xref: /xnu-12377.61.12/tests/vfs/devfs_fdesc.c (revision 4d495c6e23c53686cf65f45067f79024cf5dcee8)
1*4d495c6eSApple OSS Distributions /*
2*4d495c6eSApple OSS Distributions  * Copyright (c) 2024 Apple Computer, Inc. All rights reserved.
3*4d495c6eSApple OSS Distributions  *
4*4d495c6eSApple OSS Distributions  * @APPLE_OSREFERENCE_LICENSE_HEADER_START@
5*4d495c6eSApple OSS Distributions  *
6*4d495c6eSApple OSS Distributions  * This file contains Original Code and/or Modifications of Original Code
7*4d495c6eSApple OSS Distributions  * as defined in and that are subject to the Apple Public Source License
8*4d495c6eSApple OSS Distributions  * Version 2.0 (the 'License'). You may not use this file except in
9*4d495c6eSApple OSS Distributions  * compliance with the License. The rights granted to you under the License
10*4d495c6eSApple OSS Distributions  * may not be used to create, or enable the creation or redistribution of,
11*4d495c6eSApple OSS Distributions  * unlawful or unlicensed copies of an Apple operating system, or to
12*4d495c6eSApple OSS Distributions  * circumvent, violate, or enable the circumvention or violation of, any
13*4d495c6eSApple OSS Distributions  * terms of an Apple operating system software license agreement.
14*4d495c6eSApple OSS Distributions  *
15*4d495c6eSApple OSS Distributions  * Please obtain a copy of the License at
16*4d495c6eSApple OSS Distributions  * http://www.opensource.apple.com/apsl/ and read it before using this file.
17*4d495c6eSApple OSS Distributions  *
18*4d495c6eSApple OSS Distributions  * The Original Code and all software distributed under the License are
19*4d495c6eSApple OSS Distributions  * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
20*4d495c6eSApple OSS Distributions  * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
21*4d495c6eSApple OSS Distributions  * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
22*4d495c6eSApple OSS Distributions  * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
23*4d495c6eSApple OSS Distributions  * Please see the License for the specific language governing rights and
24*4d495c6eSApple OSS Distributions  * limitations under the License.
25*4d495c6eSApple OSS Distributions  *
26*4d495c6eSApple OSS Distributions  * @APPLE_OSREFERENCE_LICENSE_HEADER_END@
27*4d495c6eSApple OSS Distributions  */
28*4d495c6eSApple OSS Distributions 
29*4d495c6eSApple OSS Distributions /* compile: xcrun -sdk macosx.internal clang -ldarwintest -o devfs_fdesc devfs_fdesc.c -g -Weverything */
30*4d495c6eSApple OSS Distributions /* sign: codesign --force --sign - --timestamp=none --entitlements devfs_fdesc.entitlements devfs_fdesc */
31*4d495c6eSApple OSS Distributions 
32*4d495c6eSApple OSS Distributions #include <darwintest.h>
33*4d495c6eSApple OSS Distributions #include <darwintest/utils.h>
34*4d495c6eSApple OSS Distributions #include <stdlib.h>
35*4d495c6eSApple OSS Distributions #include <fcntl.h>
36*4d495c6eSApple OSS Distributions #include <sys/param.h>
37*4d495c6eSApple OSS Distributions #include <sys/stat.h>
38*4d495c6eSApple OSS Distributions #include <sys/mount.h>
39*4d495c6eSApple OSS Distributions #include <unistd.h>
40*4d495c6eSApple OSS Distributions 
41*4d495c6eSApple OSS Distributions T_GLOBAL_META(
42*4d495c6eSApple OSS Distributions 	T_META_NAMESPACE("xnu.vfs"),
43*4d495c6eSApple OSS Distributions 	T_META_RADAR_COMPONENT_NAME("xnu"),
44*4d495c6eSApple OSS Distributions 	T_META_RADAR_COMPONENT_VERSION("vfs"),
45*4d495c6eSApple OSS Distributions 	T_META_ASROOT(false),
46*4d495c6eSApple OSS Distributions 	T_META_CHECK_LEAKS(false));
47*4d495c6eSApple OSS Distributions 
48*4d495c6eSApple OSS Distributions static int
