xref: /freebsd/tests/sys/audit/file-close.c (revision 2a0c0aea42092f89c2a5345991e6e3ce4cbef99a)
1 /*-
2  * Copyright 2018 Aniket Pandey
3  *
4  * Redistribution and use in source and binary forms, with or without
5  * modification, are permitted provided that the following conditions
6  * are met:
7  * 1. Redistributions of source code must retain the above copyright
8  *    notice, this list of conditions and the following disclaimer.
9  * 2. Redistributions in binary form must reproduce the above copyright
10  *    notice, this list of conditions and the following disclaimer in the
11  *    documentation and/or other materials provided with the distribution.
12  *
13  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
14  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
15  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
16  * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
17  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
18  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
19  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
20  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
21  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
22  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
23  * SUCH DAMAGE.
24  *
25  * $FreeBSD$
26  */
27 
28 #include <sys/mman.h>
29 #include <sys/stat.h>
30 
31 #include <atf-c.h>
32 #include <fcntl.h>
33 #include <limits.h>
34 #include <stdint.h>
35 #include <stdlib.h>
36 #include <unistd.h>
37 
38 #include "utils.h"
39 
40 static pid_t pid;
41 static struct pollfd fds[1];
42 static mode_t mode = 0777;
43 static int filedesc;
44 static char extregex[80];
45 static struct stat statbuff;
46 static const char *auclass = "cl";
47 static const char *path = "fileforaudit";
48 static const char *errpath = "dirdoesnotexist/fileforaudit";
49 static const char *failurereg = "fileforaudit.*return,failure";
50 
51 
52 ATF_TC_WITH_CLEANUP(munmap_success);
53 ATF_TC_HEAD(munmap_success, tc)
54 {
55 	atf_tc_set_md_var(tc, "descr", "Tests the audit of a successful "
56 					"munmap(2) call");
57 }
58 
59 ATF_TC_BODY(munmap_success, tc)
60 {
61 	pid = getpid();
62 	snprintf(extregex, sizeof(extregex), "munmap.*%d.*return,success", pid);
63 
64 	/* Allocate sample memory, to be removed by munmap(2) */
65 	char *addr = mmap(NULL, sizeof(char), PROT_READ , MAP_ANONYMOUS, -1, 0);
66 	FILE *pipefd = setup(fds, auclass);
67 	ATF_REQUIRE_EQ(0, munmap(addr, sizeof(char)));
68 	check_audit(fds, extregex, pipefd);
69 }
70 
71 ATF_TC_CLEANUP(munmap_success, tc)
72 {
73 	cleanup();
74 }
75 
76 
77 ATF_TC_WITH_CLEANUP(munmap_failure);
78 ATF_TC_HEAD(munmap_failure, tc)
79 {
80 	atf_tc_set_md_var(tc, "descr", "Tests the audit of an unsuccessful "
81 					"munmap(2) call");
82 }
83 
84 ATF_TC_BODY(munmap_failure, tc)
85 {
86 	const char *regex = "munmap.*return,failure : Invalid argument";
87 	FILE *pipefd = setup(fds, auclass);
88 	ATF_REQUIRE_EQ(-1, munmap((void *)SIZE_MAX, -1));
89 	check_audit(fds, regex, pipefd);
90 }
91 
92 ATF_TC_CLEANUP(munmap_failure, tc)
93 {
94 	cleanup();
95 }
96 
97 
98 ATF_TC_WITH_CLEANUP(close_success);
99 ATF_TC_HEAD(close_success, tc)
100 {
101 	atf_tc_set_md_var(tc, "descr", "Tests the audit of a successful "
102 					"close(2) call");
103 }
104 
105 ATF_TC_BODY(close_success, tc)
106 {
107 	/* File needs to exist to call close(2) */
