidence.HIGH);</em>
<a class="jxr_linenumber" name="L63" href="#L63">63</a> <em class="jxr_comment">// d.getProductEvidence().addEvidence("manifest","vendor","&lt;test&gt;test", Confidence.HIGH);</em>
<a class="jxr_linenumber" name="L64" href="#L64">64</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L65" href="#L65">65</a> <em class="jxr_comment">// List&lt;Dependency&gt; dependencies = new ArrayList&lt;Dependency&gt;();</em>
<a class="jxr_linenumber" name="L66" href="#L66">66</a> <em class="jxr_comment">// d.getProductEvidence().addEvidence("jar","filename","&lt;test&gt;test", Confidence.HIGH);</em>
<a class="jxr_linenumber" name="L67" href="#L67">67</a> <em class="jxr_comment">// d.getProductEvidence().addEvidence("manifest","vendor","&lt;test&gt;test", Confidence.HIGH);</em>
<a class="jxr_linenumber" name="L68" href="#L68">68</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L69" href="#L69">69</a> <em class="jxr_comment">// for (Evidence e : d.getProductEvidence().iterator(Confidence.HIGH)) {</em>
<a class="jxr_linenumber" name="L70" href="#L70">70</a> <em class="jxr_comment">// String t = e.getValue();</em>
<a class="jxr_linenumber" name="L71" href="#L71">71</a> <em class="jxr_comment">// }</em>
<a class="jxr_linenumber" name="L72" href="#L72">72</a> <em class="jxr_comment">// dependencies.add(d);</em>
<a class="jxr_linenumber" name="L73" href="#L73">73</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L74" href="#L74">74</a> <em class="jxr_comment">// Dependency d2 = new Dependency();</em>
<a class="jxr_linenumber" name="L75" href="#L75">75</a> <em class="jxr_comment">// d2.setFileName("Another.jar");</em>
<a class="jxr_linenumber" name="L76" href="#L76">76</a> <em class="jxr_comment">// d2.setActualFilePath("lib/Another.jar");</em>
<a class="jxr_linenumber" name="L77" href="#L77">77</a> <em class="jxr_comment">// d2.addCPEentry("cpe://a:/another:cpe:1.0");</em>
<a class="jxr_linenumber" name="L78" href="#L78">78</a> <em class="jxr_comment">// d2.addCPEentry("cpe://a:/another:cpe:1.1");</em>
<a class="jxr_linenumber" name="L79" href="#L79">79</a> <em class="jxr_comment">// d2.addCPEentry("cpe://a:/another:cpe:1.2");</em>
<a class="jxr_linenumber" name="L80" href="#L80">80</a> <em class="jxr_comment">// d2.getProductEvidence().addEvidence("jar","filename","another.jar", Confidence.HIGH);</em>
<a class="jxr_linenumber" name="L81" href="#L81">81</a> <em class="jxr_comment">// d2.getProductEvidence().addEvidence("manifest","vendor","Company A", Confidence.MEDIUM);</em>
<a class="jxr_linenumber" name="L65" href="#L65">65</a> <em class="jxr_comment">// for (Evidence e : d.getProductEvidence().iterator(Confidence.HIGH)) {</em>
<a class="jxr_linenumber" name="L66" href="#L66">66</a> <em class="jxr_comment">// String t = e.getValue();</em>
<a class="jxr_linenumber" name="L67" href="#L67">67</a> <em class="jxr_comment">// }</em>
<a class="jxr_linenumber" name="L68" href="#L68">68</a> <em class="jxr_comment">// dependencies.add(d);</em>
<a class="jxr_linenumber" name="L69" href="#L69">69</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L70" href="#L70">70</a> <em class="jxr_comment">// Dependency d2 = new Dependency();</em>
<a class="jxr_linenumber" name="L71" href="#L71">71</a> <em class="jxr_comment">// d2.setFileName("Another.jar");</em>
<a class="jxr_linenumber" name="L72" href="#L72">72</a> <em class="jxr_comment">// d2.setActualFilePath("lib/Another.jar");</em>
<a class="jxr_linenumber" name="L73" href="#L73">73</a> <em class="jxr_comment">// d2.addCPEentry("cpe://a:/another:cpe:1.0");</em>
<a class="jxr_linenumber" name="L74" href="#L74">74</a> <em class="jxr_comment">// d2.addCPEentry("cpe://a:/another:cpe:1.1");</em>
<a class="jxr_linenumber" name="L75" href="#L75">75</a> <em class="jxr_comment">// d2.addCPEentry("cpe://a:/another:cpe:1.2");</em>
