xref: /xnu-11417.140.69/tests/skywalk/skt_restricted_port.c (revision 43a90889846e00bfb5cf1d255cdc0a701a1e05a4)
1 /*
2  * Copyright (c) 2020-2024 Apple Inc. All rights reserved.
3  *
4  * @APPLE_OSREFERENCE_LICENSE_HEADER_START@
5  *
6  * This file contains Original Code and/or Modifications of Original Code
7  * as defined in and that are subject to the Apple Public Source License
8  * Version 2.0 (the 'License'). You may not use this file except in
9  * compliance with the License. The rights granted to you under the License
10  * may not be used to create, or enable the creation or redistribution of,
11  * unlawful or unlicensed copies of an Apple operating system, or to
12  * circumvent, violate, or enable the circumvention or violation of, any
13  * terms of an Apple operating system software license agreement.
14  *
15  * Please obtain a copy of the License at
16  * http://www.opensource.apple.com/apsl/ and read it before using this file.
17  *
18  * The Original Code and all software distributed under the License are
19  * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
20  * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
21  * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
22  * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
23  * Please see the License for the specific language governing rights and
24  * limitations under the License.
25  *
26  * @APPLE_OSREFERENCE_LICENSE_HEADER_END@
27  */
28 
29 /* <rdar://problem/58673168> Restricted port used by non-entitled process */
30 
31 #include <assert.h>
32 #include <errno.h>
33 #include <stdio.h>
34 #include <spawn.h>
35 #include <stdlib.h>
36 #include <string.h>
37 #include <unistd.h>
38 #include <sys/types.h>
39 #include <sys/sysctl.h>
40 #include "skywalk_test_driver.h"
41 #include "skywalk_test_utils.h"
42 #include "skywalk_test_common.h"
43 
44 static int
skt_reserve_restricted_port()45 skt_reserve_restricted_port()
46 {
47 	int error;
48 	int old_first, old_last;
49 	int restricted_port = 55555;
50 	size_t size;
51 
52 	size = sizeof(old_first);
53 	error = sysctlbyname("net.inet.ip.portrange.first", &old_first, &size, &restricted_port, sizeof(restricted_port));
54 	SKTC_ASSERT_ERR(!error);
55 	assert(size == sizeof(old_first));
56 
57 	size = sizeof(old_last);
58 	error = sysctlbyname("net.inet.ip.portrange.last", &old_last, &size, &restricted_port, sizeof(restricted_port));
59 	SKTC_ASSERT_ERR(!error);
60 	assert(size == sizeof(old_last));
61 
62 	struct sktc_nexus_handles handles;
63 	sktc_create_flowswitch(&handles, 0);
64 
65 	uuid_t flow;
66 
67 	/* try reserve one of the restricted ephemeral ports */
68 	uuid_generate_random(flow);
69 	error = sktc_bind_tcp4_flow(handles.controller, handles.fsw_nx_uuid,
70 	    0, NEXUS_PORT_FLOW_SWITCH_CLIENT, flow);
71 	SKTC_ASSERT_ERR(error == -1);
72 	SKTC_ASSERT_ERR(errno == EADDRNOTAVAIL);
73 	uuid_clear(flow);
74 
75 	sktc_cleanup_flowswitch(&handles);
76 
77 	size = sizeof(old_first);
78 	error = sysctlbyname("net.inet.ip.portrange.first", NULL, NULL, &old_first, size);
79 	SKTC_ASSERT_ERR(!error);
80 	assert(size == sizeof(old_first));
81 
82 	size = sizeof(old_last);
83 	error = sysctlbyname("net.inet.ip.portrange.last", NULL, NULL, &old_last, size);
84 	SKTC_ASSERT_ERR(!error);
85 	assert(size == sizeof(old_last));
86 	return 0;
87 }
88 
89 int
skt_reserve_restricted_port_main(int argc,char * argv[])90 skt_reserve_restricted_port_main(int argc, char *argv[])
91 {
92 	return skt_reserve_restricted_port();
93 }
94 
95 
96 struct skywalk_test skt_restricted_port = {
97 	"restricted_port", "test reserve a restricted ephemeral port",
98 	SK_FEATURE_SKYWALK | SK_FEATURE_NEXUS_NETIF | SK_FEATURE_NEXUS_FLOWSWITCH | SK_FEATURE_NETNS,
99 	skt_reserve_restricted_port_main, { NULL }, sktc_ifnet_feth0_create, sktc_ifnet_feth0_destroy,
100 };
101