1*42e22086SApple OSS Distributions /*
2*42e22086SApple OSS Distributions * cd $XNU/tests
3*42e22086SApple OSS Distributions * xcrun -sdk macosx.internal/iphoneos.internal make proc_rlimit LDFLAGS="-ldarwintest"
4*42e22086SApple OSS Distributions */
5*42e22086SApple OSS Distributions #include <stdio.h>
6*42e22086SApple OSS Distributions #include <unistd.h>
7*42e22086SApple OSS Distributions #include <sys/resource.h>
8*42e22086SApple OSS Distributions #include <errno.h>
9*42e22086SApple OSS Distributions #include <sys/sysctl.h>
10*42e22086SApple OSS Distributions #include <darwintest.h>
11*42e22086SApple OSS Distributions
12*42e22086SApple OSS Distributions /* Defined in <sys/resource.h> but not visible to user space */
13*42e22086SApple OSS Distributions #define RLIMIT_NLIMITS 9
14*42e22086SApple OSS Distributions
15*42e22086SApple OSS Distributions /* Defined in <sys/resource.h> and visible to user space */
16*42e22086SApple OSS Distributions static const char *RESOURCE_STRING[] = {
17*42e22086SApple OSS Distributions "RLIMIT_CPU", /* #define RLIMIT_CPU 0 */
18*42e22086SApple OSS Distributions "RLIMIT_FSIZE", /* #define RLIMIT_FSIZE 1 */
19*42e22086SApple OSS Distributions "RLIMIT_DATA", /* #define RLIMIT_DATA 2 */
20*42e22086SApple OSS Distributions "RLIMIT_STACK", /* #define RLIMIT_STACK 3 */
21*42e22086SApple OSS Distributions "RLIMIT_CORE", /* #define RLIMIT_CORE 4 */
22*42e22086SApple OSS Distributions "RLIMIT_AS/RSS", /* #define RLIMIT_AS 5 */
23*42e22086SApple OSS Distributions /* #define RLIMIT_RSS RLIMIT_AS */
24*42e22086SApple OSS Distributions "RLIMIT_MEMLOCK", /* #define RLIMIT_MEMLOCK 6 */
25*42e22086SApple OSS Distributions "RLIMIT_NPROC", /* #define RLIMIT_NPROC 7 */
26*42e22086SApple OSS Distributions "RLIMIT_NOFILE" /* #define RLIMIT_NOFILE 8 */
27*42e22086SApple OSS Distributions };
28*42e22086SApple OSS Distributions
29*42e22086SApple OSS Distributions /* Change limit values by this arbitrary amount */
30*42e22086SApple OSS Distributions #define LIMIT_DIFF 64
31*42e22086SApple OSS Distributions
32*42e22086SApple OSS Distributions /* Limit type */
33*42e22086SApple OSS Distributions #define SOFT_LIMIT 0
34*42e22086SApple OSS Distributions #define HARD_LIMIT 1
35*42e22086SApple OSS Distributions
36*42e22086SApple OSS Distributions /* Action on changing limit values */
37*42e22086SApple OSS Distributions #define LOWER 0
38*42e22086SApple OSS Distributions #define RAISE 1
39*42e22086SApple OSS Distributions
40*42e22086SApple OSS Distributions static struct rlimit orig_rlimit[RLIMIT_NLIMITS];
41*42e22086SApple OSS Distributions
42*42e22086SApple OSS Distributions /* Maximum number of open files allowed by normal user */
43*42e22086SApple OSS Distributions static rlim_t maxfilesperproc;
44*42e22086SApple OSS Distributions static size_t maxfilesperproc_size = sizeof(maxfilesperproc);
45*42e22086SApple OSS Distributions
46*42e22086SApple OSS Distributions /* Maximum number of open files allowed by super user */
47*42e22086SApple OSS Distributions static rlim_t maxfiles;
48*42e22086SApple OSS Distributions static size_t maxfiles_size = sizeof(maxfiles);
49*42e22086SApple OSS Distributions
50*42e22086SApple OSS Distributions /* Maximum number of simultaneous processes allowed by normal user */
51*42e22086SApple OSS Distributions static rlim_t maxprocperuid;
