xref: /xnu-8020.121.3/tests/sr_entitlement.c (revision fdd8201d7b966f0c3ea610489d29bd841d358941)
1*fdd8201dSApple OSS Distributions #include <stdlib.h>
2*fdd8201dSApple OSS Distributions #include <unistd.h>
3*fdd8201dSApple OSS Distributions #include <sys/sysctl.h>
4*fdd8201dSApple OSS Distributions 
5*fdd8201dSApple OSS Distributions #include <darwintest.h>
6*fdd8201dSApple OSS Distributions #include <darwintest_utils.h>
7*fdd8201dSApple OSS Distributions 
8*fdd8201dSApple OSS Distributions T_GLOBAL_META(T_META_RUN_CONCURRENTLY(false));
9*fdd8201dSApple OSS Distributions 
10*fdd8201dSApple OSS Distributions static int after_regions = 0;
11*fdd8201dSApple OSS Distributions 
12*fdd8201dSApple OSS Distributions /*
13*fdd8201dSApple OSS Distributions  * No system(3c) on watchOS, so provide our own.
14*fdd8201dSApple OSS Distributions  */
15*fdd8201dSApple OSS Distributions static int
my_system(const char * command)16*fdd8201dSApple OSS Distributions my_system(const char *command)
17*fdd8201dSApple OSS Distributions {
18*fdd8201dSApple OSS Distributions 	pid_t pid;
19*fdd8201dSApple OSS Distributions 	int status = 0;
20*fdd8201dSApple OSS Distributions 	const char *argv[] = {
21*fdd8201dSApple OSS Distributions 		"/bin/sh",
22*fdd8201dSApple OSS Distributions 		"-c",
23*fdd8201dSApple OSS Distributions 		command,
24*fdd8201dSApple OSS Distributions 		NULL
25*fdd8201dSApple OSS Distributions 	};
26*fdd8201dSApple OSS Distributions 
27*fdd8201dSApple OSS Distributions 	if (dt_launch_tool(&pid, (char **)(void *)argv, FALSE, NULL, NULL)) {
28*fdd8201dSApple OSS Distributions 		return -1;
29*fdd8201dSApple OSS Distributions 	}
30*fdd8201dSApple OSS Distributions 	sleep(2); /* let the child start running */
31*fdd8201dSApple OSS Distributions 
32*fdd8201dSApple OSS Distributions 	size_t size = sizeof(after_regions);
33*fdd8201dSApple OSS Distributions 	int ret = sysctlbyname("vm.shared_region_pager_count", &after_regions, &size, NULL, 0);
34*fdd8201dSApple OSS Distributions 	T_QUIET; T_EXPECT_POSIX_SUCCESS(ret, "get shared_region_pager_count after");
35*fdd8201dSApple OSS Distributions 
36*fdd8201dSApple OSS Distributions 	if (!dt_waitpid(pid, &status, NULL, 30)) {
37*fdd8201dSApple OSS Distributions 		if (status != 0) {
38*fdd8201dSApple OSS Distributions 			return status;
39*fdd8201dSApple OSS Distributions 		}
40*fdd8201dSApple OSS Distributions 		return -1;
41*fdd8201dSApple OSS Distributions 	}
42*fdd8201dSApple OSS Distributions 	return status;
43*fdd8201dSApple OSS Distributions }
44*fdd8201dSApple OSS Distributions 
45*fdd8201dSApple OSS Distributions /*
46*fdd8201dSApple OSS Distributions  * If shared regions by entitlement was not originally active, turn it back off.
