xref: /xnu-8792.61.2/tests/proc_rlimit.c (revision 42e220869062b56f8d7d0726fd4c88954f87902c)
1*42e22086SApple OSS Distributions /*
2*42e22086SApple OSS Distributions  * cd $XNU/tests
3*42e22086SApple OSS Distributions  * xcrun -sdk macosx.internal/iphoneos.internal make proc_rlimit LDFLAGS="-ldarwintest"
4*42e22086SApple OSS Distributions  */
5*42e22086SApple OSS Distributions #include <stdio.h>
6*42e22086SApple OSS Distributions #include <unistd.h>
7*42e22086SApple OSS Distributions #include <sys/resource.h>
8*42e22086SApple OSS Distributions #include <errno.h>
9*42e22086SApple OSS Distributions #include <sys/sysctl.h>
10*42e22086SApple OSS Distributions #include <darwintest.h>
11*42e22086SApple OSS Distributions 
12*42e22086SApple OSS Distributions /* Defined in <sys/resource.h> but not visible to user space */
13*42e22086SApple OSS Distributions #define RLIMIT_NLIMITS 9
14*42e22086SApple OSS Distributions 
15*42e22086SApple OSS Distributions /* Defined in <sys/resource.h> and visible to user space */
16*42e22086SApple OSS Distributions static const char *RESOURCE_STRING[] = {
17*42e22086SApple OSS Distributions 	"RLIMIT_CPU",     /* #define RLIMIT_CPU      0 */
18*42e22086SApple OSS Distributions 	"RLIMIT_FSIZE",   /* #define RLIMIT_FSIZE    1 */
19*42e22086SApple OSS Distributions 	"RLIMIT_DATA",    /* #define RLIMIT_DATA     2 */
20*42e22086SApple OSS Distributions 	"RLIMIT_STACK",   /* #define RLIMIT_STACK    3 */
21*42e22086SApple OSS Distributions 	"RLIMIT_CORE",    /* #define RLIMIT_CORE     4 */
22*42e22086SApple OSS Distributions 	"RLIMIT_AS/RSS",  /* #define RLIMIT_AS       5 */
23*42e22086SApple OSS Distributions 	/* #define RLIMIT_RSS      RLIMIT_AS */
24*42e22086SApple OSS Distributions 	"RLIMIT_MEMLOCK", /* #define RLIMIT_MEMLOCK  6 */
25*42e22086SApple OSS Distributions 	"RLIMIT_NPROC",   /* #define RLIMIT_NPROC    7 */
26*42e22086SApple OSS Distributions 	"RLIMIT_NOFILE"   /* #define RLIMIT_NOFILE   8 */
27*42e22086SApple OSS Distributions };
28*42e22086SApple OSS Distributions 
29*42e22086SApple OSS Distributions /* Change limit values by this arbitrary amount */
30*42e22086SApple OSS Distributions #define LIMIT_DIFF 64
31*42e22086SApple OSS Distributions 
32*42e22086SApple OSS Distributions /* Limit type */
33*42e22086SApple OSS Distributions #define SOFT_LIMIT 0
34*42e22086SApple OSS Distributions #define HARD_LIMIT 1
35*42e22086SApple OSS Distributions 
36*42e22086SApple OSS Distributions /* Action on changing limit values */
37*42e22086SApple OSS Distributions #define LOWER 0
38*42e22086SApple OSS Distributions #define RAISE 1
39*42e22086SApple OSS Distributions 
40*42e22086SApple OSS Distributions static struct rlimit orig_rlimit[RLIMIT_NLIMITS];
41*42e22086SApple OSS Distributions 
42*42e22086SApple OSS Distributions /* Maximum number of open files allowed by normal user */
43*42e22086SApple OSS Distributions static rlim_t maxfilesperproc;
44*42e22086SApple OSS Distributions static size_t maxfilesperproc_size = sizeof(maxfilesperproc);
45*42e22086SApple OSS Distributions 
46*42e22086SApple OSS Distributions /* Maximum number of open files allowed by super user */
47*42e22086SApple OSS Distributions static rlim_t maxfiles;
48*42e22086SApple OSS Distributions static size_t maxfiles_size = sizeof(maxfiles);
49*42e22086SApple OSS Distributions 
50*42e22086SApple OSS Distributions /* Maximum number of simultaneous processes allowed by normal user */