<a class="jxr_linenumber" name="L76" href="#L76">76</a> <em class="jxr_comment">// d2.getProductEvidence().addEvidence("jar","filename","another.jar", Confidence.HIGH);</em>
<a class="jxr_linenumber" name="L77" href="#L77">77</a> <em class="jxr_comment">// d2.getProductEvidence().addEvidence("manifest","vendor","Company A", Confidence.MEDIUM);</em>
<a class="jxr_linenumber" name="L78" href="#L78">78</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L79" href="#L79">79</a> <em class="jxr_comment">// for (Evidence e : d2.getProductEvidence().iterator(Confidence.HIGH)) {</em>
<a class="jxr_linenumber" name="L80" href="#L80">80</a> <em class="jxr_comment">// String t = e.getValue();</em>
<a class="jxr_linenumber" name="L81" href="#L81">81</a> <em class="jxr_comment">// }</em>
<a class="jxr_linenumber" name="L82" href="#L82">82</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L83" href="#L83">83</a> <em class="jxr_comment">// for (Evidence e : d2.getProductEvidence().iterator(Confidence.HIGH)) {</em>
<a class="jxr_linenumber" name="L84" href="#L84">84</a> <em class="jxr_comment">// String t = e.getValue();</em>
<a class="jxr_linenumber" name="L85" href="#L85">85</a> <em class="jxr_comment">// }</em>
<a class="jxr_linenumber" name="L86" href="#L86">86</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L87" href="#L87">87</a> <em class="jxr_comment">// dependencies.add(d2);</em>
<a class="jxr_linenumber" name="L88" href="#L88">88</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L89" href="#L89">89</a> <em class="jxr_comment">// Dependency d3 = new Dependency();</em>
<a class="jxr_linenumber" name="L90" href="#L90">90</a> <em class="jxr_comment">// d3.setFileName("Third.jar");</em>
<a class="jxr_linenumber" name="L91" href="#L91">91</a> <em class="jxr_comment">// d3.setActualFilePath("lib/Third.jar");</em>
<a class="jxr_linenumber" name="L92" href="#L92">92</a> <em class="jxr_comment">// d3.getProductEvidence().addEvidence("jar","filename","third.jar", Confidence.HIGH);</em>
<a class="jxr_linenumber" name="L83" href="#L83">83</a> <em class="jxr_comment">// dependencies.add(d2);</em>
<a class="jxr_linenumber" name="L84" href="#L84">84</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L85" href="#L85">85</a> <em class="jxr_comment">// Dependency d3 = new Dependency();</em>
<a class="jxr_linenumber" name="L86" href="#L86">86</a> <em class="jxr_comment">// d3.setFileName("Third.jar");</em>
<a class="jxr_linenumber" name="L87" href="#L87">87</a> <em class="jxr_comment">// d3.setActualFilePath("lib/Third.jar");</em>
<a class="jxr_linenumber" name="L88" href="#L88">88</a> <em class="jxr_comment">// d3.getProductEvidence().addEvidence("jar","filename","third.jar", Confidence.HIGH);</em>
<a class="jxr_linenumber" name="L89" href="#L89">89</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L90" href="#L90">90</a> <em class="jxr_comment">// for (Evidence e : d3.getProductEvidence().iterator(Confidence.HIGH)) {</em>
<a class="jxr_linenumber" name="L91" href="#L91">91</a> <em class="jxr_comment">// String t = e.getValue();</em>
<a class="jxr_linenumber" name="L92" href="#L92">92</a> <em class="jxr_comment">// }</em>
<a class="jxr_linenumber" name="L93" href="#L93">93</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L94" href="#L94">94</a> <em class="jxr_comment">// for (Evidence e : d3.getProductEvidence().iterator(Confidence.HIGH)) {</em>
<a class="jxr_linenumber" name="L95" href="#L95">95</a> <em class="jxr_comment">// String t = e.getValue();</em>
<a class="jxr_linenumber" name="L96" href="#L96">96</a> <em class="jxr_comment">// }</em>
<a class="jxr_linenumber" name="L94" href="#L94">94</a> <em class="jxr_comment">// dependencies.add(d3);</em>
