1*d8b80295SApple OSS Distributions #include <stdlib.h>
2*d8b80295SApple OSS Distributions #include <unistd.h>
3*d8b80295SApple OSS Distributions #include <sys/sysctl.h>
4*d8b80295SApple OSS Distributions
5*d8b80295SApple OSS Distributions #include <darwintest.h>
6*d8b80295SApple OSS Distributions #include <darwintest_utils.h>
7*d8b80295SApple OSS Distributions
8*d8b80295SApple OSS Distributions T_GLOBAL_META(T_META_RUN_CONCURRENTLY(false));
9*d8b80295SApple OSS Distributions
10*d8b80295SApple OSS Distributions static int after_regions = 0;
11*d8b80295SApple OSS Distributions
12*d8b80295SApple OSS Distributions /*
13*d8b80295SApple OSS Distributions * No system(3c) on watchOS, so provide our own.
14*d8b80295SApple OSS Distributions */
15*d8b80295SApple OSS Distributions static int
my_system(const char * command)16*d8b80295SApple OSS Distributions my_system(const char *command)
17*d8b80295SApple OSS Distributions {
18*d8b80295SApple OSS Distributions pid_t pid;
19*d8b80295SApple OSS Distributions int status = 0;
20*d8b80295SApple OSS Distributions const char *argv[] = {
21*d8b80295SApple OSS Distributions "/bin/sh",
22*d8b80295SApple OSS Distributions "-c",
23*d8b80295SApple OSS Distributions command,
24*d8b80295SApple OSS Distributions NULL
25*d8b80295SApple OSS Distributions };
26*d8b80295SApple OSS Distributions
27*d8b80295SApple OSS Distributions if (dt_launch_tool(&pid, (char **)(void *)argv, FALSE, NULL, NULL)) {
28*d8b80295SApple OSS Distributions return -1;
29*d8b80295SApple OSS Distributions }
30*d8b80295SApple OSS Distributions sleep(2); /* let the child start running */
31*d8b80295SApple OSS Distributions
32*d8b80295SApple OSS Distributions size_t size = sizeof(after_regions);
33*d8b80295SApple OSS Distributions int ret = sysctlbyname("vm.shared_region_pager_count", &after_regions, &size, NULL, 0);
34*d8b80295SApple OSS Distributions T_QUIET; T_EXPECT_POSIX_SUCCESS(ret, "get shared_region_pager_count after");
35*d8b80295SApple OSS Distributions
36*d8b80295SApple OSS Distributions if (!dt_waitpid(pid, &status, NULL, 30)) {
37*d8b80295SApple OSS Distributions if (status != 0) {
38*d8b80295SApple OSS Distributions return status;
39*d8b80295SApple OSS Distributions }
40*d8b80295SApple OSS Distributions return -1;
41*d8b80295SApple OSS Distributions }
42*d8b80295SApple OSS Distributions return status;
43*d8b80295SApple OSS Distributions }
44*d8b80295SApple OSS Distributions
45*d8b80295SApple OSS Distributions /*
46*d8b80295SApple OSS Distributions * If shared regions by entitlement was not originally active, turn it back off.
47*d8b80295SApple OSS Distributions */
48*d8b80295SApple OSS Distributions static int orig_setting = 0;
49*d8b80295SApple OSS Distributions static void
cleanup(void)50*d8b80295SApple OSS Distributions cleanup(void)
51*d8b80295SApple OSS Distributions {
52*d8b80295SApple OSS Distributions int ret;
53*d8b80295SApple OSS Distributions int off = 0;
54*d8b80295SApple OSS Distributions size_t size_off = sizeof(off);
55*d8b80295SApple OSS Distributions
56*d8b80295SApple OSS Distributions if (orig_setting == 0) {
57*d8b80295SApple OSS Distributions ret = sysctlbyname("vm.vm_shared_region_by_entitlement", NULL, NULL, &off, size_off);
58*d8b80295SApple OSS Distributions T_QUIET; T_EXPECT_POSIX_SUCCESS(ret, "turning sysctl back off");
59*d8b80295SApple OSS Distributions }
60*d8b80295SApple OSS Distributions }
61*d8b80295SApple OSS Distributions
62*d8b80295SApple OSS Distributions /*
63*d8b80295SApple OSS Distributions * This test:
64*d8b80295SApple OSS Distributions * - looks at the number of shared region pagers,
65*d8b80295SApple OSS Distributions * - launches a helper app that has entitlement for unique signing
66*d8b80295SApple OSS Distributions * - gets the number of shared region pagers again.
67*d8b80295SApple OSS Distributions * It expects to see additional shared region pager(s) to exist.
68*d8b80295SApple OSS Distributions *
69*d8b80295SApple OSS Distributions */
70*d8b80295SApple OSS Distributions T_DECL(sr_entitlement, "shared region by entitlement test")
71*d8b80295SApple OSS Distributions {
72*d8b80295SApple OSS Distributions int ret;
73*d8b80295SApple OSS Distributions size_t size;
74*d8b80295SApple OSS Distributions int before_regions = 0;
75*d8b80295SApple OSS Distributions int on = 1;
76*d8b80295SApple OSS Distributions size_t size_on = sizeof(on);
77*d8b80295SApple OSS Distributions
78*d8b80295SApple OSS Distributions #if !__arm64e__
79*d8b80295SApple OSS Distributions T_SKIP("No pointer authentication support");
80*d8b80295SApple OSS Distributions #endif
81*d8b80295SApple OSS Distributions
82*d8b80295SApple OSS Distributions /*
83*d8b80295SApple OSS Distributions * Check if the sysctl vm_shared_region_by_entitlement exists and if so make
84*d8b80295SApple OSS Distributions * sure it is set.
85*d8b80295SApple OSS Distributions */
86*d8b80295SApple OSS Distributions size = sizeof(orig_setting);
87*d8b80295SApple OSS Distributions ret = sysctlbyname("vm.vm_shared_region_by_entitlement", &orig_setting, &size, &on, size_on);
88*d8b80295SApple OSS Distributions if (ret != 0) {
89*d8b80295SApple OSS Distributions T_SKIP("No pointer authentication support");
90*d8b80295SApple OSS Distributions }
91*d8b80295SApple OSS Distributions
92*d8b80295SApple OSS Distributions T_ATEND(cleanup);
93*d8b80295SApple OSS Distributions
94*d8b80295SApple OSS Distributions size = sizeof(before_regions);
95*d8b80295SApple OSS Distributions ret = sysctlbyname("vm.shared_region_pager_count", &before_regions, &size, NULL, 0);
96*d8b80295SApple OSS Distributions T_QUIET; T_EXPECT_POSIX_SUCCESS(ret, "get shared_region_pager_count before");
97*d8b80295SApple OSS Distributions T_QUIET; T_EXPECT_GE_INT(before_regions, 1, "invalid before number of regions");
98*d8b80295SApple OSS Distributions
99*d8b80295SApple OSS Distributions ret = my_system("./sr_entitlement_helper");
100*d8b80295SApple OSS Distributions if (ret != 0) {
101*d8b80295SApple OSS Distributions T_ASSERT_FAIL("Couldn't run helper first time ret = %d", ret);
102*d8b80295SApple OSS Distributions }
103*d8b80295SApple OSS Distributions
104*d8b80295SApple OSS Distributions T_EXPECT_GT_INT(after_regions, before_regions, "expected additional SR pagers after running helper");
105*d8b80295SApple OSS Distributions }
106