51*42e22086SApple OSS Distributions static rlim_t maxprocperuid;
52*42e22086SApple OSS Distributions static size_t maxprocperuid_size = sizeof(maxprocperuid);
53*42e22086SApple OSS Distributions 
54*42e22086SApple OSS Distributions /* Maximum number of simultaneous processes allowed by super user */
55*42e22086SApple OSS Distributions static rlim_t maxproc;
56*42e22086SApple OSS Distributions static size_t maxproc_size = sizeof(maxproc);
57*42e22086SApple OSS Distributions 
58*42e22086SApple OSS Distributions static bool superuser = FALSE;
59*42e22086SApple OSS Distributions 
60*42e22086SApple OSS Distributions static int
get_initial_rlimits(void)61*42e22086SApple OSS Distributions get_initial_rlimits(void)
62*42e22086SApple OSS Distributions {
63*42e22086SApple OSS Distributions 	int err = -1;
64*42e22086SApple OSS Distributions 	int i;
65*42e22086SApple OSS Distributions 
66*42e22086SApple OSS Distributions 	for (i = 0; i < RLIMIT_NLIMITS; i++) {
67*42e22086SApple OSS Distributions 		err = getrlimit(i, &orig_rlimit[i]);
68*42e22086SApple OSS Distributions 		T_QUIET; T_EXPECT_EQ(0, err, "getrlimit(%15s, soft: 0x%16llx, hard 0x%16llx) %s", RESOURCE_STRING[i], orig_rlimit[i].rlim_cur, orig_rlimit[i].rlim_max, err == 0 ? "" : strerror(errno));
69*42e22086SApple OSS Distributions 	}
70*42e22086SApple OSS Distributions 	return err;
71*42e22086SApple OSS Distributions }
72*42e22086SApple OSS Distributions 
73*42e22086SApple OSS Distributions static void
print_rlimits(bool initial_limits)74*42e22086SApple OSS Distributions print_rlimits(bool initial_limits)
75*42e22086SApple OSS Distributions {
76*42e22086SApple OSS Distributions 	int err;
77*42e22086SApple OSS Distributions 	int i;
78*42e22086SApple OSS Distributions 
79*42e22086SApple OSS Distributions 	for (i = 0; i < RLIMIT_NLIMITS; i++) {
80*42e22086SApple OSS Distributions 		struct rlimit lim;
81*42e22086SApple OSS Distributions 
82*42e22086SApple OSS Distributions 		if (initial_limits) {
83*42e22086SApple OSS Distributions 			lim = orig_rlimit[i];
84*42e22086SApple OSS Distributions 		} else {
85*42e22086SApple OSS Distributions 			err = getrlimit(i, &lim);
86*42e22086SApple OSS Distributions 			T_QUIET; T_EXPECT_EQ(0, err, "getrlimit(%15s, soft: 0x%16llx, hard 0x%16llx) %s", RESOURCE_STRING[i], lim.rlim_cur, lim.rlim_max, err == 0 ? "" : strerror(errno));
87*42e22086SApple OSS Distributions 		}
88*42e22086SApple OSS Distributions 		T_LOG("%35s soft: 0x%16llx hard 0x%16llx", RESOURCE_STRING[i], lim.rlim_cur, lim.rlim_max);
89*42e22086SApple OSS Distributions 	}
90*42e22086SApple OSS Distributions }
91*42e22086SApple OSS Distributions 
92*42e22086SApple OSS Distributions /*
93*42e22086SApple OSS Distributions  * Change "limit_type" of all of the process's "rlimit" by amount
94*42e22086SApple OSS Distributions  *
95*42e22086SApple OSS Distributions  * limit_type: SOFT_LIMIT/HARD_LIMIT
96*42e22086SApple OSS Distributions  * amount:     rlim_t
97*42e22086SApple OSS Distributions  * action:     RAISE/LOWER
98*42e22086SApple OSS Distributions  */
99*42e22086SApple OSS Distributions static void
change_rlimits(int limit_type,rlim_t amount,int action)100*42e22086SApple OSS Distributions change_rlimits(int limit_type, rlim_t amount, int action)
101*42e22086SApple OSS Distributions {
102*42e22086SApple OSS Distributions 	int err = -1;
103*42e22086SApple OSS Distributions 	int i;
