jbates@chromium.org | ce208f87 | 2012-03-07 20:42:56 | [diff] [blame] | 1 | // Copyright (c) 2012 The Chromium Authors. All rights reserved. |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 2 | // Use of this source code is governed by a BSD-style license that can be |
| 3 | // found in the LICENSE file. |
| 4 | |
| 5 | #include "build/build_config.h" |
| 6 | |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 7 | #if defined(OS_POSIX) |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 8 | #if defined(OS_MACOSX) |
| 9 | extern "C" { |
| 10 | #include <sandbox.h> |
| 11 | } |
| 12 | #endif |
patrick@chromium.org | d67c249 | 2009-03-20 17:26:02 | [diff] [blame] | 13 | #include <fcntl.h> |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 14 | #include <sys/stat.h> |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 15 | #include <unistd.h> |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 16 | |
erg@google.com | 7a4de7a6 | 2010-08-17 18:38:24 | [diff] [blame] | 17 | #include "base/file_descriptor_posix.h" |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 18 | #include "base/message_loop.h" |
| 19 | #include "base/pickle.h" |
| 20 | #include "base/posix/eintr_wrapper.h" |
| 21 | #include "ipc/ipc_message_utils.h" |
| 22 | #include "ipc/ipc_test_base.h" |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 23 | |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 24 | namespace { |
| 25 | |
agl@chromium.org | 92639446 | 2009-02-11 23:23:12 | [diff] [blame] | 26 | const unsigned kNumFDsToSend = 20; |
| 27 | const char* kDevZeroPath = "/dev/zero"; |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 28 | |
| 29 | static void VerifyAndCloseDescriptor(int fd, ino_t inode_num) { |
| 30 | // Check that we can read from the FD. |
| 31 | char buf; |
| 32 | ssize_t amt_read = read(fd, &buf, 1); |
| 33 | ASSERT_EQ(amt_read, 1); |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 34 | ASSERT_EQ(buf, 0); // /dev/zero always reads 0 bytes. |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 35 | |
| 36 | struct stat st; |
| 37 | ASSERT_EQ(fstat(fd, &st), 0); |
| 38 | |
| 39 | ASSERT_EQ(close(fd), 0); |
| 40 | |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 41 | // Compare inode numbers to check that the file sent over the wire is actually |
| 42 | // the one expected. |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 43 | ASSERT_EQ(inode_num, st.st_ino); |
| 44 | } |
| 45 | |
brettw@chromium.org | b7f59e82 | 2012-06-29 22:05:26 | [diff] [blame] | 46 | class MyChannelDescriptorListener : public IPC::Listener { |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 47 | public: |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 48 | explicit MyChannelDescriptorListener(ino_t expected_inode_num) |
agl@chromium.org | 92639446 | 2009-02-11 23:23:12 | [diff] [blame] | 49 | : expected_inode_num_(expected_inode_num), |
| 50 | num_fds_received_(0) {} |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 51 | |
jam@chromium.org | a95986a | 2010-12-24 06:19:28 | [diff] [blame] | 52 | virtual bool OnMessageReceived(const IPC::Message& message) { |
jbates@chromium.org | ce208f87 | 2012-03-07 20:42:56 | [diff] [blame] | 53 | PickleIterator iter(message); |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 54 | |
agl@chromium.org | 92639446 | 2009-02-11 23:23:12 | [diff] [blame] | 55 | ++num_fds_received_; |
agl@chromium.org | 5fe733de | 2009-02-11 18:59:20 | [diff] [blame] | 56 | base::FileDescriptor descriptor; |
jeremy@chromium.org | e5a3ea3 | 2009-02-11 01:41:02 | [diff] [blame] | 57 | |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 58 | IPC::ParamTraits<base::FileDescriptor>::Read(&message, &iter, &descriptor); |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 59 | |
| 60 | VerifyAndCloseDescriptor(descriptor.fd, expected_inode_num_); |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 61 | if (num_fds_received_ == kNumFDsToSend) |
agl@chromium.org | 92639446 | 2009-02-11 23:23:12 | [diff] [blame] | 62 | MessageLoop::current()->Quit(); |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 63 | |
jam@chromium.org | a95986a | 2010-12-24 06:19:28 | [diff] [blame] | 64 | return true; |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 65 | } |
| 66 | |
| 67 | virtual void OnChannelError() { |
| 68 | MessageLoop::current()->Quit(); |
| 69 | } |
dmaclach@chromium.org | d484ab5 | 2010-12-09 01:12:20 | [diff] [blame] | 70 | |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 71 | bool GotExpectedNumberOfDescriptors() const { |
| 72 | return num_fds_received_ == kNumFDsToSend; |
dmaclach@chromium.org | d484ab5 | 2010-12-09 01:12:20 | [diff] [blame] | 73 | } |
| 74 | |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 75 | private: |
| 76 | ino_t expected_inode_num_; |
agl@chromium.org | 92639446 | 2009-02-11 23:23:12 | [diff] [blame] | 77 | unsigned num_fds_received_; |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 78 | }; |
| 79 | |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 80 | class IPCSendFdsTest : public IPCTestBase { |
| 81 | protected: |
| 82 | void RunServer() { |
| 83 | // Set up IPC channel and start client. |
| 84 | MyChannelDescriptorListener listener(-1); |
| 85 | CreateChannel(&listener); |
| 86 | ASSERT_TRUE(ConnectChannel()); |
