1*e7776783SApple OSS Distributions #include <stdlib.h>
2*e7776783SApple OSS Distributions #include <unistd.h>
3*e7776783SApple OSS Distributions #include <sys/sysctl.h>
4*e7776783SApple OSS Distributions
5*e7776783SApple OSS Distributions #include <darwintest.h>
6*e7776783SApple OSS Distributions #include <darwintest_utils.h>
7*e7776783SApple OSS Distributions
8*e7776783SApple OSS Distributions T_GLOBAL_META(T_META_RUN_CONCURRENTLY(false));
9*e7776783SApple OSS Distributions
10*e7776783SApple OSS Distributions static int after_regions = 0;
11*e7776783SApple OSS Distributions
12*e7776783SApple OSS Distributions /*
13*e7776783SApple OSS Distributions * No system(3c) on watchOS, so provide our own.
14*e7776783SApple OSS Distributions */
15*e7776783SApple OSS Distributions static int
my_system(const char * command)16*e7776783SApple OSS Distributions my_system(const char *command)
17*e7776783SApple OSS Distributions {
18*e7776783SApple OSS Distributions pid_t pid;
19*e7776783SApple OSS Distributions int status = 0;
20*e7776783SApple OSS Distributions const char *argv[] = {
21*e7776783SApple OSS Distributions "/bin/sh",
22*e7776783SApple OSS Distributions "-c",
23*e7776783SApple OSS Distributions command,
24*e7776783SApple OSS Distributions NULL
25*e7776783SApple OSS Distributions };
26*e7776783SApple OSS Distributions
27*e7776783SApple OSS Distributions if (dt_launch_tool(&pid, (char **)(void *)argv, FALSE, NULL, NULL)) {
28*e7776783SApple OSS Distributions return -1;
29*e7776783SApple OSS Distributions }
30*e7776783SApple OSS Distributions sleep(2); /* let the child start running */
31*e7776783SApple OSS Distributions
32*e7776783SApple OSS Distributions size_t size = sizeof(after_regions);
33*e7776783SApple OSS Distributions int ret = sysctlbyname("vm.shared_region_pager_count", &after_regions, &size, NULL, 0);
34*e7776783SApple OSS Distributions T_QUIET; T_EXPECT_POSIX_SUCCESS(ret, "get shared_region_pager_count after");
35*e7776783SApple OSS Distributions
36*e7776783SApple OSS Distributions if (!dt_waitpid(pid, &status, NULL, 30)) {
37*e7776783SApple OSS Distributions if (status != 0) {
38*e7776783SApple OSS Distributions return status;
39*e7776783SApple OSS Distributions }
40*e7776783SApple OSS Distributions return -1;
41*e7776783SApple OSS Distributions }
42*e7776783SApple OSS Distributions return status;
43*e7776783SApple OSS Distributions }
44*e7776783SApple OSS Distributions
45*e7776783SApple OSS Distributions /*
46*e7776783SApple OSS Distributions * If shared regions by entitlement was not originally active, turn it back off.
47*e7776783SApple OSS Distributions */
48*e7776783SApple OSS Distributions static int orig_setting = 0;
49*e7776783SApple OSS Distributions static void
cleanup(void)50*e7776783SApple OSS Distributions cleanup(void)
51*e7776783SApple OSS Distributions {
52*e7776783SApple OSS Distributions int ret;
53*e7776783SApple OSS Distributions int off = 0;
54*e7776783SApple OSS Distributions size_t size_off = sizeof(off);
55*e7776783SApple OSS Distributions
56*e7776783SApple OSS Distributions if (orig_setting == 0) {
57*e7776783SApple OSS Distributions ret = sysctlbyname("vm.vm_shared_region_by_entitlement", NULL, NULL, &off, size_off);
58*e7776783SApple OSS Distributions T_QUIET; T_EXPECT_POSIX_SUCCESS(ret, "turning sysctl back off");
59*e7776783SApple OSS Distributions }
60*e7776783SApple OSS Distributions }
61*e7776783SApple OSS Distributions
62*e7776783SApple OSS Distributions /*
63*e7776783SApple OSS Distributions * This test:
64*e7776783SApple OSS Distributions * - looks at the number of shared region pagers,
65*e7776783SApple OSS Distributions * - launches a helper app that has entitlement for unique signing
66*e7776783SApple OSS Distributions * - gets the number of shared region pagers again.
67*e7776783SApple OSS Distributions * It expects to see additional shared region pager(s) to exist.
68*e7776783SApple OSS Distributions *
69*e7776783SApple OSS Distributions */
70*e7776783SApple OSS Distributions T_DECL(sr_entitlement, "shared region by entitlement test")
71*e7776783SApple OSS Distributions {
72*e7776783SApple OSS Distributions int ret;
73*e7776783SApple OSS Distributions size_t size;
74*e7776783SApple OSS Distributions int before_regions = 0;
75*e7776783SApple OSS Distributions int on = 1;
76*e7776783SApple OSS Distributions size_t size_on = sizeof(on);
77*e7776783SApple OSS Distributions
78*e7776783SApple OSS Distributions #if !__arm64e__
79*e7776783SApple OSS Distributions T_SKIP("No pointer authentication support");
80*e7776783SApple OSS Distributions #endif
81*e7776783SApple OSS Distributions
82*e7776783SApple OSS Distributions /*
83*e7776783SApple OSS Distributions * Check if the sysctl vm_shared_region_by_entitlement exists and if so make
84*e7776783SApple OSS Distributions * sure it is set.
85*e7776783SApple OSS Distributions */
86*e7776783SApple OSS Distributions size = sizeof(orig_setting);
87*e7776783SApple OSS Distributions ret = sysctlbyname("vm.vm_shared_region_by_entitlement", &orig_setting, &size, &on, size_on);
88*e7776783SApple OSS Distributions if (ret != 0) {
89*e7776783SApple OSS Distributions T_SKIP("No pointer authentication support");
90*e7776783SApple OSS Distributions }
91*e7776783SApple OSS Distributions
92*e7776783SApple OSS Distributions T_ATEND(cleanup);
93*e7776783SApple OSS Distributions
94*e7776783SApple OSS Distributions size = sizeof(before_regions);
95*e7776783SApple OSS Distributions ret = sysctlbyname("vm.shared_region_pager_count", &before_regions, &size, NULL, 0);
96*e7776783SApple OSS Distributions T_QUIET; T_EXPECT_POSIX_SUCCESS(ret, "get shared_region_pager_count before");
97*e7776783SApple OSS Distributions T_QUIET; T_EXPECT_GE_INT(before_regions, 1, "invalid before number of regions");
98*e7776783SApple OSS Distributions
99*e7776783SApple OSS Distributions ret = my_system("./sr_entitlement_helper");
100*e7776783SApple OSS Distributions if (ret != 0) {
101*e7776783SApple OSS Distributions T_ASSERT_FAIL("Couldn't run helper first time ret = %d", ret);
102*e7776783SApple OSS Distributions }
103*e7776783SApple OSS Distributions
104*e7776783SApple OSS Distributions T_EXPECT_GT_INT(after_regions, before_regions, "expected additional SR pagers after running helper");
105*e7776783SApple OSS Distributions }
106