104*42e22086SApple OSS Distributions 
105*42e22086SApple OSS Distributions 	for (i = 0; i < RLIMIT_NLIMITS; i++) {
106*42e22086SApple OSS Distributions 		struct rlimit newlim;     // for setrlimit
107*42e22086SApple OSS Distributions 		struct rlimit verifylim;  // for getrlimit
108*42e22086SApple OSS Distributions 		bool expect_failure = FALSE;
109*42e22086SApple OSS Distributions 		int expect_errno = 0;
110*42e22086SApple OSS Distributions 
111*42e22086SApple OSS Distributions 		/* Get the current limit values */
112*42e22086SApple OSS Distributions 		err = getrlimit(i, &newlim);
113*42e22086SApple OSS Distributions 		T_EXPECT_EQ(0, err, "getrlimit(%15s, soft: 0x%16llx, hard 0x%16llx) %s", RESOURCE_STRING[i], newlim.rlim_cur, newlim.rlim_max, err == 0 ? "" : strerror(errno));
114*42e22086SApple OSS Distributions 
115*42e22086SApple OSS Distributions 		/* Changing soft limit */
116*42e22086SApple OSS Distributions 		if (limit_type == SOFT_LIMIT) {
117*42e22086SApple OSS Distributions 			if (action == RAISE) {
118*42e22086SApple OSS Distributions 				/* Raising soft limits to exceed hard limits is not allowed and we expect to see failure on setrlimit call later */
119*42e22086SApple OSS Distributions 				if (newlim.rlim_cur + amount > newlim.rlim_max) {
120*42e22086SApple OSS Distributions 					expect_failure = TRUE;
121*42e22086SApple OSS Distributions 					expect_errno = EINVAL;
122*42e22086SApple OSS Distributions 				}
123*42e22086SApple OSS Distributions 				newlim.rlim_cur += amount;
124*42e22086SApple OSS Distributions 			} else if (action == LOWER) {
125*42e22086SApple OSS Distributions 				if (newlim.rlim_cur == 0) {
126*42e22086SApple OSS Distributions 					/* Soft limit might be 0 already, if so skip lowering it */
127*42e22086SApple OSS Distributions 				} else {
128*42e22086SApple OSS Distributions 					newlim.rlim_cur -= amount;
129*42e22086SApple OSS Distributions 				}
130*42e22086SApple OSS Distributions 			} else {
131*42e22086SApple OSS Distributions 				T_FAIL("Unknown action on soft limit: %d", action);
132*42e22086SApple OSS Distributions 			}
133*42e22086SApple OSS Distributions 		}
134*42e22086SApple OSS Distributions 		/* Changing hard limit */
135*42e22086SApple OSS Distributions 		else if (limit_type == HARD_LIMIT) {
136*42e22086SApple OSS Distributions 			if (action == RAISE) {
137*42e22086SApple OSS Distributions 				newlim.rlim_max += amount;
138*42e22086SApple OSS Distributions 
139*42e22086SApple OSS Distributions 				/* Raising hard limits is not allowed for normal user and we expect to see failure on setrlimit call later */
140*42e22086SApple OSS Distributions 				expect_failure = TRUE;
141*42e22086SApple OSS Distributions 				expect_errno = EPERM;
142*42e22086SApple OSS Distributions 			} else if (action == LOWER) {
143*42e22086SApple OSS Distributions 				if (newlim.rlim_max == 0) {
144*42e22086SApple OSS Distributions 					/* Hard limit might be 0 already, if so skip lowering it (e.g., RLIMIT_CORE on iOS) */
145*42e22086SApple OSS Distributions 				} else {
146*42e22086SApple OSS Distributions 					newlim.rlim_max -= amount;
147*42e22086SApple OSS Distributions 				}
148*42e22086SApple OSS Distributions 				/* Soft limit might need to be changed as well since soft cannot be greater than hard  */
149*42e22086SApple OSS Distributions 				if (newlim.rlim_cur > newlim.rlim_max) {