<a class="jxr_linenumber" name="L95" href="#L95">95</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L96" href="#L96">96</a> <em class="jxr_comment">// properties.put("dependencies",dependencies);</em>
<a class="jxr_linenumber" name="L97" href="#L97">97</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L98" href="#L98">98</a> <em class="jxr_comment">// dependencies.add(d3);</em>
<a class="jxr_linenumber" name="L99" href="#L99">99</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L100" href="#L100">100</a> <em class="jxr_comment">// properties.put("dependencies",dependencies);</em>
<a class="jxr_linenumber" name="L101" href="#L101">101</a> <em class="jxr_comment">//</em>
<a class="jxr_linenumber" name="L102" href="#L102">102</a> <em class="jxr_comment">// ReportGenerator instance = new ReportGenerator();</em>
<a class="jxr_linenumber" name="L103" href="#L103">103</a> <em class="jxr_comment">// instance.generateReport(templateName, writeTo, properties);</em>
<a class="jxr_linenumber" name="L104" href="#L104">104</a> <em class="jxr_comment">//assertTrue("need to add a real check here", false);</em>
<a class="jxr_linenumber" name="L105" href="#L105">105</a> }
<a class="jxr_linenumber" name="L106" href="#L106">106</a>
<a class="jxr_linenumber" name="L107" href="#L107">107</a> <em class="jxr_javadoccomment">/**</em>
<a class="jxr_linenumber" name="L108" href="#L108">108</a> <em class="jxr_javadoccomment"> * Generates an XML report containing known vulnerabilities and realistic data and validates the generated XML document</em>
<a class="jxr_linenumber" name="L109" href="#L109">109</a> <em class="jxr_javadoccomment"> * against the XSD.</em>
<a class="jxr_linenumber" name="L110" href="#L110">110</a> <em class="jxr_javadoccomment"> *</em>
<a class="jxr_linenumber" name="L111" href="#L111">111</a> <em class="jxr_javadoccomment"> * @throws Exception</em>
<a class="jxr_linenumber" name="L112" href="#L112">112</a> <em class="jxr_javadoccomment"> */</em>
<a class="jxr_linenumber" name="L113" href="#L113">113</a> @Test
<a class="jxr_linenumber" name="L114" href="#L114">114</a> <strong class="jxr_keyword">public</strong> <strong class="jxr_keyword">void</strong> testGenerateXMLReport() <strong class="jxr_keyword">throws</strong> Exception {
<a class="jxr_linenumber" name="L115" href="#L115">115</a> String templateName = <span class="jxr_string">"XmlReport"</span>;
<a class="jxr_linenumber" name="L116" href="#L116">116</a>
<a class="jxr_linenumber" name="L117" href="#L117">117</a> File f = <strong class="jxr_keyword">new</strong> File(<span class="jxr_string">"target/test-reports"</span>);
<a class="jxr_linenumber" name="L118" href="#L118">118</a> <strong class="jxr_keyword">if</strong> (!f.exists()) {
<a class="jxr_linenumber" name="L119" href="#L119">119</a> f.mkdir();
<a class="jxr_linenumber" name="L120" href="#L120">120</a> }
<a class="jxr_linenumber" name="L121" href="#L121">121</a> String writeTo = <span class="jxr_string">"target/test-reports/Report.xml"</span>;
<a class="jxr_linenumber" name="L122" href="#L122">122</a>
<a class="jxr_linenumber" name="L123" href="#L123">123</a> <em class="jxr_comment">//File struts = new File(this.getClass().getClassLoader().getResource("struts2-core-2.1.2.jar").getPath());</em>
<a class="jxr_linenumber" name="L124" href="#L124">124</a> File struts = BaseTest.getResourceAsFile(<strong class="jxr_keyword">this</strong>, <span class="jxr_string">"struts2-core-2.1.2.jar"</span>);
<a class="jxr_linenumber" name="L125" href="#L125">125</a> <em class="jxr_comment">//File axis = new File(this.getClass().getClassLoader().getResource("axis2-adb-1.4.1.jar").getPath());</em>
<a class="jxr_linenumber" name="L126" href="#L126">126</a> File axis = BaseTest.getResourceAsFile(<strong class="jxr_keyword">this</strong>, <span class="jxr_string">"axis2-adb-1.4.1.jar"</span>);
