1*79588897SClaudio Jeker /*-
2*79588897SClaudio Jeker * SPDX-License-Identifier: BSD-2-Clause
3*79588897SClaudio Jeker *
4*79588897SClaudio Jeker * Copyright (c) 2022, Klara Inc.
5*79588897SClaudio Jeker * Copyright (c) 2022, Claudio Jeker <claudio@openbsd.org>
6*79588897SClaudio Jeker *
7*79588897SClaudio Jeker * Redistribution and use in source and binary forms, with or without
8*79588897SClaudio Jeker * modification, are permitted provided that the following conditions are
9*79588897SClaudio Jeker * met:
10*79588897SClaudio Jeker * 1. Redistributions of source code must retain the above copyright
11*79588897SClaudio Jeker * notice, this list of conditions and the following disclaimer.
12*79588897SClaudio Jeker * 2. Redistributions in binary form must reproduce the above copyright
13*79588897SClaudio Jeker * notice, this list of conditions and the following disclaimer in
14*79588897SClaudio Jeker * the documentation and/or other materials provided with the
15*79588897SClaudio Jeker * distribution.
16*79588897SClaudio Jeker *
17*79588897SClaudio Jeker * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
18*79588897SClaudio Jeker * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
19*79588897SClaudio Jeker * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
20*79588897SClaudio Jeker * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
21*79588897SClaudio Jeker * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
22*79588897SClaudio Jeker * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
23*79588897SClaudio Jeker * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
24*79588897SClaudio Jeker * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
25*79588897SClaudio Jeker * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
26*79588897SClaudio Jeker * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
27*79588897SClaudio Jeker * SUCH DAMAGE.
28*79588897SClaudio Jeker */
29*79588897SClaudio Jeker
30*79588897SClaudio Jeker #include <sys/param.h>
31*79588897SClaudio Jeker #include <sys/linker.h>
32*79588897SClaudio Jeker #include <sys/socket.h>
33*79588897SClaudio Jeker
34*79588897SClaudio Jeker #include <netinet/in.h>
35*79588897SClaudio Jeker #include <netinet/tcp.h>
36*79588897SClaudio Jeker
37*79588897SClaudio Jeker #include <fcntl.h>
38*79588897SClaudio Jeker #include <unistd.h>
39*79588897SClaudio Jeker #include <err.h>
40*79588897SClaudio Jeker
41*79588897SClaudio Jeker #include <atf-c.h>
42*79588897SClaudio Jeker
43*79588897SClaudio Jeker void test_tcp_md5_getsockopt(int);
44*79588897SClaudio Jeker
45*79588897SClaudio Jeker void
test_tcp_md5_getsockopt(int v6)46*79588897SClaudio Jeker test_tcp_md5_getsockopt(int v6)
47*79588897SClaudio Jeker {
48*79588897SClaudio Jeker if (kldfind("tcpmd5.ko") == -1)
49*79588897SClaudio Jeker atf_tc_skip("Test requires the tcpmd5 kernel module to be loaded");
50*79588897SClaudio Jeker
51*79588897SClaudio Jeker struct sockaddr_in *s;
52*79588897SClaudio Jeker struct sockaddr_in6 s6 = { 0 };
53*79588897SClaudio Jeker struct sockaddr_in s4 = { 0 };
54*79588897SClaudio Jeker socklen_t len;
55*79588897SClaudio Jeker int csock, ssock, opt;
56*79588897SClaudio Jeker int pf;
57*79588897SClaudio Jeker
58*79588897SClaudio Jeker if (v6) {
59*79588897SClaudio Jeker pf = PF_INET6;
60*79588897SClaudio Jeker len = sizeof(s6);
61*79588897SClaudio Jeker
62*79588897SClaudio Jeker s6.sin6_family = pf;
63*79588897SClaudio Jeker s6.sin6_len = sizeof(s6);
