163d1fd59SEnji Cooper /* $NetBSD: t_revoke.c,v 1.2 2017/01/13 21:15:57 christos Exp $ */
257718be8SEnji Cooper
357718be8SEnji Cooper /*-
457718be8SEnji Cooper * Copyright (c) 2011 The NetBSD Foundation, Inc.
557718be8SEnji Cooper * All rights reserved.
657718be8SEnji Cooper *
757718be8SEnji Cooper * This code is derived from software contributed to The NetBSD Foundation
857718be8SEnji Cooper * by Jukka Ruohonen.
957718be8SEnji Cooper *
1057718be8SEnji Cooper * Redistribution and use in source and binary forms, with or without
1157718be8SEnji Cooper * modification, are permitted provided that the following conditions
1257718be8SEnji Cooper * are met:
1357718be8SEnji Cooper * 1. Redistributions of source code must retain the above copyright
1457718be8SEnji Cooper * notice, this list of conditions and the following disclaimer.
1557718be8SEnji Cooper * 2. Redistributions in binary form must reproduce the above copyright
1657718be8SEnji Cooper * notice, this list of conditions and the following disclaimer in the
1757718be8SEnji Cooper * documentation and/or other materials provided with the distribution.
1857718be8SEnji Cooper *
1957718be8SEnji Cooper * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
2057718be8SEnji Cooper * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
2157718be8SEnji Cooper * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
2257718be8SEnji Cooper * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
2357718be8SEnji Cooper * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
2457718be8SEnji Cooper * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
2557718be8SEnji Cooper * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
2657718be8SEnji Cooper * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
2757718be8SEnji Cooper * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
2857718be8SEnji Cooper * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
2957718be8SEnji Cooper * POSSIBILITY OF SUCH DAMAGE.
3057718be8SEnji Cooper */
3157718be8SEnji Cooper #include <sys/cdefs.h>
3263d1fd59SEnji Cooper __RCSID("$NetBSD: t_revoke.c,v 1.2 2017/01/13 21:15:57 christos Exp $");
3357718be8SEnji Cooper
3457718be8SEnji Cooper #include <sys/resource.h>
3557718be8SEnji Cooper #include <sys/wait.h>
3657718be8SEnji Cooper
3757718be8SEnji Cooper #include <atf-c.h>
3857718be8SEnji Cooper #include <fcntl.h>
3957718be8SEnji Cooper #include <errno.h>
4057718be8SEnji Cooper #include <pwd.h>
4157718be8SEnji Cooper #include <stdio.h>
4257718be8SEnji Cooper #include <stdlib.h>
4357718be8SEnji Cooper #include <string.h>
4457718be8SEnji Cooper #include <unistd.h>
4557718be8SEnji Cooper
4657718be8SEnji Cooper static const char path[] = "revoke";
4757718be8SEnji Cooper
4857718be8SEnji Cooper ATF_TC_WITH_CLEANUP(revoke_basic);
ATF_TC_HEAD(revoke_basic,tc)4957718be8SEnji Cooper ATF_TC_HEAD(revoke_basic, tc)
5057718be8SEnji Cooper {
5157718be8SEnji Cooper atf_tc_set_md_var(tc, "descr", "A basic test of revoke(2)");
5257718be8SEnji Cooper }
5357718be8SEnji Cooper