docheck(int fd,int perm)49*4d495c6eSApple OSS Distributions docheck(int fd, int perm)
50*4d495c6eSApple OSS Distributions {
51*4d495c6eSApple OSS Distributions 	char path[MAXPATHLEN];
52*4d495c6eSApple OSS Distributions 
53*4d495c6eSApple OSS Distributions 	path[0] = '\0';
54*4d495c6eSApple OSS Distributions 	snprintf(path, sizeof(path), "/dev/fd/%d", fd);
55*4d495c6eSApple OSS Distributions 	errno = 0;
56*4d495c6eSApple OSS Distributions 
57*4d495c6eSApple OSS Distributions 	return access(path, perm);
58*4d495c6eSApple OSS Distributions }
59*4d495c6eSApple OSS Distributions 
60*4d495c6eSApple OSS Distributions /* The devfs_access test should not run as root */
61*4d495c6eSApple OSS Distributions T_DECL(devfs_fdesc_access, "Calculate the allowed access based on the open-flags for fdesc vnodes")
62*4d495c6eSApple OSS Distributions {
63*4d495c6eSApple OSS Distributions 	const char *path = "/dev/null";
64*4d495c6eSApple OSS Distributions 	int fd_rdonly, fd_wronly, fd_evtonly, fd_evtonly_drw;
65*4d495c6eSApple OSS Distributions 
66*4d495c6eSApple OSS Distributions 	if (geteuid() == 0) {
67*4d495c6eSApple OSS Distributions 		T_SKIP("Test should NOT run as root");
68*4d495c6eSApple OSS Distributions 	}
69*4d495c6eSApple OSS Distributions 
70*4d495c6eSApple OSS Distributions 	T_SETUPBEGIN;
71*4d495c6eSApple OSS Distributions 
72*4d495c6eSApple OSS Distributions 	T_ASSERT_POSIX_SUCCESS(fd_rdonly = open(path, O_RDONLY),
73*4d495c6eSApple OSS Distributions 	    "Setup: Opening file with O_RDONLY permissions, fd_rdonly = %d",
74*4d495c6eSApple OSS Distributions 	    fd_rdonly);
75*4d495c6eSApple OSS Distributions 
76*4d495c6eSApple OSS Distributions 	T_ASSERT_POSIX_SUCCESS(fd_wronly = open(path, O_WRONLY),
77*4d495c6eSApple OSS Distributions 	    "Setup: Opening file with O_WRONLY permissions, fd_wronly = %d",
78*4d495c6eSApple OSS Distributions 	    fd_wronly);
79*4d495c6eSApple OSS Distributions 
80*4d495c6eSApple OSS Distributions 	T_ASSERT_POSIX_SUCCESS(fd_evtonly = open(path, O_EVTONLY),
81*4d495c6eSApple OSS Distributions 	    "Setup: Opening file with O_EVTONLY permissions, fd_evtonly = %d",
82*4d495c6eSApple OSS Distributions 	    fd_evtonly);
83*4d495c6eSApple OSS Distributions 
84*4d495c6eSApple OSS Distributions 	T_ASSERT_POSIX_SUCCESS(setiopolicy_np(IOPOL_TYPE_VFS_DISALLOW_RW_FOR_O_EVTONLY,
85*4d495c6eSApple OSS Distributions 	    IOPOL_SCOPE_PROCESS,
86*4d495c6eSApple OSS Distributions 	    IOPOL_VFS_DISALLOW_RW_FOR_O_EVTONLY_ON),
87*4d495c6eSApple OSS Distributions 	    "Setup: Disallowing RW for O_EVTONLY");
88*4d495c6eSApple OSS Distributions 
89*4d495c6eSApple OSS Distributions 	T_ASSERT_POSIX_SUCCESS(fd_evtonly_drw = open(path, O_EVTONLY),
90*4d495c6eSApple OSS Distributions 	    "Setup: Opening file with O_EVTONLY permissions while RW is disabled, fd_evtonly_drw = %d",
91*4d495c6eSApple OSS Distributions 	    fd_evtonly_drw);
92*4d495c6eSApple OSS Distributions 
93*4d495c6eSApple OSS Distributions 	T_SETUPEND;
94*4d495c6eSApple OSS Distributions 
95*4d495c6eSApple OSS Distributions 	T_LOG("Test rdonly-fd's access");
96*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_SUCCESS(docheck(fd_rdonly, R_OK), "Testing R_OK permissions");
97*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_rdonly, W_OK), EACCES, "Testing W_OK permissions");
98*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_rdonly, R_OK | W_OK), EACCES, "Testing R_OK | W_OK permissions");
99*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_rdonly, X_OK), EACCES, "Testing X_OK permissions");
100*4d495c6eSApple OSS Distributions 
101*4d495c6eSApple OSS Distributions 	T_LOG("Test wronly-fd's access");
102*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_wronly, R_OK), EACCES, "Testing R_OK permissions");