<a class="jxr_linenumber" name="L127" href="#L127">127</a> <em class="jxr_comment">//File jetty = new File(this.getClass().getClassLoader().getResource("org.mortbay.jetty.jar").getPath());</em>
<a class="jxr_linenumber" name="L128" href="#L128">128</a> File jetty = BaseTest.getResourceAsFile(<strong class="jxr_keyword">this</strong>, <span class="jxr_string">"org.mortbay.jetty.jar"</span>);
<a class="jxr_linenumber" name="L129" href="#L129">129</a>
<a class="jxr_linenumber" name="L130" href="#L130">130</a> <strong class="jxr_keyword">boolean</strong> autoUpdate = Settings.getBoolean(Settings.KEYS.AUTO_UPDATE);
<a class="jxr_linenumber" name="L131" href="#L131">131</a> Settings.setBoolean(Settings.KEYS.AUTO_UPDATE, false);
<a class="jxr_linenumber" name="L132" href="#L132">132</a> Engine engine = <strong class="jxr_keyword">new</strong> Engine();
<a class="jxr_linenumber" name="L133" href="#L133">133</a> Settings.setBoolean(Settings.KEYS.AUTO_UPDATE, autoUpdate);
<a class="jxr_linenumber" name="L134" href="#L134">134</a>
<a class="jxr_linenumber" name="L135" href="#L135">135</a> engine.scan(struts);
<a class="jxr_linenumber" name="L136" href="#L136">136</a> engine.scan(axis);
<a class="jxr_linenumber" name="L137" href="#L137">137</a> engine.scan(jetty);
<a class="jxr_linenumber" name="L138" href="#L138">138</a> engine.analyzeDependencies();
<a class="jxr_linenumber" name="L139" href="#L139">139</a>
<a class="jxr_linenumber" name="L140" href="#L140">140</a> CveDB cveDB = <strong class="jxr_keyword">new</strong> CveDB();
<a class="jxr_linenumber" name="L141" href="#L141">141</a> cveDB.open();
<a class="jxr_linenumber" name="L142" href="#L142">142</a> DatabaseProperties dbProp = cveDB.getDatabaseProperties();
<a class="jxr_linenumber" name="L143" href="#L143">143</a> cveDB.close();
<a class="jxr_linenumber" name="L144" href="#L144">144</a>
<a class="jxr_linenumber" name="L145" href="#L145">145</a> ReportGenerator generator = <strong class="jxr_keyword">new</strong> ReportGenerator(<span class="jxr_string">"Test Report"</span>, engine.getDependencies(), engine.getAnalyzers(), dbProp);
<a class="jxr_linenumber" name="L146" href="#L146">146</a> generator.generateReport(templateName, writeTo);
<a class="jxr_linenumber" name="L147" href="#L147">147</a>
<a class="jxr_linenumber" name="L148" href="#L148">148</a> engine.cleanup();
<a class="jxr_linenumber" name="L149" href="#L149">149</a>
<a class="jxr_linenumber" name="L150" href="#L150">150</a> InputStream xsdStream = ReportGenerator.<strong class="jxr_keyword">class</strong>.getClassLoader().getResourceAsStream(<span class="jxr_string">"schema/dependency-check.1.3.xsd"</span>);
<a class="jxr_linenumber" name="L151" href="#L151">151</a> StreamSource xsdSource = <strong class="jxr_keyword">new</strong> StreamSource(xsdStream);
<a class="jxr_linenumber" name="L152" href="#L152">152</a> StreamSource xmlSource = <strong class="jxr_keyword">new</strong> StreamSource(<strong class="jxr_keyword">new</strong> File(writeTo));
<a class="jxr_linenumber" name="L153" href="#L153">153</a> SchemaFactory sf = SchemaFactory.newInstance(XMLConstants.W3C_XML_SCHEMA_NS_URI);
<a class="jxr_linenumber" name="L154" href="#L154">154</a> Schema schema = sf.newSchema(xsdSource);
<a class="jxr_linenumber" name="L155" href="#L155">155</a> Validator validator = schema.newValidator();
<a class="jxr_linenumber" name="L156" href="#L156">156</a> validator.validate(xmlSource);
<a class="jxr_linenumber" name="L157" href="#L157">157</a> }
<a class="jxr_linenumber" name="L158" href="#L158">158</a> }
<a class="jxr_linenumber" name="L98" href="#L98">98</a> <em class="jxr_comment">// ReportGenerator instance = new ReportGenerator();</em>
