1 /*-*- Mode: C; c-basic-offset: 8; indent-tabs-mode: nil -*-*/
4 This file is part of systemd.
6 Copyright 2014 Daniel Mack
8 systemd is free software; you can redistribute it and/or modify it
9 under the terms of the GNU Lesser General Public License as published by
10 the Free Software Foundation; either version 2.1 of the License, or
11 (at your option) any later version.
13 systemd is distributed in the hope that it will be useful, but
14 WITHOUT ANY WARRANTY; without even the implied warranty of
15 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
16 Lesser General Public License for more details.
18 You should have received a copy of the GNU Lesser General Public License
19 along with systemd; If not, see <http://www.gnu.org/licenses/>.
22 #include <sys/socket.h>
24 #include <sys/types.h>
36 #include "bus-internal.h"
37 #include "bus-message.h"
42 #include "capability.h"
44 #include <bus-proxyd/bus-policy.h>
46 static int test_policy_load(Policy *p, const char *name)
48 _cleanup_free_ char *path = NULL;
51 path = strjoin(TEST_DIR, "/bus-policy/", name, NULL);
54 if (access(path, R_OK) == 0)
55 policy_load(p, STRV_MAKE(path));
62 int main(int argc, char *argv[]) {
65 struct ucred ucred = {};
70 assert_se(test_policy_load(&p, "ownerships.conf") == 0);
73 assert_se(policy_check_own(&p, &ucred, "org.test.test1") == true);
75 assert_se(policy_check_own(&p, &ucred, "org.test.test1") == true);
78 assert_se(policy_check_own(&p, &ucred, "org.test.test2") == true);
80 assert_se(policy_check_own(&p, &ucred, "org.test.test2") == false);
83 assert_se(policy_check_own(&p, &ucred, "org.test.test3") == false);
85 assert_se(policy_check_own(&p, &ucred, "org.test.test3") == false);
88 assert_se(policy_check_own(&p, &ucred, "org.test.test4") == false);
90 assert_se(policy_check_own(&p, &ucred, "org.test.test4") == true);
95 assert_se(test_policy_load(&p, "signals.conf") == 0);
96 names_strv = STRV_MAKE("bli.bla.blubb");
99 assert_se(policy_check_send(&p, &ucred, names_strv, SD_BUS_MESSAGE_SIGNAL, NULL, "/an/object/path", NULL) == true);
102 assert_se(policy_check_send(&p, &ucred, names_strv, SD_BUS_MESSAGE_SIGNAL, NULL, "/an/object/path", NULL) == false);
107 assert_se(test_policy_load(&p, "methods.conf") == 0);
108 names_strv = STRV_MAKE("org.test.test1");
113 assert_se(policy_check_send(&p, &ucred, names_strv, SD_BUS_MESSAGE_METHOD_CALL, "/an/object/path", "bli.bla.blubb", "Member") == false);
114 assert_se(policy_check_send(&p, &ucred, names_strv, SD_BUS_MESSAGE_METHOD_CALL, "/an/object/path", "bli.bla.blubb", "Member") == false);
115 assert_se(policy_check_send(&p, &ucred, names_strv, SD_BUS_MESSAGE_METHOD_CALL, "/an/object/path", "org.test.int1", "Member") == true);
116 assert_se(policy_check_send(&p, &ucred, names_strv, SD_BUS_MESSAGE_METHOD_CALL, "/an/object/path", "org.test.int2", "Member") == true);
118 names_hash = hashmap_new(&string_hash_ops);
119 assert(names_hash != NULL);
120 assert_se(hashmap_put(names_hash, "org.test.test3", NULL) >= 0);
121 assert_se(policy_check_recv(&p, &ucred, names_hash, SD_BUS_MESSAGE_METHOD_CALL, "/an/object/path", "org.test.int3", "Member111") == true);
125 /* User and groups */
126 assert_se(test_policy_load(&p, "hello.conf") == 0);
130 assert_se(policy_check_hello(&p, &ucred) == true);
133 assert_se(policy_check_hello(&p, &ucred) == false);
137 assert_se(policy_check_hello(&p, &ucred) == false);