150*42e22086SApple OSS Distributions 					newlim.rlim_cur = newlim.rlim_max;
151*42e22086SApple OSS Distributions 				}
152*42e22086SApple OSS Distributions 			} else {
153*42e22086SApple OSS Distributions 				T_FAIL("Unknown action on hard limit: %d", action);
154*42e22086SApple OSS Distributions 			}
155*42e22086SApple OSS Distributions 		}
156*42e22086SApple OSS Distributions 		/* Changing unknown limit type */
157*42e22086SApple OSS Distributions 		else {
158*42e22086SApple OSS Distributions 			T_FAIL("Unknown limit type: %d", limit_type);
159*42e22086SApple OSS Distributions 		}
160*42e22086SApple OSS Distributions 
161*42e22086SApple OSS Distributions 		/* Request the kernel to change limit values */
162*42e22086SApple OSS Distributions 		err = setrlimit(i, &newlim);
163*42e22086SApple OSS Distributions 
164*42e22086SApple OSS Distributions 		if (expect_failure) {
165*42e22086SApple OSS Distributions 			/* We expect the setrlimit call to fail */
166*42e22086SApple OSS Distributions 			T_EXPECT_EQ(-1, err, "setrlimit(%15s, soft: 0x%16llx, hard 0x%16llx) failed as expected: %s", RESOURCE_STRING[i], newlim.rlim_cur, newlim.rlim_max, strerror(errno));
167*42e22086SApple OSS Distributions 			T_EXPECT_EQ(expect_errno, errno, "Expect errno %d, errno returned %d", expect_errno, errno);
168*42e22086SApple OSS Distributions 			continue;
169*42e22086SApple OSS Distributions 		} else {
170*42e22086SApple OSS Distributions 			T_EXPECT_EQ(0, err, "setrlimit(%15s, soft: 0x%16llx, hard 0x%16llx) %s", RESOURCE_STRING[i], newlim.rlim_cur, newlim.rlim_max, err == 0 ? "" : strerror(errno));
171*42e22086SApple OSS Distributions 		}
172*42e22086SApple OSS Distributions 
173*42e22086SApple OSS Distributions 		/* Verify the kernel correctly changed the limit values */
174*42e22086SApple OSS Distributions 		err = getrlimit(i, &verifylim);
175*42e22086SApple OSS Distributions 		T_EXPECT_EQ(0, err, "getrlimit(%15s, soft: 0x%16llx, hard 0x%16llx) %s", RESOURCE_STRING[i], verifylim.rlim_cur, verifylim.rlim_max, err == 0 ? "" : strerror(errno));
176*42e22086SApple OSS Distributions 
177*42e22086SApple OSS Distributions 		/* The kernel forces the hard limit of RLIMIT_NOFILE to be at most maxfileperproc for normal user when changing the hard limit with setrlimit */
178*42e22086SApple OSS Distributions 		if (i == RLIMIT_NOFILE && limit_type == HARD_LIMIT && newlim.rlim_max > maxfilesperproc) {
179*42e22086SApple OSS Distributions 			if (newlim.rlim_cur != verifylim.rlim_cur ||
180*42e22086SApple OSS Distributions 			    maxfilesperproc != verifylim.rlim_max) {
181*42e22086SApple OSS Distributions 				T_FAIL("Mismatch limit values %s despite a successful setrlimit call (setrlimit'd soft 0x%16llx hard 0x%16llx but getrlimit'd soft 0x%16llx hard 0x%16llx)",
182*42e22086SApple OSS Distributions 				    RESOURCE_STRING[i], newlim.rlim_cur, newlim.rlim_max, verifylim.rlim_cur, verifylim.rlim_max);
183*42e22086SApple OSS Distributions 			}
184*42e22086SApple OSS Distributions 		}
185*42e22086SApple OSS Distributions 		/* The kernel forces the hard limit of RLIMIT_NPROC to be at most maxproc for normal user when changing either soft/hard limit with setrlimit */
186*42e22086SApple OSS Distributions 		else if (i == RLIMIT_NPROC && newlim.rlim_max > maxprocperuid) {
187*42e22086SApple OSS Distributions 			if (newlim.rlim_cur != verifylim.rlim_cur ||
188*42e22086SApple OSS Distributions 			    maxprocperuid != verifylim.rlim_max) {