<a class="jxr_linenumber" name="L99" href="#L99">99</a> <em class="jxr_comment">// instance.generateReport(templateName, writeTo, properties);</em>
<a class="jxr_linenumber" name="L100" href="#L100">100</a> <em class="jxr_comment">//assertTrue("need to add a real check here", false);</em>
<a class="jxr_linenumber" name="L101" href="#L101">101</a> }
<a class="jxr_linenumber" name="L102" href="#L102">102</a>
<a class="jxr_linenumber" name="L103" href="#L103">103</a> <em class="jxr_javadoccomment">/**</em>
<a class="jxr_linenumber" name="L104" href="#L104">104</a> <em class="jxr_javadoccomment"> * Generates an XML report containing known vulnerabilities and realistic data and validates the generated XML document</em>
<a class="jxr_linenumber" name="L105" href="#L105">105</a> <em class="jxr_javadoccomment"> * against the XSD.</em>
<a class="jxr_linenumber" name="L106" href="#L106">106</a> <em class="jxr_javadoccomment"> *</em>
<a class="jxr_linenumber" name="L107" href="#L107">107</a> <em class="jxr_javadoccomment"> * @throws Exception</em>
<a class="jxr_linenumber" name="L108" href="#L108">108</a> <em class="jxr_javadoccomment"> */</em>
<a class="jxr_linenumber" name="L109" href="#L109">109</a> @Test
<a class="jxr_linenumber" name="L110" href="#L110">110</a> <strong class="jxr_keyword">public</strong> <strong class="jxr_keyword">void</strong> testGenerateXMLReport() <strong class="jxr_keyword">throws</strong> Exception {
<a class="jxr_linenumber" name="L111" href="#L111">111</a> String templateName = <span class="jxr_string">"XmlReport"</span>;
<a class="jxr_linenumber" name="L112" href="#L112">112</a>
<a class="jxr_linenumber" name="L113" href="#L113">113</a> File f = <strong class="jxr_keyword">new</strong> File(<span class="jxr_string">"target/test-reports"</span>);
<a class="jxr_linenumber" name="L114" href="#L114">114</a> <strong class="jxr_keyword">if</strong> (!f.exists()) {
<a class="jxr_linenumber" name="L115" href="#L115">115</a> f.mkdir();
<a class="jxr_linenumber" name="L116" href="#L116">116</a> }
<a class="jxr_linenumber" name="L117" href="#L117">117</a> String writeTo = <span class="jxr_string">"target/test-reports/Report.xml"</span>;
<a class="jxr_linenumber" name="L118" href="#L118">118</a>
<a class="jxr_linenumber" name="L119" href="#L119">119</a> <em class="jxr_comment">//File struts = new File(this.getClass().getClassLoader().getResource("struts2-core-2.1.2.jar").getPath());</em>
<a class="jxr_linenumber" name="L120" href="#L120">120</a> File struts = BaseTest.getResourceAsFile(<strong class="jxr_keyword">this</strong>, <span class="jxr_string">"struts2-core-2.1.2.jar"</span>);
<a class="jxr_linenumber" name="L121" href="#L121">121</a> <em class="jxr_comment">//File axis = new File(this.getClass().getClassLoader().getResource("axis2-adb-1.4.1.jar").getPath());</em>
<a class="jxr_linenumber" name="L122" href="#L122">122</a> File axis = BaseTest.getResourceAsFile(<strong class="jxr_keyword">this</strong>, <span class="jxr_string">"axis2-adb-1.4.1.jar"</span>);
<a class="jxr_linenumber" name="L123" href="#L123">123</a> <em class="jxr_comment">//File jetty = new File(this.getClass().getClassLoader().getResource("org.mortbay.jetty.jar").getPath());</em>
<a class="jxr_linenumber" name="L124" href="#L124">124</a> File jetty = BaseTest.getResourceAsFile(<strong class="jxr_keyword">this</strong>, <span class="jxr_string">"org.mortbay.jetty.jar"</span>);
<a class="jxr_linenumber" name="L125" href="#L125">125</a>
<a class="jxr_linenumber" name="L126" href="#L126">126</a> <strong class="jxr_keyword">boolean</strong> autoUpdate = Settings.getBoolean(Settings.KEYS.AUTO_UPDATE);
<a class="jxr_linenumber" name="L127" href="#L127">127</a> Settings.setBoolean(Settings.KEYS.AUTO_UPDATE, false);