52*42e22086SApple OSS Distributions static size_t maxprocperuid_size = sizeof(maxprocperuid);
53*42e22086SApple OSS Distributions
54*42e22086SApple OSS Distributions /* Maximum number of simultaneous processes allowed by super user */
55*42e22086SApple OSS Distributions static rlim_t maxproc;
56*42e22086SApple OSS Distributions static size_t maxproc_size = sizeof(maxproc);
57*42e22086SApple OSS Distributions
58*42e22086SApple OSS Distributions static bool superuser = FALSE;
59*42e22086SApple OSS Distributions
60*42e22086SApple OSS Distributions static int
get_initial_rlimits(void)61*42e22086SApple OSS Distributions get_initial_rlimits(void)
62*42e22086SApple OSS Distributions {
63*42e22086SApple OSS Distributions int err = -1;
64*42e22086SApple OSS Distributions int i;
65*42e22086SApple OSS Distributions
66*42e22086SApple OSS Distributions for (i = 0; i < RLIMIT_NLIMITS; i++) {
67*42e22086SApple OSS Distributions err = getrlimit(i, &orig_rlimit[i]);
68*42e22086SApple OSS Distributions T_QUIET; T_EXPECT_EQ(0, err, "getrlimit(%15s, soft: 0x%16llx, hard 0x%16llx) %s", RESOURCE_STRING[i], orig_rlimit[i].rlim_cur, orig_rlimit[i].rlim_max, err == 0 ? "" : strerror(errno));
69*42e22086SApple OSS Distributions }
70*42e22086SApple OSS Distributions return err;
71*42e22086SApple OSS Distributions }
72*42e22086SApple OSS Distributions
73*42e22086SApple OSS Distributions static void
print_rlimits(bool initial_limits)74*42e22086SApple OSS Distributions print_rlimits(bool initial_limits)
75*42e22086SApple OSS Distributions {
76*42e22086SApple OSS Distributions int err;
77*42e22086SApple OSS Distributions int i;
78*42e22086SApple OSS Distributions
79*42e22086SApple OSS Distributions for (i = 0; i < RLIMIT_NLIMITS; i++) {
80*42e22086SApple OSS Distributions struct rlimit lim;
81*42e22086SApple OSS Distributions
82*42e22086SApple OSS Distributions if (initial_limits) {
83*42e22086SApple OSS Distributions lim = orig_rlimit[i];
84*42e22086SApple OSS Distributions } else {
85*42e22086SApple OSS Distributions err = getrlimit(i, &lim);
86*42e22086SApple OSS Distributions T_QUIET; T_EXPECT_EQ(0, err, "getrlimit(%15s, soft: 0x%16llx, hard 0x%16llx) %s", RESOURCE_STRING[i], lim.rlim_cur, lim.rlim_max, err == 0 ? "" : strerror(errno));
87*42e22086SApple OSS Distributions }
88*42e22086SApple OSS Distributions T_LOG("%35s soft: 0x%16llx hard 0x%16llx", RESOURCE_STRING[i], lim.rlim_cur, lim.rlim_max);
89*42e22086SApple OSS Distributions }
90*42e22086SApple OSS Distributions }
91*42e22086SApple OSS Distributions
92*42e22086SApple OSS Distributions /*
93*42e22086SApple OSS Distributions * Change "limit_type" of all of the process's "rlimit" by amount
94*42e22086SApple OSS Distributions *
95*42e22086SApple OSS Distributions * limit_type: SOFT_LIMIT/HARD_LIMIT
96*42e22086SApple OSS Distributions * amount: rlim_t
97*42e22086SApple OSS Distributions * action: RAISE/LOWER
98*42e22086SApple OSS Distributions */
99*42e22086SApple OSS Distributions static void
change_rlimits(int limit_type,rlim_t amount,int action)100*42e22086SApple OSS Distributions change_rlimits(int limit_type, rlim_t amount, int action)
101*42e22086SApple OSS Distributions {
102*42e22086SApple OSS Distributions int err = -1;
103*42e22086SApple OSS Distributions int i;