189*42e22086SApple OSS Distributions 				T_FAIL("Mismatch limit values %s despite a successful setrlimit call (setrlimit'd soft 0x%16llx hard 0x%16llx but getrlimit'd soft 0x%16llx hard 0x%16llx)",
190*42e22086SApple OSS Distributions 				    RESOURCE_STRING[i], newlim.rlim_cur, newlim.rlim_max, verifylim.rlim_cur, verifylim.rlim_max);
191*42e22086SApple OSS Distributions 			}
192*42e22086SApple OSS Distributions 		} else {
193*42e22086SApple OSS Distributions 			if (newlim.rlim_cur != verifylim.rlim_cur ||
194*42e22086SApple OSS Distributions 			    newlim.rlim_max != verifylim.rlim_max) {
195*42e22086SApple OSS Distributions 				T_FAIL("Mismatch limit values %s despite a successful setrlimit call (setrlimit'd soft 0x%16llx hard 0x%16llx but getrlimit'd soft 0x%16llx hard 0x%16llx)",
196*42e22086SApple OSS Distributions 				    RESOURCE_STRING[i], newlim.rlim_cur, newlim.rlim_max, verifylim.rlim_cur, verifylim.rlim_max);
197*42e22086SApple OSS Distributions 			}
198*42e22086SApple OSS Distributions 		}
199*42e22086SApple OSS Distributions 	}
200*42e22086SApple OSS Distributions }
201*42e22086SApple OSS Distributions 
202*42e22086SApple OSS Distributions T_DECL(proc_rlimit,
203*42e22086SApple OSS Distributions     "Test basic functionalities of the getrlimit and setrlimit")
204*42e22086SApple OSS Distributions {
205*42e22086SApple OSS Distributions 	int err;
206*42e22086SApple OSS Distributions 	struct rlimit lim;
207*42e22086SApple OSS Distributions 
208*42e22086SApple OSS Distributions 	T_SETUPBEGIN;
209*42e22086SApple OSS Distributions 
210*42e22086SApple OSS Distributions 	if (geteuid() == 0) {
211*42e22086SApple OSS Distributions 		superuser = TRUE;
212*42e22086SApple OSS Distributions 		T_SKIP("This test should not be run as super user.");
213*42e22086SApple OSS Distributions 	}
214*42e22086SApple OSS Distributions 
215*42e22086SApple OSS Distributions 	/* Use sysctl to query the real limits of RLIMIT_NOFILE/RLIMIT_NPROC for normal user on Apple's systems */
216*42e22086SApple OSS Distributions 	err = sysctlbyname("kern.maxfilesperproc", &maxfilesperproc, &maxfilesperproc_size, NULL, 0);
217*42e22086SApple OSS Distributions 	T_EXPECT_EQ_INT(0, err, "maxfilesperproc: %llu", maxfilesperproc);
218*42e22086SApple OSS Distributions 
219*42e22086SApple OSS Distributions 	err = sysctlbyname("kern.maxprocperuid", &maxprocperuid, &maxprocperuid_size, NULL, 0);
220*42e22086SApple OSS Distributions 	T_EXPECT_EQ_INT(0, err, "maxprocperuid: %llu", maxprocperuid);
221*42e22086SApple OSS Distributions 
222*42e22086SApple OSS Distributions 	/* Use sysctl to query the real limits of RLIMIT_NOFILE/RLIMIT_NPROC for super user on Apple's systems (placeholder for adding super user tests) */
223*42e22086SApple OSS Distributions 	err = sysctlbyname("kern.maxfiles", &maxfiles, &maxfiles_size, NULL, 0);
224*42e22086SApple OSS Distributions 	T_EXPECT_EQ_INT(0, err, "maxfiles: %llu", maxfiles);
225*42e22086SApple OSS Distributions 
226*42e22086SApple OSS Distributions 	err = sysctlbyname("kern.maxproc", &maxproc, &maxproc_size, NULL, 0);
227*42e22086SApple OSS Distributions 	T_EXPECT_EQ_INT(0, err, "maxproc: %llu", maxproc);
228*42e22086SApple OSS Distributions 
229*42e22086SApple OSS Distributions 	/* Issue getrlimit syscall to retrieve the initial resource limit values before calling setrlimit */
