xref: /freebsd/tests/sys/netinet6/frag6/frag6_07.py (revision 99282790b7d01ec3c4072621d46a0d7302517ad4)
1#!/usr/bin/env python
2#-
3# SPDX-License-Identifier: BSD-2-Clause
4#
5# Copyright (c) 2019 Netflix, Inc.
6#
7# Redistribution and use in source and binary forms, with or without
8# modification, are permitted provided that the following conditions
9# are met:
10# 1. Redistributions of source code must retain the above copyright
11#    notice, this list of conditions and the following disclaimer.
12# 2. Redistributions in binary form must reproduce the above copyright
13#    notice, this list of conditions and the following disclaimer in the
14#    documentation and/or other materials provided with the distribution.
15#
16# THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
17# ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
18# IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
19# ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
20# FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
21# DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
22# OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
23# HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
24# LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
25# OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
26# SUCH DAMAGE.
27#
28# $FreeBSD$
29#
30
31import argparse
32import scapy.all as sp
33import socket
34import sys
35from sniffer import Sniffer
36from time import sleep
37
38def check_icmp6_error(args, packet):
39	ip6 = packet.getlayer(sp.IPv6)
40	if not ip6:
41		return False
42	oip6 = sp.IPv6(src=args.src[0], dst=args.to[0])
43	if ip6.dst != oip6.src:
44		return False
45	icmp6 = packet.getlayer(sp.ICMPv6ParamProblem)
46	if not icmp6:
47		return False
48	# ICMP6_PARAMPROB_HEADER 0
49	if icmp6.code != 0:
50		return False
51	# Should we check the payload as well?
52	# We are running in a very isolated environment and nothing else
53	# should trigger an ICMPv6 Param Prob so leave it.
54	#icmp6.display()
55	return True
56
57def check_icmp6_error_2(args, packet):
58	ip6 = packet.getlayer(sp.IPv6)
59	if not ip6:
60		return False
61	oip6 = sp.IPv6(src=args.src[0], dst=args.to[0])
62	if ip6.dst != oip6.src:
63		return False
64	icmp6 = packet.getlayer(sp.ICMPv6TimeExceeded)
65	if not icmp6:
66		return False
67	# ICMP6_TIME_EXCEED_REASSEMBLY 1
68	if icmp6.code != 1:
69		return False
70	# Should we check the payload as well?
71	# We are running in a very isolated environment and nothing else
72	# should trigger an ICMPv6 Time Exceeded / Frag reassembly so leave it.
73	#icmp6.display()
74	return True
75
76def main():
77	parser = argparse.ArgumentParser("frag6.py",
78		description="IPv6 fragementation test tool")
79	parser.add_argument('--sendif', nargs=1,
80		required=True,
81		help='The interface through which the packet will be sent')
82	parser.add_argument('--recvif', nargs=1,
83		required=True,
84		help='The interface on which to check for the packet')
85	parser.add_argument('--src', nargs=1,
86		required=True,
87		help='The source IP address')
88	parser.add_argument('--to', nargs=1,
89		required=True,
90		help='The destination IP address')
91	parser.add_argument('--debug',
92		required=False, action='store_true',
93		help='Enable test debugging')
94
95	args = parser.parse_args()
96
97
98	# Start sniffing on recvif
99	sniffer = Sniffer(args, check_icmp6_error)
100	sniffer2 = Sniffer(args, check_icmp6_error_2)
101
102
103	########################################################################
104	#
105	# Two fragments with payload and offset set to add up to >64k.
106	#
107	# Make a first fragment arrive and a second to explode everything.
108	#
109	# A:  Reassembly failure.
110	# R:  ICMPv6 param prob, param header.
111	# R:  ICMPv6 timeout (1st frag, off=0)
112	#
113	data = "6" * 1280
114	ip6f01 = \
115		sp.Ether() / \
116		sp.IPv6(src=args.src[0], dst=args.to[0]) / \
117		sp.IPv6ExtHdrFragment(offset=0, m=1, id=7) / \
118		sp.UDP(dport=3456, sport=6543) / \
119		data
120	ip6f02 = \
121		sp.Ether() / \
122		sp.IPv6(src=args.src[0], dst=args.to[0]) / \
123		sp.IPv6ExtHdrFragment(offset=0x1fff, m=1, id=7) / \
124		sp.UDP(dport=3456, sport=6543) / \
125		data
126	if args.debug :
127		ip6f01.display()
128		ip6f02.display()
129	sp.sendp(ip6f01, iface=args.sendif[0], verbose=False)
130	sp.sendp(ip6f02, iface=args.sendif[0], verbose=False)
131
132	sleep(1.00)
133	sniffer.setEnd()
134	sniffer.join()
135	if not sniffer.foundCorrectPacket:
136		sys.exit(1)
137
138
139	# # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # ##
140	#
141	# A fragment with payload and offset set to add up to >64k.
142	#
143	# Try again with the first packet to make things explode.
144	#
145	# A:  Reassembly failure.
146	# R:  ICMPv6 param prob, param header.
147	#
148
149	# Start sniffing on recvif
150	sniffer = Sniffer(args, check_icmp6_error)
151
152	ip6f01 = \
153		sp.Ether() / \
154		sp.IPv6(src=args.src[0], dst=args.to[0]) / \
155		sp.IPv6ExtHdrFragment(offset=0x1fff, m=1, id=0x7001) / \
156		sp.UDP(dport=3456, sport=6543) / \
157		data
158	if args.debug :
159		ip6f01.display()
160	sp.sendp(ip6f01, iface=args.sendif[0], verbose=False)
161
162	sleep(0.10)
163	sniffer.setEnd()
164	sniffer.join()
165	if not sniffer.foundCorrectPacket:
166		sys.exit(1)
167
168	# Wait for expiry from first test run.
169	sleep(75)
170	sniffer2.setEnd()
171	sniffer2.join()
172	if not sniffer2.foundCorrectPacket:
173		sys.exit(1)
174
175	sys.exit(0)
176
177if __name__ == '__main__':
178	main()
179