104*42e22086SApple OSS Distributions
105*42e22086SApple OSS Distributions for (i = 0; i < RLIMIT_NLIMITS; i++) {
106*42e22086SApple OSS Distributions struct rlimit newlim; // for setrlimit
107*42e22086SApple OSS Distributions struct rlimit verifylim; // for getrlimit
108*42e22086SApple OSS Distributions bool expect_failure = FALSE;
109*42e22086SApple OSS Distributions int expect_errno = 0;
110*42e22086SApple OSS Distributions
111*42e22086SApple OSS Distributions /* Get the current limit values */
112*42e22086SApple OSS Distributions err = getrlimit(i, &newlim);
113*42e22086SApple OSS Distributions T_EXPECT_EQ(0, err, "getrlimit(%15s, soft: 0x%16llx, hard 0x%16llx) %s", RESOURCE_STRING[i], newlim.rlim_cur, newlim.rlim_max, err == 0 ? "" : strerror(errno));
114*42e22086SApple OSS Distributions
115*42e22086SApple OSS Distributions /* Changing soft limit */
116*42e22086SApple OSS Distributions if (limit_type == SOFT_LIMIT) {
117*42e22086SApple OSS Distributions if (action == RAISE) {
118*42e22086SApple OSS Distributions /* Raising soft limits to exceed hard limits is not allowed and we expect to see failure on setrlimit call later */
119*42e22086SApple OSS Distributions if (newlim.rlim_cur + amount > newlim.rlim_max) {
120*42e22086SApple OSS Distributions expect_failure = TRUE;
121*42e22086SApple OSS Distributions expect_errno = EINVAL;
122*42e22086SApple OSS Distributions }
123*42e22086SApple OSS Distributions newlim.rlim_cur += amount;
124*42e22086SApple OSS Distributions } else if (action == LOWER) {
125*42e22086SApple OSS Distributions if (newlim.rlim_cur == 0) {
126*42e22086SApple OSS Distributions /* Soft limit might be 0 already, if so skip lowering it */
127*42e22086SApple OSS Distributions } else {
128*42e22086SApple OSS Distributions newlim.rlim_cur -= amount;
129*42e22086SApple OSS Distributions }
130*42e22086SApple OSS Distributions } else {
131*42e22086SApple OSS Distributions T_FAIL("Unknown action on soft limit: %d", action);
132*42e22086SApple OSS Distributions }
133*42e22086SApple OSS Distributions }
134*42e22086SApple OSS Distributions /* Changing hard limit */
135*42e22086SApple OSS Distributions else if (limit_type == HARD_LIMIT) {
136*42e22086SApple OSS Distributions if (action == RAISE) {
137*42e22086SApple OSS Distributions newlim.rlim_max += amount;
138*42e22086SApple OSS Distributions
139*42e22086SApple OSS Distributions /* Raising hard limits is not allowed for normal user and we expect to see failure on setrlimit call later */
140*42e22086SApple OSS Distributions expect_failure = TRUE;
141*42e22086SApple OSS Distributions expect_errno = EPERM;
142*42e22086SApple OSS Distributions } else if (action == LOWER) {
143*42e22086SApple OSS Distributions if (newlim.rlim_max == 0) {
144*42e22086SApple OSS Distributions /* Hard limit might be 0 already, if so skip lowering it (e.g., RLIMIT_CORE on iOS) */
145*42e22086SApple OSS Distributions } else {
146*42e22086SApple OSS Distributions newlim.rlim_max -= amount;
147*42e22086SApple OSS Distributions }
148*42e22086SApple OSS Distributions /* Soft limit might need to be changed as well since soft cannot be greater than hard */
149*42e22086SApple OSS Distributions if (newlim.rlim_cur > newlim.rlim_max) {
150*42e22086SApple OSS Distributions newlim.rlim_cur = newlim.rlim_max;
151*42e22086SApple OSS Distributions }
