157718be8SEnji Cooper /* $NetBSD: t_revoke.c,v 1.1 2011/07/07 06:57:54 jruoho Exp $ */ 257718be8SEnji Cooper 357718be8SEnji Cooper /*- 457718be8SEnji Cooper * Copyright (c) 2011 The NetBSD Foundation, Inc. 557718be8SEnji Cooper * All rights reserved. 657718be8SEnji Cooper * 757718be8SEnji Cooper * This code is derived from software contributed to The NetBSD Foundation 857718be8SEnji Cooper * by Jukka Ruohonen. 957718be8SEnji Cooper * 1057718be8SEnji Cooper * Redistribution and use in source and binary forms, with or without 1157718be8SEnji Cooper * modification, are permitted provided that the following conditions 1257718be8SEnji Cooper * are met: 1357718be8SEnji Cooper * 1. Redistributions of source code must retain the above copyright 1457718be8SEnji Cooper * notice, this list of conditions and the following disclaimer. 1557718be8SEnji Cooper * 2. Redistributions in binary form must reproduce the above copyright 1657718be8SEnji Cooper * notice, this list of conditions and the following disclaimer in the 1757718be8SEnji Cooper * documentation and/or other materials provided with the distribution. 1857718be8SEnji Cooper * 1957718be8SEnji Cooper * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS 2057718be8SEnji Cooper * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED 2157718be8SEnji Cooper * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR 2257718be8SEnji Cooper * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS 2357718be8SEnji Cooper * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR 2457718be8SEnji Cooper * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF 2557718be8SEnji Cooper * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS 2657718be8SEnji Cooper * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN 2757718be8SEnji Cooper * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 2857718be8SEnji Cooper * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE 2957718be8SEnji Cooper * POSSIBILITY OF SUCH DAMAGE. 3057718be8SEnji Cooper */ 3157718be8SEnji Cooper #include <sys/cdefs.h> 3257718be8SEnji Cooper __RCSID("$NetBSD: t_revoke.c,v 1.1 2011/07/07 06:57:54 jruoho Exp $"); 3357718be8SEnji Cooper 3457718be8SEnji Cooper #include <sys/resource.h> 3557718be8SEnji Cooper #include <sys/wait.h> 3657718be8SEnji Cooper 3757718be8SEnji Cooper #include <atf-c.h> 3857718be8SEnji Cooper #include <fcntl.h> 3957718be8SEnji Cooper #include <errno.h> 4057718be8SEnji Cooper #include <pwd.h> 4157718be8SEnji Cooper #include <stdio.h> 4257718be8SEnji Cooper #include <stdlib.h> 4357718be8SEnji Cooper #include <string.h> 4457718be8SEnji Cooper #include <unistd.h> 4557718be8SEnji Cooper 4657718be8SEnji Cooper static const char path[] = "revoke"; 4757718be8SEnji Cooper 4857718be8SEnji Cooper ATF_TC_WITH_CLEANUP(revoke_basic); 4957718be8SEnji Cooper ATF_TC_HEAD(revoke_basic, tc) 5057718be8SEnji Cooper { 5157718be8SEnji Cooper atf_tc_set_md_var(tc, "descr", "A basic test of revoke(2)"); 5257718be8SEnji Cooper } 5357718be8SEnji