ATF_TC_BODY(revoke_basic,tc)5457718be8SEnji Cooper ATF_TC_BODY(revoke_basic, tc)
5557718be8SEnji Cooper {
5657718be8SEnji Cooper struct rlimit res;
5757718be8SEnji Cooper char tmp[10];
5857718be8SEnji Cooper size_t i, n;
5957718be8SEnji Cooper int *buf;
6057718be8SEnji Cooper
61ff0ba872SEnji Cooper #ifdef __FreeBSD__
62*088cc7d2SAlexander Ziaee atf_tc_skip("revoke(2) is only implemented for devfs(4).");
63e996bb89SEnji Cooper #endif
6457718be8SEnji Cooper (void)memset(&res, 0, sizeof(struct rlimit));
6557718be8SEnji Cooper (void)getrlimit(RLIMIT_NOFILE, &res);
6657718be8SEnji Cooper
6757718be8SEnji Cooper if ((n = res.rlim_cur / 10) == 0)
6857718be8SEnji Cooper n = 10;
6957718be8SEnji Cooper
7057718be8SEnji Cooper buf = calloc(n, sizeof(int));
7157718be8SEnji Cooper ATF_REQUIRE(buf != NULL);
7257718be8SEnji Cooper
7357718be8SEnji Cooper buf[0] = open(path, O_RDWR | O_CREAT, 0600);
7457718be8SEnji Cooper ATF_REQUIRE(buf[0] >= 0);
7557718be8SEnji Cooper
7657718be8SEnji Cooper for (i = 1; i < n; i++) {
7757718be8SEnji Cooper buf[i] = open(path, O_RDWR);
7857718be8SEnji Cooper ATF_REQUIRE(buf[i] >= 0);
7957718be8SEnji Cooper }
8057718be8SEnji Cooper
8157718be8SEnji Cooper ATF_REQUIRE(revoke(path) == 0);
8257718be8SEnji Cooper
8357718be8SEnji Cooper for (i = 0; i < n; i++) {
8457718be8SEnji Cooper
8557718be8SEnji Cooper ATF_REQUIRE(read(buf[i], tmp, sizeof(tmp)) == -1);
8657718be8SEnji Cooper
8757718be8SEnji Cooper (void)close(buf[i]);
8857718be8SEnji Cooper }
8957718be8SEnji Cooper
9057718be8SEnji Cooper free(buf);
9157718be8SEnji Cooper
9257718be8SEnji Cooper (void)unlink(path);
9357718be8SEnji Cooper }
9457718be8SEnji Cooper
ATF_TC_CLEANUP(revoke_basic,tc)9557718be8SEnji Cooper ATF_TC_CLEANUP(revoke_basic, tc)
9657718be8SEnji Cooper {
9757718be8SEnji Cooper (void)unlink(path);
9857718be8SEnji Cooper }
9957718be8SEnji Cooper
10057718be8SEnji Cooper ATF_TC(revoke_err);
ATF_TC_HEAD(revoke_err,tc)10157718be8SEnji Cooper ATF_TC_HEAD(revoke_err, tc)
10257718be8SEnji Cooper {
10357718be8SEnji Cooper atf_tc_set_md_var(tc, "descr", "Test errors from revoke(2)");
10457718be8SEnji Cooper atf_tc_set_md_var(tc, "require.user", "unprivileged");
10557718be8SEnji Cooper }
10657718be8SEnji Cooper
ATF_TC_BODY(revoke_err,tc)10757718be8SEnji Cooper ATF_TC_BODY(revoke_err, tc)
10857718be8SEnji Cooper {
10957718be8SEnji Cooper char buf[1024 + 1]; /* XXX: From the manual page... */
11057718be8SEnji Cooper
11157718be8SEnji Cooper (void)memset(buf, 'x', sizeof(buf));
11257718be8SEnji Cooper
11357718be8SEnji Cooper errno = 0;
11457718be8SEnji Cooper ATF_REQUIRE_ERRNO(EFAULT, revoke((char *)-1) == -1);
11557718be8SEnji Cooper
11657718be8SEnji Cooper errno = 0;
11757718be8SEnji Cooper ATF_REQUIRE_ERRNO(ENAMETOOLONG, revoke(buf) == -1);
11857718be8SEnji Cooper
119ff0ba872SEnji Cooper #ifdef __FreeBSD__
120*088cc7d2SAlexander Ziaee atf_tc_skip("revoke(2) is only implemented for devfs(4).");
121e996bb89SEnji Cooper #endif
12257718be8SEnji Cooper errno = 0;
12357718be8SEnji Cooper ATF_REQUIRE_ERRNO(EPERM, revoke("/etc/passwd") == -1);