230*42e22086SApple OSS Distributions 	err = get_initial_rlimits();
231*42e22086SApple OSS Distributions 	T_EXPECT_EQ(0, err, "Obtained initial resource values.");
232*42e22086SApple OSS Distributions 
233*42e22086SApple OSS Distributions 	/* Print out resource limit values to stdout for less-painful triage in case needed */
234*42e22086SApple OSS Distributions 	T_LOG("Resource limits before the test:");
235*42e22086SApple OSS Distributions 	print_rlimits(TRUE);
236*42e22086SApple OSS Distributions 
237*42e22086SApple OSS Distributions 	T_SETUPEND;
238*42e22086SApple OSS Distributions 
239*42e22086SApple OSS Distributions 	/* Lower soft limits by arbitrary amount */
240*42e22086SApple OSS Distributions 	T_LOG("---------Lowering soft limits by 0x%x---------:\n", LIMIT_DIFF);
241*42e22086SApple OSS Distributions 	change_rlimits(SOFT_LIMIT, LIMIT_DIFF, LOWER);
242*42e22086SApple OSS Distributions 
243*42e22086SApple OSS Distributions 	/* Raise soft limits back to the orginal values */
244*42e22086SApple OSS Distributions 	T_LOG("---------Raising soft limits by 0x%x---------:\n", LIMIT_DIFF);
245*42e22086SApple OSS Distributions 	change_rlimits(SOFT_LIMIT, LIMIT_DIFF, RAISE);
246*42e22086SApple OSS Distributions 
247*42e22086SApple OSS Distributions 	/* Lower hard limits */
248*42e22086SApple OSS Distributions 	T_LOG("---------Lowering hard limits by 0x%x---------:", LIMIT_DIFF);
249*42e22086SApple OSS Distributions 	change_rlimits(HARD_LIMIT, LIMIT_DIFF, LOWER);
250*42e22086SApple OSS Distributions 
251*42e22086SApple OSS Distributions 	/* Raise soft limits to exceed hard limits (setrlimit should fail, but the darwintest should pass) */
252*42e22086SApple OSS Distributions 	T_LOG("---------Attempting to raised soft limits by 0x%x to exceed hard limits---------:", LIMIT_DIFF);
253*42e22086SApple OSS Distributions 	change_rlimits(SOFT_LIMIT, LIMIT_DIFF, RAISE);
254*42e22086SApple OSS Distributions 
255*42e22086SApple OSS Distributions 	/* Raise hard limits (setrlimit should fail, but the darwintest should pass) */
256*42e22086SApple OSS Distributions 	T_LOG("---------Attempting to raise hard limits by 0x%x---------:", LIMIT_DIFF);
257*42e22086SApple OSS Distributions 	change_rlimits(HARD_LIMIT, LIMIT_DIFF, RAISE);
258*42e22086SApple OSS Distributions 
259*42e22086SApple OSS Distributions 	/* Get and set a non-existing resource limit */
260*42e22086SApple OSS Distributions 	T_LOG("---------Accessing a non-existing resource---------:");
261*42e22086SApple OSS Distributions 	err = getrlimit(RLIMIT_NLIMITS + 1, &lim);
262*42e22086SApple OSS Distributions 	T_EXPECT_EQ(-1, err, "Expect getrlimit to fail when accessing a non-existing resource: %s\n", strerror(errno));
263*42e22086SApple OSS Distributions 	T_EXPECT_EQ(EINVAL, errno, "Expect errno %d, errno returned %d", EINVAL, errno);
264*42e22086SApple OSS Distributions 
265*42e22086SApple OSS Distributions 	err = setrlimit(RLIMIT_NLIMITS + 1, &lim);
266*42e22086SApple OSS Distributions 	T_EXPECT_EQ(-1, err, "Expect setrlimit to fail when accessing a non-existing resource: %s\n", strerror(errno));
267*42e22086SApple OSS Distributions 	T_EXPECT_EQ(EINVAL, errno, "Expect errno %d, errno returned %d", EINVAL, errno);
268*42e22086SApple OSS Distributions 
269*42e22086SApple OSS Distributions 	T_LOG("Resource limits after the test:");
270*42e22086SApple OSS Distributions 	print_rlimits(FALSE);
271*42e22086SApple OSS Distributions }
272