64*79588897SClaudio Jeker s6.sin6_addr = in6addr_loopback;
65*79588897SClaudio Jeker s6.sin6_port = 0;
66*79588897SClaudio Jeker
67*79588897SClaudio Jeker s = (struct sockaddr_in *)&s6;
68*79588897SClaudio Jeker } else {
69*79588897SClaudio Jeker pf = PF_INET;
70*79588897SClaudio Jeker len = sizeof(s4);
71*79588897SClaudio Jeker
72*79588897SClaudio Jeker s4.sin_family = pf;
73*79588897SClaudio Jeker s4.sin_len = sizeof(s4);
74*79588897SClaudio Jeker s4.sin_addr.s_addr = htonl(INADDR_LOOPBACK);
75*79588897SClaudio Jeker s4.sin_port = 0;
76*79588897SClaudio Jeker
77*79588897SClaudio Jeker s = &s4;
78*79588897SClaudio Jeker }
79*79588897SClaudio Jeker
80*79588897SClaudio Jeker if ((ssock = socket(pf, SOCK_STREAM, 0)) == -1)
81*79588897SClaudio Jeker atf_tc_fail("creating server socket");
82*79588897SClaudio Jeker
83*79588897SClaudio Jeker fcntl(ssock, F_SETFL, O_NONBLOCK);
84*79588897SClaudio Jeker
85*79588897SClaudio Jeker if ((bind(ssock, (struct sockaddr *)s, len) == -1))
86*79588897SClaudio Jeker atf_tc_fail("binding to localhost");
87*79588897SClaudio Jeker
88*79588897SClaudio Jeker getsockname(ssock, (struct sockaddr *)s, &len);
89*79588897SClaudio Jeker
90*79588897SClaudio Jeker listen(ssock, 1);
91*79588897SClaudio Jeker
92*79588897SClaudio Jeker if ((csock = socket(pf, SOCK_STREAM, 0)) == -1)
93*79588897SClaudio Jeker atf_tc_fail("creating client socket");
94*79588897SClaudio Jeker
95*79588897SClaudio Jeker if (connect(csock, (struct sockaddr *)s, len) == -1)
96*79588897SClaudio Jeker atf_tc_fail("connecting to server instance");
97*79588897SClaudio Jeker
98*79588897SClaudio Jeker if (getsockopt(csock, IPPROTO_TCP, TCP_MD5SIG, &opt, &len) == -1)
99*79588897SClaudio Jeker atf_tc_fail("getsockopt");
100*79588897SClaudio Jeker
101*79588897SClaudio Jeker close(csock);
102*79588897SClaudio Jeker close(ssock);
103*79588897SClaudio Jeker
104*79588897SClaudio Jeker atf_tc_pass();
105*79588897SClaudio Jeker }
106*79588897SClaudio Jeker
107*79588897SClaudio Jeker ATF_TC(tcp_md5_getsockopt_v4);
ATF_TC_HEAD(tcp_md5_getsockopt_v4,tc)108*79588897SClaudio Jeker ATF_TC_HEAD(tcp_md5_getsockopt_v4, tc)
109*79588897SClaudio Jeker {
110*79588897SClaudio Jeker atf_tc_set_md_var(tc, "descr", "Test getsockopt for TCP MD5 SIG (IPv4)");
111*79588897SClaudio Jeker }
112*79588897SClaudio Jeker
ATF_TC_BODY(tcp_md5_getsockopt_v4,tc)113*79588897SClaudio Jeker ATF_TC_BODY(tcp_md5_getsockopt_v4, tc)
114*79588897SClaudio Jeker {
115*79588897SClaudio Jeker test_tcp_md5_getsockopt(0);
116*79588897SClaudio Jeker }
117*79588897SClaudio Jeker
118*79588897SClaudio Jeker ATF_TC(tcp_md5_getsockopt_v6);
ATF_TC_HEAD(tcp_md5_getsockopt_v6,tc)119*79588897SClaudio Jeker ATF_TC_HEAD(tcp_md5_getsockopt_v6, tc)
120*79588897SClaudio Jeker {
121*79588897SClaudio Jeker atf_tc_set_md_var(tc, "descr", "Test getsockopt for TCP MD5 SIG (IPv6)");
122*79588897SClaudio Jeker }
123*79588897SClaudio Jeker
ATF_TC_BODY(tcp_md5_getsockopt_v6,tc)124*79588897SClaudio Jeker ATF_TC_BODY(tcp_md5_getsockopt_v6, tc)
125*79588897SClaudio Jeker {
126*79588897SClaudio Jeker test_tcp_md5_getsockopt(1);
127*79588897SClaudio Jeker }
128*79588897SClaudio Jeker
ATF_TP_ADD_TCS(tp)129*79588897SClaudio Jeker ATF_TP_ADD_TCS(tp)
130*79588897SClaudio Jeker {
131*79588897SClaudio Jeker ATF_TP_ADD_TC(tp, tcp_md5_getsockopt_v4);
132*79588897SClaudio Jeker ATF_TP_ADD_TC(tp, tcp_md5_getsockopt_v6);
133*79588897SClaudio Jeker
134*79588897SClaudio Jeker return atf_no_error();
135*79588897SClaudio Jeker }
136