12457718be8SEnji Cooper
12557718be8SEnji Cooper errno = 0;
12657718be8SEnji Cooper ATF_REQUIRE_ERRNO(ENOENT, revoke("/etc/xxx/yyy") == -1);
12757718be8SEnji Cooper }
12857718be8SEnji Cooper
12957718be8SEnji Cooper ATF_TC_WITH_CLEANUP(revoke_perm);
ATF_TC_HEAD(revoke_perm,tc)13057718be8SEnji Cooper ATF_TC_HEAD(revoke_perm, tc)
13157718be8SEnji Cooper {
13257718be8SEnji Cooper atf_tc_set_md_var(tc, "descr", "Test permissions revoke(2)");
13357718be8SEnji Cooper atf_tc_set_md_var(tc, "require.user", "root");
13457718be8SEnji Cooper }
13557718be8SEnji Cooper
ATF_TC_BODY(revoke_perm,tc)13657718be8SEnji Cooper ATF_TC_BODY(revoke_perm, tc)
13757718be8SEnji Cooper {
13857718be8SEnji Cooper struct passwd *pw;
13957718be8SEnji Cooper int fd, sta;
14057718be8SEnji Cooper pid_t pid;
14157718be8SEnji Cooper
142ff0ba872SEnji Cooper #ifdef __FreeBSD__
143*088cc7d2SAlexander Ziaee atf_tc_skip("revoke(2) is only implemented for devfs(4).");
144e996bb89SEnji Cooper #endif
14557718be8SEnji Cooper pw = getpwnam("nobody");
14657718be8SEnji Cooper fd = open(path, O_RDWR | O_CREAT, 0600);
14757718be8SEnji Cooper
14857718be8SEnji Cooper ATF_REQUIRE(fd >= 0);
14957718be8SEnji Cooper ATF_REQUIRE(pw != NULL);
15057718be8SEnji Cooper ATF_REQUIRE(revoke(path) == 0);
15157718be8SEnji Cooper
15257718be8SEnji Cooper pid = fork();
15357718be8SEnji Cooper ATF_REQUIRE(pid >= 0);
15457718be8SEnji Cooper
15557718be8SEnji Cooper if (pid == 0) {
15657718be8SEnji Cooper
15757718be8SEnji Cooper if (setuid(pw->pw_uid) != 0)
15857718be8SEnji Cooper _exit(EXIT_FAILURE);
15957718be8SEnji Cooper
16057718be8SEnji Cooper errno = 0;
16157718be8SEnji Cooper
16257718be8SEnji Cooper if (revoke(path) == 0)
16357718be8SEnji Cooper _exit(EXIT_FAILURE);
16457718be8SEnji Cooper
16557718be8SEnji Cooper if (errno != EACCES)
16657718be8SEnji Cooper _exit(EXIT_FAILURE);
16757718be8SEnji Cooper
16857718be8SEnji Cooper if (close(fd) != 0)
16957718be8SEnji Cooper _exit(EXIT_FAILURE);
17057718be8SEnji Cooper
17157718be8SEnji Cooper _exit(EXIT_SUCCESS);
17257718be8SEnji Cooper }
17357718be8SEnji Cooper
17457718be8SEnji Cooper (void)wait(&sta);
17557718be8SEnji Cooper
17657718be8SEnji Cooper if (WIFEXITED(sta) == 0 || WEXITSTATUS(sta) != EXIT_SUCCESS)
17757718be8SEnji Cooper atf_tc_fail("revoke(2) did not obey permissions");
17857718be8SEnji Cooper
179fcc9604dSEnji Cooper (void)close(fd);
18057718be8SEnji Cooper ATF_REQUIRE(unlink(path) == 0);
18157718be8SEnji Cooper }
18257718be8SEnji Cooper
ATF_TC_CLEANUP(revoke_perm,tc)18357718be8SEnji Cooper ATF_TC_CLEANUP(revoke_perm, tc)
18457718be8SEnji Cooper {
18557718be8SEnji Cooper (void)unlink(path);
18657718be8SEnji Cooper }
18757718be8SEnji Cooper
ATF_TP_ADD_TCS(tp)18857718be8SEnji Cooper ATF_TP_ADD_TCS(tp)
18957718be8SEnji Cooper {
19057718be8SEnji Cooper
19157718be8SEnji Cooper ATF_TP_ADD_TC(tp, revoke_basic);
19257718be8SEnji Cooper ATF_TP_ADD_TC(tp, revoke_err);
19357718be8SEnji Cooper ATF_TP_ADD_TC(tp, revoke_perm);
19457718be8SEnji Cooper
19557718be8SEnji Cooper return atf_no_error();
19657718be8SEnji Cooper }
197