| 87 | ASSERT_TRUE(StartClient()); |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 88 | |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 89 | for (unsigned i = 0; i < kNumFDsToSend; ++i) { |
| 90 | const int fd = open(kDevZeroPath, O_RDONLY); |
| 91 | ASSERT_GE(fd, 0); |
| 92 | base::FileDescriptor descriptor(fd, true); |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 93 | |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 94 | IPC::Message* message = |
| 95 | new IPC::Message(0, 3, IPC::Message::PRIORITY_NORMAL); |
| 96 | IPC::ParamTraits<base::FileDescriptor>::Write(message, descriptor); |
| 97 | ASSERT_TRUE(sender()->Send(message)); |
| 98 | } |
| 99 | |
| 100 | // Run message loop. |
| 101 | MessageLoop::current()->Run(); |
| 102 | |
| 103 | // Close the channel so the client's OnChannelError() gets fired. |
| 104 | channel()->Close(); |
| 105 | |
| 106 | EXPECT_TRUE(WaitForClientShutdown()); |
| 107 | DestroyChannel(); |
agl@chromium.org | 92639446 | 2009-02-11 23:23:12 | [diff] [blame] | 108 | } |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 109 | }; |
| 110 | |
| 111 | TEST_F(IPCSendFdsTest, DescriptorTest) { |
| 112 | Init("SendFdsClient"); |
| 113 | RunServer(); |
| 114 | } |
| 115 | |
| 116 | int SendFdsClientCommon(const std::string& test_client_name, |
| 117 | ino_t expected_inode_num) { |
| 118 | MessageLoopForIO main_message_loop; |
| 119 | MyChannelDescriptorListener listener(expected_inode_num); |
| 120 | |
| 121 | // Set up IPC channel. |
| 122 | IPC::Channel channel(IPCTestBase::GetChannelName(test_client_name), |
| 123 | IPC::Channel::MODE_CLIENT, |
| 124 | &listener); |
| 125 | CHECK(channel.Connect()); |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 126 | |
| 127 | // Run message loop. |
| 128 | MessageLoop::current()->Run(); |
| 129 | |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 130 | // Verify that the message loop was exited due to getting the correct number |
| 131 | // of descriptors, and not because of the channel closing unexpectedly. |
dmaclach@chromium.org | d484ab5 | 2010-12-09 01:12:20 | [diff] [blame] | 132 | CHECK(listener.GotExpectedNumberOfDescriptors()); |
| 133 | |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 134 | return 0; |
| 135 | } |
| 136 | |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 137 | MULTIPROCESS_IPC_TEST_CLIENT_MAIN(SendFdsClient) { |
| 138 | struct stat st; |
| 139 | int fd = open(kDevZeroPath, O_RDONLY); |
| 140 | fstat(fd, &st); |
| 141 | EXPECT_GE(HANDLE_EINTR(close(fd)), 0); |
| 142 | return SendFdsClientCommon("SendFdsClient", st.st_ino); |
| 143 | } |
viettrungluu@chromium.org | 0cb7d8c8 | 2013-01-11 15:13:37 | [diff] [blame] | 144 | |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 145 | #if defined(OS_MACOSX) |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 146 | // Test that FDs are correctly sent to a sandboxed process. |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 147 | // TODO(port): Make this test cross-platform. |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 148 | TEST_F(IPCSendFdsTest, DescriptorTestSandboxed) { |
| 149 | Init("SendFdsSandboxedClient"); |
| 150 | RunServer(); |
| 151 | } |
| 152 | |
| 153 | MULTIPROCESS_IPC_TEST_CLIENT_MAIN(SendFdsSandboxedClient) { |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 154 | struct stat st; |
agl@chromium.org | 92639446 | 2009-02-11 23:23:12 | [diff] [blame] | 155 | const int fd = open(kDevZeroPath, O_RDONLY); |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 156 | fstat(fd, &st); |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 157 | if (HANDLE_EINTR(close(fd)) < 0) |
thakis@chromium.org | 34f4094 | 2010-10-04 00:34:04 | [diff] [blame] | 158 | return -1; |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 159 | |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 160 | // Enable the sandbox. |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 161 | char* error_buff = NULL; |
| 162 | int error = sandbox_init(kSBXProfilePureComputation, SANDBOX_NAMED, |
| 163 | &error_buff); |
| 164 | bool success = (error == 0 && error_buff == NULL); |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 165 | if (!success) |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 166 | return -1; |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 167 | |
| 168 | sandbox_free_error(error_buff); |
| 169 | |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 170 | // Make sure sandbox is really enabled. |
agl@chromium.org | 92639446 | 2009-02-11 23:23:12 | [diff] [blame] | 171 | if (open(kDevZeroPath, O_RDONLY) != -1) { |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 172 | LOG(ERROR) << "Sandbox wasn't properly enabled"; |
| 173 | return -1; |
| 174 | } |
| 175 | |
| 176 | // See if we can receive a file descriptor. |
viettrungluu@chromium.org | 3c78858 | 2013-01-25 21:51:35 | [diff] [blame^] | 177 | return SendFdsClientCommon("SendFdsSandboxedClient", st.st_ino); |
jeremy@chromium.org | e8351b7e | 2009-02-10 22:25:39 | [diff] [blame] | 178 | } |
| 179 | #endif // defined(OS_MACOSX) |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 180 | |
viettrungluu@chromium.org | 2a3aa7b5 | 2013-01-11 20:56:22 | [diff] [blame] | 181 | } // namespace |
| 182 | |
jeremy@chromium.org | c2f10ed | 2009-02-10 00:52:57 | [diff] [blame] | 183 | #endif // defined(OS_POSIX) |