108 	ATF_REQUIRE((filedesc = open(path, O_CREAT | O_RDWR, mode)) != -1);
109 	/* Call stat(2) to store the Inode number of 'path' */
110 	ATF_REQUIRE_EQ(0, stat(path, &statbuff));
111 	FILE *pipefd = setup(fds, auclass);
112 	ATF_REQUIRE_EQ(0, close(filedesc));
113 
114 	/* intmax_t to support all architectures */
115 	snprintf(extregex, sizeof(extregex), "close.*%jd.*return,succes",
116 			(intmax_t)statbuff.st_ino);
117 	check_audit(fds, extregex, pipefd);
118 }
119 
120 ATF_TC_CLEANUP(close_success, tc)
121 {
122 	cleanup();
123 }
124 
125 
126 ATF_TC_WITH_CLEANUP(close_failure);
127 ATF_TC_HEAD(close_failure, tc)
128 {
129 	atf_tc_set_md_var(tc, "descr", "Tests the audit of an unsuccessful "
130 					"close(2) call");
131 }
132 
133 ATF_TC_BODY(close_failure, tc)
134 {
135 	const char *regex = "close.*return,failure";
136 	FILE *pipefd = setup(fds, auclass);
137 	/* Failure reason: file does not exist */
138 	ATF_REQUIRE_EQ(-1, close(-1));
139 	check_audit(fds, regex, pipefd);
140 }
141 
142 ATF_TC_CLEANUP(close_failure, tc)
143 {
144 	cleanup();
145 }
146 
147 
148 ATF_TC_WITH_CLEANUP(closefrom_success);
149 ATF_TC_HEAD(closefrom_success, tc)
150 {
151 	atf_tc_set_md_var(tc, "descr", "Tests the audit of a successful "
152 					"closefrom(2) call");
153 }
154 
155 ATF_TC_BODY(closefrom_success, tc)
156 {
157 	const char *regex = "close_range\\(2\\),.*,0x7fffffff,lowfd,.*"
158 	    "0xffffffff,highfd,.*return,success";
159 	FILE *pipefd = setup(fds, auclass);
160 
161 	/* closefrom(2) returns 'void' */
162 	closefrom(INT_MAX);
163 	check_audit(fds, regex, pipefd);
164 }
165 
166 ATF_TC_CLEANUP(closefrom_success, tc)
167 {
168 	cleanup();
169 }
170 
171 
172 ATF_TC_WITH_CLEANUP(revoke_success);
173 ATF_TC_HEAD(revoke_success, tc)
174 {
175 	atf_tc_set_md_var(tc, "descr", "Tests the audit of a successful "
176 					"revoke(2) call");
177 }
178 
179 ATF_TC_BODY(revoke_success, tc)
180 {
181 	char *ptyname;
182 	pid = getpid();
183 	snprintf(extregex, sizeof(extregex), "revoke.*%d.*return,success", pid);
184 
185 	/* Obtain a pseudo terminal and get the path to slave device */
186 	ATF_REQUIRE((filedesc = posix_openpt(O_RDWR | O_NOCTTY)) != -1);
187 	ATF_REQUIRE((ptyname = ptsname(filedesc)) != NULL);
188 
189 	FILE *pipefd = setup(fds, auclass);
190 	ATF_REQUIRE_EQ(0, revoke(ptyname));
191 	check_audit(fds, extregex, pipefd);
192 	close(filedesc);
193 }
194 
195 ATF_TC_CLEANUP(revoke_success, tc)
196 {
197 	cleanup();
198 }
199 
200 
201 ATF_TC_WITH_CLEANUP(revoke_failure);
202 ATF_TC_HEAD(revoke_failure, tc)
203 {
204 	atf_tc_set_md_var(tc, "descr", "Tests the audit of an unsuccessful "
205 					"revoke(2) call");
206 }
207 
208 ATF_TC_BODY(revoke_failure, tc)
209 {
210 	FILE *pipefd = setup(fds, auclass);
211 	/* Failure reason: file does not exist */
212 	ATF_REQUIRE_EQ(-1, revoke(errpath));
213 	check_audit(fds, failurereg, pipefd);
214 }
215 
216 ATF_TC_CLEANUP(revoke_failure, tc)
217 {
218 	cleanup();
219 }
220 
221 
222 ATF_TP_ADD_TCS(tp)
223 {
224 	ATF_TP_ADD_TC(tp, munmap_success);
225 	ATF_TP_ADD_TC(tp, munmap_failure);
226 
227 	ATF_TP_ADD_TC(tp, close_success);
228 	ATF_TP_ADD_TC(tp, close_failure);
229 	ATF_TP_ADD_TC(tp, closefrom_success);
230 
231 	ATF_TP_ADD_TC(tp, revoke_success);
232 	ATF_TP_ADD_TC(tp, revoke_failure);
233 
234 	return (atf_no_error());
235 }
236