152*42e22086SApple OSS Distributions } else {
153*42e22086SApple OSS Distributions T_FAIL("Unknown action on hard limit: %d", action);
154*42e22086SApple OSS Distributions }
155*42e22086SApple OSS Distributions }
156*42e22086SApple OSS Distributions /* Changing unknown limit type */
157*42e22086SApple OSS Distributions else {
158*42e22086SApple OSS Distributions T_FAIL("Unknown limit type: %d", limit_type);
159*42e22086SApple OSS Distributions }
160*42e22086SApple OSS Distributions
161*42e22086SApple OSS Distributions /* Request the kernel to change limit values */
162*42e22086SApple OSS Distributions err = setrlimit(i, &newlim);
163*42e22086SApple OSS Distributions
164*42e22086SApple OSS Distributions if (expect_failure) {
165*42e22086SApple OSS Distributions /* We expect the setrlimit call to fail */
166*42e22086SApple OSS Distributions T_EXPECT_EQ(-1, err, "setrlimit(%15s, soft: 0x%16llx, hard 0x%16llx) failed as expected: %s", RESOURCE_STRING[i], newlim.rlim_cur, newlim.rlim_max, strerror(errno));
167*42e22086SApple OSS Distributions T_EXPECT_EQ(expect_errno, errno, "Expect errno %d, errno returned %d", expect_errno, errno);
168*42e22086SApple OSS Distributions continue;
169*42e22086SApple OSS Distributions } else {
170*42e22086SApple OSS Distributions T_EXPECT_EQ(0, err, "setrlimit(%15s, soft: 0x%16llx, hard 0x%16llx) %s", RESOURCE_STRING[i], newlim.rlim_cur, newlim.rlim_max, err == 0 ? "" : strerror(errno));
171*42e22086SApple OSS Distributions }
172*42e22086SApple OSS Distributions
173*42e22086SApple OSS Distributions /* Verify the kernel correctly changed the limit values */
174*42e22086SApple OSS Distributions err = getrlimit(i, &verifylim);
175*42e22086SApple OSS Distributions T_EXPECT_EQ(0, err, "getrlimit(%15s, soft: 0x%16llx, hard 0x%16llx) %s", RESOURCE_STRING[i], verifylim.rlim_cur, verifylim.rlim_max, err == 0 ? "" : strerror(errno));
176*42e22086SApple OSS Distributions
177*42e22086SApple OSS Distributions /* The kernel forces the hard limit of RLIMIT_NOFILE to be at most maxfileperproc for normal user when changing the hard limit with setrlimit */
178*42e22086SApple OSS Distributions if (i == RLIMIT_NOFILE && limit_type == HARD_LIMIT && newlim.rlim_max > maxfilesperproc) {
179*42e22086SApple OSS Distributions if (newlim.rlim_cur != verifylim.rlim_cur ||
180*42e22086SApple OSS Distributions maxfilesperproc != verifylim.rlim_max) {
181*42e22086SApple OSS Distributions T_FAIL("Mismatch limit values %s despite a successful setrlimit call (setrlimit'd soft 0x%16llx hard 0x%16llx but getrlimit'd soft 0x%16llx hard 0x%16llx)",
182*42e22086SApple OSS Distributions RESOURCE_STRING[i], newlim.rlim_cur, newlim.rlim_max, verifylim.rlim_cur, verifylim.rlim_max);
183*42e22086SApple OSS Distributions }
184*42e22086SApple OSS Distributions }
185*42e22086SApple OSS Distributions /* The kernel forces the hard limit of RLIMIT_NPROC to be at most maxproc for normal user when changing either soft/hard limit with setrlimit */
186*42e22086SApple OSS Distributions else if (i == RLIMIT_NPROC && newlim.rlim_max > maxprocperuid) {
187*42e22086SApple OSS Distributions if (newlim.rlim_cur != verifylim.rlim_cur ||
188*42e22086SApple OSS Distributions maxprocperuid != verifylim.rlim_max) {