<a class="jxr_linenumber" name="L128" href="#L128">128</a> Engine engine = <strong class="jxr_keyword">new</strong> Engine();
<a class="jxr_linenumber" name="L129" href="#L129">129</a> Settings.setBoolean(Settings.KEYS.AUTO_UPDATE, autoUpdate);
<a class="jxr_linenumber" name="L130" href="#L130">130</a>
<a class="jxr_linenumber" name="L131" href="#L131">131</a> engine.scan(struts);
<a class="jxr_linenumber" name="L132" href="#L132">132</a> engine.scan(axis);
<a class="jxr_linenumber" name="L133" href="#L133">133</a> engine.scan(jetty);
<a class="jxr_linenumber" name="L134" href="#L134">134</a> engine.analyzeDependencies();
<a class="jxr_linenumber" name="L135" href="#L135">135</a>
<a class="jxr_linenumber" name="L136" href="#L136">136</a> CveDB cveDB = <strong class="jxr_keyword">new</strong> CveDB();
<a class="jxr_linenumber" name="L137" href="#L137">137</a> cveDB.open();
<a class="jxr_linenumber" name="L138" href="#L138">138</a> DatabaseProperties dbProp = cveDB.getDatabaseProperties();
<a class="jxr_linenumber" name="L139" href="#L139">139</a> cveDB.close();
<a class="jxr_linenumber" name="L140" href="#L140">140</a>
<a class="jxr_linenumber" name="L141" href="#L141">141</a> ReportGenerator generator = <strong class="jxr_keyword">new</strong> ReportGenerator(<span class="jxr_string">"Test Report"</span>, engine.getDependencies(), engine.getAnalyzers(), dbProp);
<a class="jxr_linenumber" name="L142" href="#L142">142</a> generator.generateReport(templateName, writeTo);
<a class="jxr_linenumber" name="L143" href="#L143">143</a>
<a class="jxr_linenumber" name="L144" href="#L144">144</a> engine.cleanup();
<a class="jxr_linenumber" name="L145" href="#L145">145</a>
<a class="jxr_linenumber" name="L146" href="#L146">146</a> InputStream xsdStream = ReportGenerator.<strong class="jxr_keyword">class</strong>.getClassLoader().getResourceAsStream(<span class="jxr_string">"schema/dependency-check.1.3.xsd"</span>);
<a class="jxr_linenumber" name="L147" href="#L147">147</a> StreamSource xsdSource = <strong class="jxr_keyword">new</strong> StreamSource(xsdStream);
<a class="jxr_linenumber" name="L148" href="#L148">148</a> StreamSource xmlSource = <strong class="jxr_keyword">new</strong> StreamSource(<strong class="jxr_keyword">new</strong> File(writeTo));
<a class="jxr_linenumber" name="L149" href="#L149">149</a> SchemaFactory sf = SchemaFactory.newInstance(XMLConstants.W3C_XML_SCHEMA_NS_URI);
<a class="jxr_linenumber" name="L150" href="#L150">150</a> Schema schema = sf.newSchema(xsdSource);
<a class="jxr_linenumber" name="L151" href="#L151">151</a> Validator validator = schema.newValidator();
<a class="jxr_linenumber" name="L152" href="#L152">152</a> validator.validate(xmlSource);
<a class="jxr_linenumber" name="L153" href="#L153">153</a> }
<a class="jxr_linenumber" name="L154" href="#L154">154</a> }
</pre>
<hr/>
<div id="footer">Copyright &#169; 2012&#x2013;2016 <a href="http://www.owasp.org">OWASP</a>. All rights reserved.</div>

View File

@@ -3,7 +3,7 @@
<html xml:lang="en" lang="en">
<head>
<meta http-equiv="content-type" content="text/html; charset=UTF-8" />
<title>Dependency-Check 1.3.6 Reference Package org.owasp.dependencycheck.reporting</title>
<title>Dependency-Check 1.4.0 Reference Package org.owasp.dependencycheck.reporting</title>
<link rel="stylesheet" type="text/css" href="../../../../stylesheet.css" title="style" />
</head>
<body>

View File

@@ -3,7 +3,7 @@
<html xml:lang="en" lang="en">
<head>
<meta http-equiv="content-type" content="text/html; charset=UTF-8" />
<title>Dependency-Check 1.3.6 Reference Package org.owasp.dependencycheck.reporting</title>
<title>Dependency-Check 1.4.0 Reference Package org.owasp.dependencycheck.reporting</title>
<link rel="stylesheet" type="text/css" href="../../../../stylesheet.css" title="style" />
</head>
<body>