Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(10)

Side by Side Diff: sandbox/linux/suid/client/setuid_sandbox_client_unittest.cc

Issue 903273002: Update from https://crrev.com/315085 (Closed) Base URL: git@github.com:domokit/mojo.git@master
Patch Set: Created 5 years, 10 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View unified diff | Download patch
OLDNEW
1 // Copyright (c) 2012 The Chromium Authors. All rights reserved. 1 // Copyright (c) 2012 The Chromium Authors. All rights reserved.
2 // Use of this source code is governed by a BSD-style license that can be 2 // Use of this source code is governed by a BSD-style license that can be
3 // found in the LICENSE file. 3 // found in the LICENSE file.
4 4
5 #include "sandbox/linux/suid/client/setuid_sandbox_client.h"
6
5 #include "base/environment.h" 7 #include "base/environment.h"
6 #include "base/logging.h"
7 #include "base/memory/scoped_ptr.h" 8 #include "base/memory/scoped_ptr.h"
8 #include "base/strings/string_number_conversions.h" 9 #include "base/strings/string_number_conversions.h"
9 #include "sandbox/linux/suid/client/setuid_sandbox_client.h"
10 #include "sandbox/linux/suid/common/sandbox.h" 10 #include "sandbox/linux/suid/common/sandbox.h"
11 #include "testing/gtest/include/gtest/gtest.h" 11 #include "testing/gtest/include/gtest/gtest.h"
12 12
13 namespace sandbox { 13 namespace sandbox {
14 14
15 TEST(SetuidSandboxClient, SetupLaunchEnvironment) {
16 const char kTestValue[] = "This is a test";
17 scoped_ptr<base::Environment> env(base::Environment::Create());
18 EXPECT_TRUE(env != NULL);
19
20 std::string saved_ld_preload;
21 bool environment_had_ld_preload;
22 // First, back-up the real LD_PRELOAD if any.
23 environment_had_ld_preload = env->GetVar("LD_PRELOAD", &saved_ld_preload);
24 // Setup environment variables to save or not save.
25 EXPECT_TRUE(env->SetVar("LD_PRELOAD", kTestValue));
26 EXPECT_TRUE(env->UnSetVar("LD_ORIGIN_PATH"));
27
28 scoped_ptr<SetuidSandboxClient>
29 sandbox_client(SetuidSandboxClient::Create());
30 EXPECT_TRUE(sandbox_client != NULL);
31
32 // Make sure the environment is clean.
33 EXPECT_TRUE(env->UnSetVar(kSandboxEnvironmentApiRequest));
34 EXPECT_TRUE(env->UnSetVar(kSandboxEnvironmentApiProvides));
35
36 sandbox_client->SetupLaunchEnvironment();
37
38 // Check if the requested API environment was set.
39 std::string api_request;
40 EXPECT_TRUE(env->GetVar(kSandboxEnvironmentApiRequest, &api_request));
41 int api_request_num;
42 EXPECT_TRUE(base::StringToInt(api_request, &api_request_num));
43 EXPECT_EQ(api_request_num, kSUIDSandboxApiNumber);
44
45 // Now check if LD_PRELOAD was saved to SANDBOX_LD_PRELOAD.
46 std::string sandbox_ld_preload;
47 EXPECT_TRUE(env->GetVar("SANDBOX_LD_PRELOAD", &sandbox_ld_preload));
48 EXPECT_EQ(sandbox_ld_preload, kTestValue);
49
50 // Check that LD_ORIGIN_PATH was not saved.
51 EXPECT_FALSE(env->HasVar("SANDBOX_LD_ORIGIN_PATH"));
52
53 // We should not forget to restore LD_PRELOAD at the end, or this environment
54 // variable will affect the next running tests!
55 if (environment_had_ld_preload) {
56 EXPECT_TRUE(env->SetVar("LD_PRELOAD", saved_ld_preload));
57 } else {
58 EXPECT_TRUE(env->UnSetVar("LD_PRELOAD"));
59 }
60 }
61
62 TEST(SetuidSandboxClient, SandboxedClientAPI) { 15 TEST(SetuidSandboxClient, SandboxedClientAPI) {
63 scoped_ptr<base::Environment> env(base::Environment::Create()); 16 scoped_ptr<base::Environment> env(base::Environment::Create());
64 EXPECT_TRUE(env != NULL); 17 EXPECT_TRUE(env != NULL);
65 18
66 scoped_ptr<SetuidSandboxClient> 19 scoped_ptr<SetuidSandboxClient>
67 sandbox_client(SetuidSandboxClient::Create()); 20 sandbox_client(SetuidSandboxClient::Create());
68 EXPECT_TRUE(sandbox_client != NULL); 21 EXPECT_TRUE(sandbox_client != NULL);
69 22
70 // Set-up a fake environment as if we went through the setuid sandbox. 23 // Set-up a fake environment as if we went through the setuid sandbox.
71 EXPECT_TRUE(env->SetVar(kSandboxEnvironmentApiProvides, 24 EXPECT_TRUE(env->SetVar(kSandboxEnvironmentApiProvides,
(...skipping 10 matching lines...) Expand all
82 35
83 // Forge an incorrect API version and check. 36 // Forge an incorrect API version and check.
84 EXPECT_TRUE(env->SetVar(kSandboxEnvironmentApiProvides, 37 EXPECT_TRUE(env->SetVar(kSandboxEnvironmentApiProvides,
85 base::IntToString(kSUIDSandboxApiNumber + 1))); 38 base::IntToString(kSUIDSandboxApiNumber + 1)));
86 EXPECT_FALSE(sandbox_client->IsSuidSandboxUpToDate()); 39 EXPECT_FALSE(sandbox_client->IsSuidSandboxUpToDate());
87 // We didn't go through the actual sandboxing mechanism as it is 40 // We didn't go through the actual sandboxing mechanism as it is
88 // very hard in a unit test. 41 // very hard in a unit test.
89 EXPECT_FALSE(sandbox_client->IsSandboxed()); 42 EXPECT_FALSE(sandbox_client->IsSandboxed());
90 } 43 }
91 44
92 // This test doesn't accomplish much, but will make sure that analysis tools
93 // will run this codepath.
94 TEST(SetuidSandboxClient, GetSandboxBinaryPath) {
95 scoped_ptr<SetuidSandboxClient> setuid_sandbox_client(
96 SetuidSandboxClient::Create());
97 ignore_result(setuid_sandbox_client->GetSandboxBinaryPath());
98 }
99
100 } // namespace sandbox 45 } // namespace sandbox
101 46
OLDNEW
« no previous file with comments | « sandbox/linux/suid/client/setuid_sandbox_client.cc ('k') | sandbox/linux/suid/client/setuid_sandbox_host.h » ('j') | no next file with comments »

Powered by Google App Engine
This is Rietveld 408576698