189*42e22086SApple OSS Distributions T_FAIL("Mismatch limit values %s despite a successful setrlimit call (setrlimit'd soft 0x%16llx hard 0x%16llx but getrlimit'd soft 0x%16llx hard 0x%16llx)",
190*42e22086SApple OSS Distributions RESOURCE_STRING[i], newlim.rlim_cur, newlim.rlim_max, verifylim.rlim_cur, verifylim.rlim_max);
191*42e22086SApple OSS Distributions }
192*42e22086SApple OSS Distributions } else {
193*42e22086SApple OSS Distributions if (newlim.rlim_cur != verifylim.rlim_cur ||
194*42e22086SApple OSS Distributions newlim.rlim_max != verifylim.rlim_max) {
195*42e22086SApple OSS Distributions T_FAIL("Mismatch limit values %s despite a successful setrlimit call (setrlimit'd soft 0x%16llx hard 0x%16llx but getrlimit'd soft 0x%16llx hard 0x%16llx)",
196*42e22086SApple OSS Distributions RESOURCE_STRING[i], newlim.rlim_cur, newlim.rlim_max, verifylim.rlim_cur, verifylim.rlim_max);
197*42e22086SApple OSS Distributions }
198*42e22086SApple OSS Distributions }
199*42e22086SApple OSS Distributions }
200*42e22086SApple OSS Distributions }
201*42e22086SApple OSS Distributions
202*42e22086SApple OSS Distributions T_DECL(proc_rlimit,
203*42e22086SApple OSS Distributions "Test basic functionalities of the getrlimit and setrlimit")
204*42e22086SApple OSS Distributions {
205*42e22086SApple OSS Distributions int err;
206*42e22086SApple OSS Distributions struct rlimit lim;
207*42e22086SApple OSS Distributions
208*42e22086SApple OSS Distributions T_SETUPBEGIN;
209*42e22086SApple OSS Distributions
210*42e22086SApple OSS Distributions if (geteuid() == 0) {
211*42e22086SApple OSS Distributions superuser = TRUE;
212*42e22086SApple OSS Distributions T_SKIP("This test should not be run as super user.");
213*42e22086SApple OSS Distributions }
214*42e22086SApple OSS Distributions
215*42e22086SApple OSS Distributions /* Use sysctl to query the real limits of RLIMIT_NOFILE/RLIMIT_NPROC for normal user on Apple's systems */
216*42e22086SApple OSS Distributions err = sysctlbyname("kern.maxfilesperproc", &maxfilesperproc, &maxfilesperproc_size, NULL, 0);
217*42e22086SApple OSS Distributions T_EXPECT_EQ_INT(0, err, "maxfilesperproc: %llu", maxfilesperproc);
218*42e22086SApple OSS Distributions
219*42e22086SApple OSS Distributions err = sysctlbyname("kern.maxprocperuid", &maxprocperuid, &maxprocperuid_size, NULL, 0);
220*42e22086SApple OSS Distributions T_EXPECT_EQ_INT(0, err, "maxprocperuid: %llu", maxprocperuid);
221*42e22086SApple OSS Distributions
222*42e22086SApple OSS Distributions /* Use sysctl to query the real limits of RLIMIT_NOFILE/RLIMIT_NPROC for super user on Apple's systems (placeholder for adding super user tests) */
223*42e22086SApple OSS Distributions err = sysctlbyname("kern.maxfiles", &maxfiles, &maxfiles_size, NULL, 0);
224*42e22086SApple OSS Distributions T_EXPECT_EQ_INT(0, err, "maxfiles: %llu", maxfiles);
225*42e22086SApple OSS Distributions
226*42e22086SApple OSS Distributions err = sysctlbyname("kern.maxproc", &maxproc, &maxproc_size, NULL, 0);
227*42e22086SApple OSS Distributions T_EXPECT_EQ_INT(0, err, "maxproc: %llu", maxproc);
228*42e22086SApple OSS Distributions
229*42e22086SApple OSS Distributions /* Issue getrlimit syscall to retrieve the initial resource limit values before calling setrlimit */
230*42e22086SApple OSS Distributions err = get_initial_rlimits();
