From a1b3c3e66148108f30a39e89cbae9f1dc4df5385 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Love=20H=C3=B6rnquist=20=C3=85strand?= Date: Mon, 28 Apr 2008 18:01:25 +0000 Subject: [PATCH] test SDB: cache git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@23127 ec53bebd-3082-4978-b11e-865c3cabbd6b --- tests/kdc/Makefile.am | 28 +++++--- tests/kdc/check-cc.in | 145 ++++++++++++++++++++++++++++++++++++++++++ 2 files changed, 163 insertions(+), 10 deletions(-) create mode 100644 tests/kdc/check-cc.in diff --git a/tests/kdc/Makefile.am b/tests/kdc/Makefile.am index ea1fd3805..2ba8777f8 100644 --- a/tests/kdc/Makefile.am +++ b/tests/kdc/Makefile.am @@ -12,6 +12,7 @@ check_PROGRAMS = ap-req check_SCRIPTS = $(SCRIPT_TESTS) SCRIPT_TESTS = \ + check-cc \ check-digest \ check-kadmin \ check-kdc \ @@ -89,6 +90,11 @@ check-kpasswdd: check-kpasswdd.in Makefile chmod +x check-kpasswdd.tmp mv check-kpasswdd.tmp check-kpasswdd +check-cc: check-cc.in Makefile + $(do_subst) < $(srcdir)/check-cc.in > check-cc.tmp + chmod +x check-cc.tmp + mv check-cc.tmp check-cc + krb5.conf: krb5.conf.in Makefile $(do_subst) \ -e 's,[@]kdc[@],,g' < $(srcdir)/krb5.conf.in > krb5.conf.tmp @@ -121,10 +127,11 @@ CLEANFILES= \ digest-reply \ foopassword \ krb5.conf \ + krb5.conf.keys \ + krb5-cc.conf \ krb5-slave.conf \ krb5-pkinit.conf \ krb5-pkinit-win.conf \ - krb5.conf.keys \ signal \ messages.log \ o2cache.krb5 \ @@ -147,22 +154,23 @@ CLEANFILES= \ test-rc-file.rc EXTRA_DIST = \ + check-cc.in \ + check-digest.in \ + check-iprop.in \ check-kadmin.in \ check-kdc.in \ - check-kpasswdd.in \ check-keys.in \ + check-kpasswdd.in \ + check-pkinit.in \ check-referral.in \ check-uu.in \ - check-pkinit.in \ - check-iprop.in \ - check-digest.in \ + donotexists.txt \ heimdal.acl \ + iprop-acl \ + krb5-pkinit.conf.in \ krb5.conf.in \ krb5.conf.keys.in \ - krb5-pkinit.conf.in \ - iprop-acl \ - wait-kdc.sh \ - pki-mapping \ ntlm-user-file.txt \ + pki-mapping \ uuserver.txt \ - donotexists.txt + wait-kdc.sh diff --git a/tests/kdc/check-cc.in b/tests/kdc/check-cc.in new file mode 100644 index 000000000..146e2bdfe --- /dev/null +++ b/tests/kdc/check-cc.in @@ -0,0 +1,145 @@ +#!/bin/sh +# +# Copyright (c) 2006 - 2008 Kungliga Tekniska Högskolan +# (Royal Institute of Technology, Stockholm, Sweden). +# All rights reserved. +# +# Redistribution and use in source and binary forms, with or without +# modification, are permitted provided that the following conditions +# are met: +# +# 1. Redistributions of source code must retain the above copyright +# notice, this list of conditions and the following disclaimer. +# +# 2. Redistributions in binary form must reproduce the above copyright +# notice, this list of conditions and the following disclaimer in the +# documentation and/or other materials provided with the distribution. +# +# 3. Neither the name of the Institute nor the names of its contributors +# may be used to endorse or promote products derived from this software +# without specific prior written permission. +# +# THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND +# ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE +# IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE +# ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE +# FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL +# DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS +# OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) +# HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT +# LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY +# OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF +# SUCH DAMAGE. +# +# $Id$ +# + +srcdir="@srcdir@" +objdir="@objdir@" +EGREP="@EGREP@" + +testfailed="echo test failed; cat messages.log; exit 1" + +# If there is no useful db support compile in, disable test +../db/have-db || exit 77 + +R=TEST.H5L.SE + +port=@port@ +pwport=@pwport@ + +kinit="${TESTS_ENVIRONMENT} ../../kuser/kinit --password-file=${objdir}/foopassword --no-afslog" +klist="${TESTS_ENVIRONMENT} ../../kuser/klist" +kswitch="${TESTS_ENVIRONMENT} ../../kuser/kswitch" +kdestroy="${TESTS_ENVIRONMENT} ../../kuser/kdestroy" +kadmin="${TESTS_ENVIRONMENT} ../../kadmin/kadmin -l -r $R" +kdc="${TESTS_ENVIRONMENT} ../../kdc/kdc --addresses=localhost -P $port" + + +server=host/datan.test.h5l.se +cache="FILE:${objdir}/cache.krb5" +keytabfile=${objdir}/server.keytab +keytab="FILE:${keytabfile}" + +KRB5_CONFIG="${objdir}/krb5-cc.conf" +export KRB5_CONFIG + +rm -f ${keytabfile} +rm -f current-db* +rm -f out-* +rm -f mkey.file* + +> messages.log + +cp "${objdir}/krb5.conf" "${objdir}/krb5-cc.conf" + +echo Creating database +${kadmin} \ + init \ + --realm-max-ticket-life=1day \ + --realm-max-renewable-life=1month \ + ${R} || exit 1 + +${kadmin} add -p foo --use-defaults foo@${R} || exit 1 +${kadmin} add -p foo --use-defaults bar@${R} || exit 1 +${kadmin} add -p kaka --use-defaults ${server}@${R} || exit 1 +${kadmin} ext -k ${keytab} ${server}@${R} || exit 1 + +echo "Doing database check" +${kadmin} check ${R} || exit 1 + +echo foo > ${objdir}/foopassword + +echo Starting kdc +${kdc} & +kdcpid=$! + +sh ${srcdir}/wait-kdc.sh +if [ "$?" != 0 ] ; then + kill ${kdcpid} + exit 1 +fi + +trap "kill ${kdcpid}; echo signal killing kdc; exit 1;" EXIT + +ec=0 + +(cat ${objdir}/krb5.conf ; \ + echo '' ; \ + echo '[libdefaults]' ; \ + echo " default_cc_name = SDB:Default-cache:${objdir}/krb5scc.tmp" ; \ + echo '' ) \ + > ${objdir}/krb5-cc.conf + + +rm "${objdir}/krb5scc.tmp" + +echo "getting default tickets"; > messages.log +${kinit} foo@${R} || { ec=1 ; eval "${testfailed}"; } +${klist} -l +${kswitch} -p foo@${R} || { ec=1 ; eval "${testfailed}"; } +${klist} -l | grep foo@ >/dev/null || { ec=1 ; eval "${testfailed}"; } +${kdestroy} + +rm "${objdir}/krb5scc.tmp" + +echo "getting both tickets"; > messages.log +${kinit} -c SDB:1 foo@${R} || { ec=1 ; eval "${testfailed}"; } +${kinit} -c SDB:2 bar@${R} || { ec=1 ; eval "${testfailed}"; } +${klist} -l +${kswitch} -p foo@${R} || { ec=1 ; eval "${testfailed}"; } +${klist} -l | grep foo@ >/dev/null || { ec=1 ; eval "${testfailed}"; } +${klist} -l | grep bar@ >/dev/null || { ec=1 ; eval "${testfailed}"; } +${kswitch} -p bar@${R} || { ec=1 ; eval "${testfailed}"; } +${klist} -l | grep foo@ >/dev/null || { ec=1 ; eval "${testfailed}"; } +${klist} -l | grep bar@ >/dev/null || { ec=1 ; eval "${testfailed}"; } +${kdestroy} + + + +echo "killing kdc (${kdcpid})" +kill $kdcpid || exit 1 + +trap "" EXIT + +exit $ec