47*fdd8201dSApple OSS Distributions  */
48*fdd8201dSApple OSS Distributions static int orig_setting = 0;
49*fdd8201dSApple OSS Distributions static void
cleanup(void)50*fdd8201dSApple OSS Distributions cleanup(void)
51*fdd8201dSApple OSS Distributions {
52*fdd8201dSApple OSS Distributions 	int ret;
53*fdd8201dSApple OSS Distributions 	int off = 0;
54*fdd8201dSApple OSS Distributions 	size_t size_off = sizeof(off);
55*fdd8201dSApple OSS Distributions 
56*fdd8201dSApple OSS Distributions 	if (orig_setting == 0) {
57*fdd8201dSApple OSS Distributions 		ret = sysctlbyname("vm.vm_shared_region_by_entitlement", NULL, NULL, &off, size_off);
58*fdd8201dSApple OSS Distributions 		T_QUIET; T_EXPECT_POSIX_SUCCESS(ret, "turning sysctl back off");
59*fdd8201dSApple OSS Distributions 	}
60*fdd8201dSApple OSS Distributions }
61*fdd8201dSApple OSS Distributions 
62*fdd8201dSApple OSS Distributions /*
63*fdd8201dSApple OSS Distributions  * This test:
64*fdd8201dSApple OSS Distributions  * - looks at the number of shared region pagers,
65*fdd8201dSApple OSS Distributions  * - launches a helper app that has entitlement for unique signing
66*fdd8201dSApple OSS Distributions  * - gets the number of shared region pagers again.
67*fdd8201dSApple OSS Distributions  * It expects to see additional shared region pager(s) to exist.
68*fdd8201dSApple OSS Distributions  *
69*fdd8201dSApple OSS Distributions  */
70*fdd8201dSApple OSS Distributions T_DECL(sr_entitlement, "shared region by entitlement test")
71*fdd8201dSApple OSS Distributions {
72*fdd8201dSApple OSS Distributions 	int ret;
73*fdd8201dSApple OSS Distributions 	size_t size;
74*fdd8201dSApple OSS Distributions 	int before_regions = 0;
75*fdd8201dSApple OSS Distributions 	int on = 1;
76*fdd8201dSApple OSS Distributions 	size_t size_on = sizeof(on);
77*fdd8201dSApple OSS Distributions 
78*fdd8201dSApple OSS Distributions #if !__arm64e__
79*fdd8201dSApple OSS Distributions 	T_SKIP("No pointer authentication support");
80*fdd8201dSApple OSS Distributions #endif
81*fdd8201dSApple OSS Distributions 
82*fdd8201dSApple OSS Distributions 	/*
83*fdd8201dSApple OSS Distributions 	 * Check if the sysctl vm_shared_region_by_entitlement exists and if so make
84*fdd8201dSApple OSS Distributions 	 * sure it is set.
85*fdd8201dSApple OSS Distributions 	 */
86*fdd8201dSApple OSS Distributions 	size = sizeof(orig_setting);
87*fdd8201dSApple OSS Distributions 	ret = sysctlbyname("vm.vm_shared_region_by_entitlement", &orig_setting, &size, &on, size_on);
88*fdd8201dSApple OSS Distributions 	if (ret != 0) {
89*fdd8201dSApple OSS Distributions 		T_SKIP("No pointer authentication support");
90*fdd8201dSApple OSS Distributions 	}
91*fdd8201dSApple OSS Distributions 
92*fdd8201dSApple OSS Distributions 	T_ATEND(cleanup);
93*fdd8201dSApple OSS Distributions 
94*fdd8201dSApple OSS Distributions 	size = sizeof(before_regions);
95*fdd8201dSApple OSS Distributions 	ret = sysctlbyname("vm.shared_region_pager_count", &before_regions, &size, NULL, 0);
96*fdd8201dSApple OSS Distributions 	T_QUIET; T_EXPECT_POSIX_SUCCESS(ret, "get shared_region_pager_count before");
97*fdd8201dSApple OSS Distributions 	T_QUIET; T_EXPECT_GE_INT(before_regions, 1, "invalid before number of regions");
98*fdd8201dSApple OSS Distributions 
99*fdd8201dSApple OSS Distributions 	ret = my_system("./sr_entitlement_helper");
100*fdd8201dSApple OSS Distributions 	if (ret != 0) {
101*fdd8201dSApple OSS Distributions 		T_ASSERT_FAIL("Couldn't run helper first time ret = %d", ret);
102*fdd8201dSApple OSS Distributions 	}
103*fdd8201dSApple OSS Distributions 
104*fdd8201dSApple OSS Distributions 	T_EXPECT_GT_INT(after_regions, before_regions, "expected additional SR pagers after running helper");
105*fdd8201dSApple OSS Distributions }
106