Cooper 5457718be8SEnji Cooper ATF_TC_BODY(revoke_basic, tc) 5557718be8SEnji Cooper { 5657718be8SEnji Cooper struct rlimit res; 5757718be8SEnji Cooper char tmp[10]; 5857718be8SEnji Cooper size_t i, n; 5957718be8SEnji Cooper int *buf; 6057718be8SEnji Cooper 61ff0ba872SEnji Cooper #ifdef __FreeBSD__ 62e996bb89SEnji Cooper atf_tc_skip("revoke(2) is only implemented for devfs(5)."); 63e996bb89SEnji Cooper #endif 6457718be8SEnji Cooper (void)memset(&res, 0, sizeof(struct rlimit)); 6557718be8SEnji Cooper (void)getrlimit(RLIMIT_NOFILE, &res); 6657718be8SEnji Cooper 6757718be8SEnji Cooper if ((n = res.rlim_cur / 10) == 0) 6857718be8SEnji Cooper n = 10; 6957718be8SEnji Cooper 7057718be8SEnji Cooper buf = calloc(n, sizeof(int)); 7157718be8SEnji Cooper ATF_REQUIRE(buf != NULL); 7257718be8SEnji Cooper 7357718be8SEnji Cooper buf[0] = open(path, O_RDWR | O_CREAT, 0600); 7457718be8SEnji Cooper ATF_REQUIRE(buf[0] >= 0); 7557718be8SEnji Cooper 7657718be8SEnji Cooper for (i = 1; i < n; i++) { 7757718be8SEnji Cooper buf[i] = open(path, O_RDWR); 7857718be8SEnji Cooper ATF_REQUIRE(buf[i] >= 0); 7957718be8SEnji Cooper } 8057718be8SEnji Cooper 8157718be8SEnji Cooper ATF_REQUIRE(revoke(path) == 0); 8257718be8SEnji Cooper 8357718be8SEnji Cooper for (i = 0; i < n; i++) { 8457718be8SEnji Cooper 8557718be8SEnji Cooper ATF_REQUIRE(read(buf[i], tmp, sizeof(tmp)) == -1); 8657718be8SEnji Cooper 8757718be8SEnji Cooper (void)close(buf[i]); 8857718be8SEnji Cooper } 8957718be8SEnji Cooper 9057718be8SEnji Cooper free(buf); 9157718be8SEnji Cooper 9257718be8SEnji Cooper (void)unlink(path); 9357718be8SEnji Cooper } 9457718be8SEnji Cooper 9557718be8SEnji Cooper ATF_TC_CLEANUP(revoke_basic, tc) 9657718be8SEnji Cooper { 9757718be8SEnji Cooper (void)unlink(path); 9857718be8SEnji Cooper } 9957718be8SEnji Cooper 10057718be8SEnji Cooper ATF_TC(revoke_err); 10157718be8SEnji Cooper ATF_TC_HEAD(revoke_err, tc) 10257718be8SEnji Cooper { 10357718be8SEnji Cooper atf_tc_set_md_var(tc, "descr", "Test errors from revoke(2)"); 10457718be8SEnji Cooper atf_tc_set_md_var(tc, "require.user", "unprivileged"); 10557718be8SEnji Cooper } 10657718be8SEnji Cooper 10757718be8SEnji Cooper ATF_TC_BODY(revoke_err, tc) 10857718be8SEnji Cooper { 10957718be8SEnji Cooper char buf[1024 + 1]; /* XXX: From the manual page... */ 11057718be8SEnji Cooper 11157718be8SEnji Cooper (void)memset(buf, 'x', sizeof(buf)); 11257718be8SEnji Cooper 11357718be8SEnji Cooper errno = 0; 11457718be8SEnji Cooper ATF_REQUIRE_ERRNO(EFAULT, revoke((char *)-1) == -1); 11557718be8SEnji Cooper 11657718be8SEnji Cooper errno = 0; 11757718be8SEnji Cooper ATF_REQUIRE_ERRNO(ENAMETOOLONG, revoke(buf) == -1); 11857718be8SEnji Cooper 119ff0ba872SEnji Cooper #ifdef __FreeBSD__ 120e996bb89SEnji Cooper atf_tc_skip("revoke(2) is only implemented for devfs(5)."); 121e996bb89SEnji Cooper #endif 12257718be8SEnji Cooper errno = 0; 12357718be8SEnji Cooper ATF_REQUIRE_ERRNO(EPERM, revoke("/etc/passwd") == -1); 12457718be8SEnji Cooper 12557718be8SEnji