1*d8b80295SApple OSS Distributions #include <stdlib.h> 2*d8b80295SApple OSS Distributions #include <sys/sysctl.h> 3*d8b80295SApple OSS Distributions #include <darwintest.h> 4*d8b80295SApple OSS Distributions #include <perfdata/perfdata.h> 5*d8b80295SApple OSS Distributions 6*d8b80295SApple OSS Distributions typedef uint32_t entropy_sample_t; 7*d8b80295SApple OSS Distributions 8*d8b80295SApple OSS Distributions T_GLOBAL_META(T_META_NAMESPACE("xnu.crypto"), 9*d8b80295SApple OSS Distributions T_META_RADAR_COMPONENT_NAME("xnu"), 10*d8b80295SApple OSS Distributions T_META_RADAR_COMPONENT_VERSION("crypto")); 11*d8b80295SApple OSS Distributions 12*d8b80295SApple OSS Distributions T_DECL(entropy_collect, "Collect entropy for offline analysis", 13*d8b80295SApple OSS Distributions T_META_REQUIRES_SYSCTL_EQ("kern.development", 1), 14*d8b80295SApple OSS Distributions T_META_BOOTARGS_SET("entropy-analysis-sample-count=1000")) 15*d8b80295SApple OSS Distributions { 16*d8b80295SApple OSS Distributions int ret; 17*d8b80295SApple OSS Distributions uint32_t entropy_size = 0; 18*d8b80295SApple OSS Distributions size_t size = sizeof(entropy_size); 19*d8b80295SApple OSS Distributions 20*d8b80295SApple OSS Distributions ret = sysctlbyname("kern.entropy.analysis.buffer_size", &entropy_size, &size, NULL, 0); 21*d8b80295SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(ret, "sysctlbyname kern.entropy.analysis.buffer_size"); 22*d8b80295SApple OSS Distributions 23*d8b80295SApple OSS Distributions uint32_t entropy_count = entropy_size / sizeof(entropy_sample_t); 24*d8b80295SApple OSS Distributions entropy_sample_t *entropy = calloc(entropy_count, sizeof(entropy_sample_t)); 25*d8b80295SApple OSS Distributions size = entropy_size; 26*d8b80295SApple OSS Distributions 27*d8b80295SApple OSS Distributions ret = sysctlbyname("kern.entropy.analysis.buffer", entropy, &size, NULL, 0); 28*d8b80295SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(ret, "sysctlbyname kern.entropy.analysis.buffer"); 29*d8b80295SApple OSS Distributions 30*d8b80295SApple OSS Distributions // This test is not an entropy assessment. We're just checking to 31*d8b80295SApple OSS Distributions // make sure the machinery of the entropy collection sysctl seems 32*d8b80295SApple OSS Distributions // to be working. 33*d8b80295SApple OSS Distributions for (uint32_t i = 0; i < entropy_count; i += 1) { 34*d8b80295SApple OSS Distributions T_QUIET; T_EXPECT_NE(entropy[i], 0, "entropy buffer null sample %u", i); 35*d8b80295SApple OSS Distributions } 36*d8b80295SApple OSS Distributions 37*d8b80295SApple OSS Distributions free(entropy); 38*d8b80295SApple OSS Distributions } 39*d8b80295SApple OSS Distributions 40*d8b80295SApple OSS Distributions T_DECL(entropy_filter_rate, "Sample entropy filter rate") 41*d8b80295SApple OSS Distributions { 42*d8b80295SApple OSS Distributions int ret; 43*d8b80295SApple OSS Distributions uint64_t total_sample_count = 0; 44*d8b80295SApple OSS Distributions uint64_t rejected_sample_count = 0; 45*d8b80295SApple OSS Distributions size_t size = sizeof(total_sample_count); 46*d8b80295SApple OSS Distributions 47*d8b80295SApple OSS Distributions ret = sysctlbyname("kern.entropy.filter.total_sample_count", &total_sample_count, &size, NULL, 0); 48*d8b80295SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(ret, "kern.entropy.filter.total_sample_count"); 49*d8b80295SApple OSS Distributions 50*d8b80295SApple OSS Distributions size = sizeof(rejected_sample_count); 51*d8b80295SApple OSS Distributions ret = sysctlbyname("kern.entropy.filter.rejected_sample_count", &rejected_sample_count, &size, NULL, 0); 52*d8b80295SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(ret, "kern.entropy.filter.rejected_sample_count"); 53*d8b80295SApple OSS Distributions 54*d8b80295SApple OSS Distributions double rejection_rate = (double) rejected_sample_count / (double) total_sample_count; 55*d8b80295SApple OSS Distributions 56*d8b80295SApple OSS Distributions pdwriter_t writer = pdwriter_open_tmp("xnu", "entropy_filter_rate", 0, 0, NULL, 0); 57*d8b80295SApple OSS Distributions T_ASSERT_NOTNULL(writer, "pdwriter_open_tmp"); 58*d8b80295SApple OSS Distributions 59*d8b80295SApple OSS Distributions pdwriter_new_value(writer, "Rejection Rate", PDUNIT_CUSTOM(rejectrate), rejection_rate); 60*d8b80295SApple OSS Distributions 61*d8b80295SApple OSS Distributions pdwriter_close(writer); 62*d8b80295SApple OSS Distributions } 63