103*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_SUCCESS(docheck(fd_wronly, W_OK), "Testing W_OK permissions");
104*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_wronly, R_OK | W_OK), EACCES, "Testing R_OK | W_OK permissions");
105*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_wronly, X_OK), EACCES, "Testing X_OK permissions");
106*4d495c6eSApple OSS Distributions 
107*4d495c6eSApple OSS Distributions 	T_LOG("Test evtonly-fd's access");
108*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_SUCCESS(docheck(fd_evtonly, R_OK), "Testing R_OK permissions");
109*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_evtonly, W_OK), EACCES, "Testing W_OK permissions");
110*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_evtonly, R_OK | W_OK), EACCES, "Testing R_OK | W_OK permissions");
111*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_evtonly, X_OK), EACCES, "Testing X_OK permissions");
112*4d495c6eSApple OSS Distributions 
113*4d495c6eSApple OSS Distributions 	T_LOG("Test evtonly-drw-fd's access");
114*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_evtonly_drw, R_OK), EACCES, "Testing R_OK permissions");
115*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_evtonly_drw, W_OK), EACCES, "Testing W_OK permissions");
116*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_evtonly_drw, R_OK | W_OK), EACCES, "Testing R_OK | W_OK permissions");
117*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(docheck(fd_evtonly_drw, X_OK), EACCES, "Testing X_OK permissions");
118*4d495c6eSApple OSS Distributions 
119*4d495c6eSApple OSS Distributions 	/* Close open file descriptors */
120*4d495c6eSApple OSS Distributions 	close(fd_rdonly);
121*4d495c6eSApple OSS Distributions 	close(fd_wronly);
122*4d495c6eSApple OSS Distributions 	close(fd_evtonly);
123*4d495c6eSApple OSS Distributions 	close(fd_evtonly_drw);
124*4d495c6eSApple OSS Distributions }
125*4d495c6eSApple OSS Distributions 
126*4d495c6eSApple OSS Distributions T_DECL(devfs_fdesc_mount_block, "Test that mounting over /dev/fd/<fd> is blocked")
127*4d495c6eSApple OSS Distributions {
128*4d495c6eSApple OSS Distributions 	int dir_fd;
129*4d495c6eSApple OSS Distributions 	char fdesc_path[MAXPATHLEN];
130*4d495c6eSApple OSS Distributions 	char temp_dir[MAXPATHLEN];
131*4d495c6eSApple OSS Distributions 	int ret;
132*4d495c6eSApple OSS Distributions 
133*4d495c6eSApple OSS Distributions 	T_SETUPBEGIN;
134*4d495c6eSApple OSS Distributions 
135*4d495c6eSApple OSS Distributions 	/* Create a temporary directory */
136*4d495c6eSApple OSS Distributions 	snprintf(temp_dir, sizeof(temp_dir), "%s/devfs_fdesc_mount_test.XXXXXX", dt_tmpdir());
137*4d495c6eSApple OSS Distributions 	T_ASSERT_NOTNULL(mkdtemp(temp_dir), "Create temporary directory");
138*4d495c6eSApple OSS Distributions 
139*4d495c6eSApple OSS Distributions 	/* Open the temporary directory */
140*4d495c6eSApple OSS Distributions 	T_ASSERT_POSIX_SUCCESS(dir_fd = open(temp_dir, O_DIRECTORY),
141*4d495c6eSApple OSS Distributions 	    "Setup: Opening temporary directory with O_DIRECTORY, dir_fd = %d",
142*4d495c6eSApple OSS Distributions 	    dir_fd);
143*4d495c6eSApple OSS Distributions 
144*4d495c6eSApple OSS Distributions 	/* Construct /dev/fd/<fd> path */
145*4d495c6eSApple OSS Distributions 	snprintf(fdesc_path, sizeof(fdesc_path), "/dev/fd/%d", dir_fd);
146*4d495c6eSApple OSS Distributions 
147*4d495c6eSApple OSS Distributions 	T_SETUPEND;
148*4d495c6eSApple OSS Distributions 
149*4d495c6eSApple OSS Distributions 	T_LOG("Testing mount blocking on /dev/fd/%d path: %s", dir_fd, fdesc_path);
150*4d495c6eSApple OSS Distributions 
151*4d495c6eSApple OSS Distributions 	/* Test: Attempt to mount tmpfs over /dev/fd/<fd> - should fail with ENOTSUP */