Cooper errno = 0; 12657718be8SEnji Cooper ATF_REQUIRE_ERRNO(ENOENT, revoke("/etc/xxx/yyy") == -1); 12757718be8SEnji Cooper } 12857718be8SEnji Cooper 12957718be8SEnji Cooper ATF_TC_WITH_CLEANUP(revoke_perm); 13057718be8SEnji Cooper ATF_TC_HEAD(revoke_perm, tc) 13157718be8SEnji Cooper { 13257718be8SEnji Cooper atf_tc_set_md_var(tc, "descr", "Test permissions revoke(2)"); 13357718be8SEnji Cooper atf_tc_set_md_var(tc, "require.user", "root"); 13457718be8SEnji Cooper } 13557718be8SEnji Cooper 13657718be8SEnji Cooper ATF_TC_BODY(revoke_perm, tc) 13757718be8SEnji Cooper { 13857718be8SEnji Cooper struct passwd *pw; 13957718be8SEnji Cooper int fd, sta; 14057718be8SEnji Cooper pid_t pid; 14157718be8SEnji Cooper 142ff0ba872SEnji Cooper #ifdef __FreeBSD__ 143e996bb89SEnji Cooper atf_tc_skip("revoke(2) is only implemented for devfs(5)."); 144e996bb89SEnji Cooper #endif 14557718be8SEnji Cooper pw = getpwnam("nobody"); 14657718be8SEnji Cooper fd = open(path, O_RDWR | O_CREAT, 0600); 14757718be8SEnji Cooper 14857718be8SEnji Cooper ATF_REQUIRE(fd >= 0); 14957718be8SEnji Cooper ATF_REQUIRE(pw != NULL); 15057718be8SEnji Cooper ATF_REQUIRE(revoke(path) == 0); 15157718be8SEnji Cooper 15257718be8SEnji Cooper pid = fork(); 15357718be8SEnji Cooper ATF_REQUIRE(pid >= 0); 15457718be8SEnji Cooper 15557718be8SEnji Cooper if (pid == 0) { 15657718be8SEnji Cooper 15757718be8SEnji Cooper if (setuid(pw->pw_uid) != 0) 15857718be8SEnji Cooper _exit(EXIT_FAILURE); 15957718be8SEnji Cooper 16057718be8SEnji Cooper errno = 0; 16157718be8SEnji Cooper 16257718be8SEnji Cooper if (revoke(path) == 0) 16357718be8SEnji Cooper _exit(EXIT_FAILURE); 16457718be8SEnji Cooper 16557718be8SEnji Cooper if (errno != EACCES) 16657718be8SEnji Cooper _exit(EXIT_FAILURE); 16757718be8SEnji Cooper 16857718be8SEnji Cooper if (close(fd) != 0) 16957718be8SEnji Cooper _exit(EXIT_FAILURE); 17057718be8SEnji Cooper 17157718be8SEnji Cooper _exit(EXIT_SUCCESS); 17257718be8SEnji Cooper } 17357718be8SEnji Cooper 17457718be8SEnji Cooper (void)wait(&sta); 17557718be8SEnji Cooper 17657718be8SEnji Cooper if (WIFEXITED(sta) == 0 || WEXITSTATUS(sta) != EXIT_SUCCESS) 17757718be8SEnji Cooper atf_tc_fail("revoke(2) did not obey permissions"); 17857718be8SEnji Cooper 179*fcc9604dSEnji Cooper #ifdef __FreeBSD__ 180*fcc9604dSEnji Cooper (void)close(fd); 181*fcc9604dSEnji Cooper #endif 18257718be8SEnji Cooper ATF_REQUIRE(unlink(path) == 0); 18357718be8SEnji Cooper } 18457718be8SEnji Cooper 18557718be8SEnji Cooper ATF_TC_CLEANUP(revoke_perm, tc) 18657718be8SEnji Cooper { 18757718be8SEnji Cooper (void)unlink(path); 18857718be8SEnji Cooper } 18957718be8SEnji Cooper 19057718be8SEnji Cooper ATF_TP_ADD_TCS(tp) 19157718be8SEnji Cooper { 19257718be8SEnji Cooper 19357718be8SEnji Cooper ATF_TP_ADD_TC(tp, revoke_basic); 19457718be8SEnji Cooper ATF_TP_ADD_TC(tp, revoke_err); 19557718be8SEnji Cooper ATF_TP_ADD_TC(tp, revoke_perm); 19657718be8SEnji Cooper 19757718be8SEnji Cooper return atf_no_error(); 19857718be8SEnji Cooper } 199