231*42e22086SApple OSS Distributions T_EXPECT_EQ(0, err, "Obtained initial resource values.");
232*42e22086SApple OSS Distributions
233*42e22086SApple OSS Distributions /* Print out resource limit values to stdout for less-painful triage in case needed */
234*42e22086SApple OSS Distributions T_LOG("Resource limits before the test:");
235*42e22086SApple OSS Distributions print_rlimits(TRUE);
236*42e22086SApple OSS Distributions
237*42e22086SApple OSS Distributions T_SETUPEND;
238*42e22086SApple OSS Distributions
239*42e22086SApple OSS Distributions /* Lower soft limits by arbitrary amount */
240*42e22086SApple OSS Distributions T_LOG("---------Lowering soft limits by 0x%x---------:\n", LIMIT_DIFF);
241*42e22086SApple OSS Distributions change_rlimits(SOFT_LIMIT, LIMIT_DIFF, LOWER);
242*42e22086SApple OSS Distributions
243*42e22086SApple OSS Distributions /* Raise soft limits back to the orginal values */
244*42e22086SApple OSS Distributions T_LOG("---------Raising soft limits by 0x%x---------:\n", LIMIT_DIFF);
245*42e22086SApple OSS Distributions change_rlimits(SOFT_LIMIT, LIMIT_DIFF, RAISE);
246*42e22086SApple OSS Distributions
247*42e22086SApple OSS Distributions /* Lower hard limits */
248*42e22086SApple OSS Distributions T_LOG("---------Lowering hard limits by 0x%x---------:", LIMIT_DIFF);
249*42e22086SApple OSS Distributions change_rlimits(HARD_LIMIT, LIMIT_DIFF, LOWER);
250*42e22086SApple OSS Distributions
251*42e22086SApple OSS Distributions /* Raise soft limits to exceed hard limits (setrlimit should fail, but the darwintest should pass) */
252*42e22086SApple OSS Distributions T_LOG("---------Attempting to raised soft limits by 0x%x to exceed hard limits---------:", LIMIT_DIFF);
253*42e22086SApple OSS Distributions change_rlimits(SOFT_LIMIT, LIMIT_DIFF, RAISE);
254*42e22086SApple OSS Distributions
255*42e22086SApple OSS Distributions /* Raise hard limits (setrlimit should fail, but the darwintest should pass) */
256*42e22086SApple OSS Distributions T_LOG("---------Attempting to raise hard limits by 0x%x---------:", LIMIT_DIFF);
257*42e22086SApple OSS Distributions change_rlimits(HARD_LIMIT, LIMIT_DIFF, RAISE);
258*42e22086SApple OSS Distributions
259*42e22086SApple OSS Distributions /* Get and set a non-existing resource limit */
260*42e22086SApple OSS Distributions T_LOG("---------Accessing a non-existing resource---------:");
261*42e22086SApple OSS Distributions err = getrlimit(RLIMIT_NLIMITS + 1, &lim);
262*42e22086SApple OSS Distributions T_EXPECT_EQ(-1, err, "Expect getrlimit to fail when accessing a non-existing resource: %s\n", strerror(errno));
263*42e22086SApple OSS Distributions T_EXPECT_EQ(EINVAL, errno, "Expect errno %d, errno returned %d", EINVAL, errno);
264*42e22086SApple OSS Distributions
265*42e22086SApple OSS Distributions err = setrlimit(RLIMIT_NLIMITS + 1, &lim);
266*42e22086SApple OSS Distributions T_EXPECT_EQ(-1, err, "Expect setrlimit to fail when accessing a non-existing resource: %s\n", strerror(errno));
267*42e22086SApple OSS Distributions T_EXPECT_EQ(EINVAL, errno, "Expect errno %d, errno returned %d", EINVAL, errno);
268*42e22086SApple OSS Distributions
269*42e22086SApple OSS Distributions T_LOG("Resource limits after the test:");
270*42e22086SApple OSS Distributions print_rlimits(FALSE);
271*42e22086SApple OSS Distributions }
272