152*4d495c6eSApple OSS Distributions 	ret = mount("tmpfs", fdesc_path, MNT_RDONLY, NULL);
153*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(ret, ENOTSUP,
154*4d495c6eSApple OSS Distributions 	    "Mounting tmpfs over %s should fail with ENOTSUP", fdesc_path);
155*4d495c6eSApple OSS Distributions 
156*4d495c6eSApple OSS Distributions 	/* Test: Attempt to mount devfs over /dev/fd/<fd> - should also fail with ENOTSUP */
157*4d495c6eSApple OSS Distributions 	ret = mount("devfs", fdesc_path, MNT_RDONLY, NULL);
158*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(ret, ENOTSUP,
159*4d495c6eSApple OSS Distributions 	    "Mounting devfs over %s should fail with ENOTSUP", fdesc_path);
160*4d495c6eSApple OSS Distributions 
161*4d495c6eSApple OSS Distributions 	/* Cleanup */
162*4d495c6eSApple OSS Distributions 	close(dir_fd);
163*4d495c6eSApple OSS Distributions 	rmdir(temp_dir);
164*4d495c6eSApple OSS Distributions }
165*4d495c6eSApple OSS Distributions 
166*4d495c6eSApple OSS Distributions T_DECL(devfs_fdesc_unmount_block, "Test that unmounting /dev/fd/<fd> is blocked")
167*4d495c6eSApple OSS Distributions {
168*4d495c6eSApple OSS Distributions 	int dir_fd;
169*4d495c6eSApple OSS Distributions 	char fdesc_path[MAXPATHLEN];
170*4d495c6eSApple OSS Distributions 	char temp_dir[MAXPATHLEN];
171*4d495c6eSApple OSS Distributions 	int ret;
172*4d495c6eSApple OSS Distributions 
173*4d495c6eSApple OSS Distributions 	T_SETUPBEGIN;
174*4d495c6eSApple OSS Distributions 
175*4d495c6eSApple OSS Distributions 	/* Create a temporary directory */
176*4d495c6eSApple OSS Distributions 	snprintf(temp_dir, sizeof(temp_dir), "%s/devfs_fdesc_unmount_test.XXXXXX", dt_tmpdir());
177*4d495c6eSApple OSS Distributions 	T_ASSERT_NOTNULL(mkdtemp(temp_dir), "Create temporary directory");
178*4d495c6eSApple OSS Distributions 
179*4d495c6eSApple OSS Distributions 	/* Open the temporary directory */
180*4d495c6eSApple OSS Distributions 	T_ASSERT_POSIX_SUCCESS(dir_fd = open(temp_dir, O_DIRECTORY),
181*4d495c6eSApple OSS Distributions 	    "Setup: Opening temporary directory with O_DIRECTORY, dir_fd = %d",
182*4d495c6eSApple OSS Distributions 	    dir_fd);
183*4d495c6eSApple OSS Distributions 
184*4d495c6eSApple OSS Distributions 	/* Construct /dev/fd/<fd> path */
185*4d495c6eSApple OSS Distributions 	snprintf(fdesc_path, sizeof(fdesc_path), "/dev/fd/%d", dir_fd);
186*4d495c6eSApple OSS Distributions 
187*4d495c6eSApple OSS Distributions 	T_SETUPEND;
188*4d495c6eSApple OSS Distributions 
189*4d495c6eSApple OSS Distributions 	T_LOG("Testing unmount blocking on /dev/fd/%d path: %s", dir_fd, fdesc_path);
190*4d495c6eSApple OSS Distributions 
191*4d495c6eSApple OSS Distributions 	/* Test: Attempt to unmount /dev/fd/<fd> - should fail with ENOTSUP */
192*4d495c6eSApple OSS Distributions 	ret = unmount(fdesc_path, 0);
193*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(ret, ENOTSUP,
194*4d495c6eSApple OSS Distributions 	    "Unmounting %s should fail with ENOTSUP", fdesc_path);
195*4d495c6eSApple OSS Distributions 
196*4d495c6eSApple OSS Distributions 	/* Test: Attempt to force unmount /dev/fd/<fd> - should also fail with ENOTSUP */
197*4d495c6eSApple OSS Distributions 	ret = unmount(fdesc_path, MNT_FORCE);
198*4d495c6eSApple OSS Distributions 	T_EXPECT_POSIX_FAILURE(ret, ENOTSUP,
199*4d495c6eSApple OSS Distributions 	    "Force unmounting %s should fail with ENOTSUP", fdesc_path);
200*4d495c6eSApple OSS Distributions 
201*4d495c6eSApple OSS Distributions 	/* Cleanup */
202*4d495c6eSApple OSS Distributions 	close(dir_fd);
203*4d495c6eSApple OSS Distributions 	rmdir(temp_dir);
204*4d495c6eSApple OSS Distributions }
205