2 Unix SMB/CIFS implementation.
3 SMB torture tester - winbind struct based protocol
4 Copyright (C) Stefan Metzmacher 2007
5 Copyright (C) Michael Adam 2007
7 This program is free software; you can redistribute it and/or modify
8 it under the terms of the GNU General Public License as published by
9 the Free Software Foundation; either version 3 of the License, or
10 (at your option) any later version.
12 This program is distributed in the hope that it will be useful,
13 but WITHOUT ANY WARRANTY; without even the implied warranty of
14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
15 GNU General Public License for more details.
17 You should have received a copy of the GNU General Public License
18 along with this program. If not, see <http://www.gnu.org/licenses/>.
22 #include "torture/torture.h"
23 #include "nsswitch/winbind_client.h"
24 #include "libcli/security/security.h"
25 #include "librpc/gen_ndr/netlogon.h"
26 #include "param/param.h"
27 #include "auth/ntlm/pam_errors.h"
29 #define DO_STRUCT_REQ_REP_EXT(op,req,rep,expected,strict,warnaction,cmt) do { \
30 NSS_STATUS __got, __expected = (expected); \
31 __got = winbindd_request_response(op, req, rep); \
32 if (__got != __expected) { \
33 const char *__cmt = (cmt); \
35 torture_result(torture, TORTURE_FAIL, \
36 __location__ ": " __STRING(op) \
37 " returned %d, expected %d%s%s", \
39 (__cmt) ? ": " : "", \
40 (__cmt) ? (__cmt) : ""); \
43 torture_warning(torture, \
44 __location__ ": " __STRING(op) \
45 " returned %d, expected %d%s%s", \
47 (__cmt) ? ": " : "", \
48 (__cmt) ? (__cmt) : ""); \
54 #define DO_STRUCT_REQ_REP(op,req,rep) do { \
55 bool __noop = false; \
56 DO_STRUCT_REQ_REP_EXT(op,req,rep,NSS_STATUS_SUCCESS,true,__noop=true,NULL); \
59 static bool torture_winbind_struct_interface_version(struct torture_context
*torture
)
61 struct winbindd_request req
;
62 struct winbindd_response rep
;
67 torture_comment(torture
, "Running WINBINDD_INTERFACE_VERSION (struct based)\n");
69 DO_STRUCT_REQ_REP(WINBINDD_INTERFACE_VERSION
, &req
, &rep
);
71 torture_assert_int_equal(torture
,
72 rep
.data
.interface_version
,
73 WINBIND_INTERFACE_VERSION
,
74 "winbind server and client doesn't match");
79 static bool torture_winbind_struct_ping(struct torture_context
*torture
)
81 struct timeval tv
= timeval_current();
82 int timelimit
= torture_setting_int(torture
, "timelimit", 5);
85 torture_comment(torture
,
86 "Running WINBINDD_PING (struct based) for %d seconds\n",
89 while (timeval_elapsed(&tv
) < timelimit
) {
90 DO_STRUCT_REQ_REP(WINBINDD_PING
, NULL
, NULL
);
94 torture_comment(torture
,
95 "%u (%.1f/s) WINBINDD_PING (struct based)\n",
96 total
, total
/ timeval_elapsed(&tv
));
102 static char winbind_separator(struct torture_context
*torture
)
104 struct winbindd_response rep
;
108 DO_STRUCT_REQ_REP(WINBINDD_INFO
, NULL
, &rep
);
110 return rep
.data
.info
.winbind_separator
;
113 static bool torture_winbind_struct_info(struct torture_context
*torture
)
115 struct winbindd_response rep
;
116 const char *separator
;
120 torture_comment(torture
, "Running WINBINDD_INFO (struct based)\n");
122 DO_STRUCT_REQ_REP(WINBINDD_INFO
, NULL
, &rep
);
124 separator
= torture_setting_string(torture
,
125 "winbindd_separator",
126 lp_winbind_separator(torture
->lp_ctx
));
128 torture_assert_int_equal(torture
,
129 rep
.data
.info
.winbind_separator
,
131 "winbind separator doesn't match");
133 torture_comment(torture
, "Samba Version '%s'\n",
134 rep
.data
.info
.samba_version
);
139 static bool torture_winbind_struct_priv_pipe_dir(struct torture_context
*torture
)
141 struct winbindd_response rep
;
146 torture_comment(torture
, "Running WINBINDD_PRIV_PIPE_DIR (struct based)\n");
148 DO_STRUCT_REQ_REP(WINBINDD_PRIV_PIPE_DIR
, NULL
, &rep
);
150 got_dir
= (const char *)rep
.extra_data
.data
;
152 torture_assert(torture
, got_dir
, "NULL WINBINDD_PRIV_PIPE_DIR\n");
154 SAFE_FREE(rep
.extra_data
.data
);
158 static bool torture_winbind_struct_netbios_name(struct torture_context
*torture
)
160 struct winbindd_response rep
;
161 const char *expected
;
165 torture_comment(torture
, "Running WINBINDD_NETBIOS_NAME (struct based)\n");
167 DO_STRUCT_REQ_REP(WINBINDD_NETBIOS_NAME
, NULL
, &rep
);
169 expected
= torture_setting_string(torture
,
170 "winbindd_netbios_name",
171 lp_netbios_name(torture
->lp_ctx
));
172 expected
= strupper_talloc(torture
, expected
);
174 torture_assert_str_equal(torture
,
175 rep
.data
.netbios_name
, expected
,
176 "winbindd's netbios name doesn't match");
181 static bool get_winbind_domain(struct torture_context
*torture
, char **domain
)
183 struct winbindd_response rep
;
187 DO_STRUCT_REQ_REP(WINBINDD_DOMAIN_NAME
, NULL
, &rep
);
189 *domain
= talloc_strdup(torture
, rep
.data
.domain_name
);
190 torture_assert(torture
, domain
, "talloc error");
195 static bool torture_winbind_struct_domain_name(struct torture_context
*torture
)
197 const char *expected
;
200 torture_comment(torture
, "Running WINBINDD_DOMAIN_NAME (struct based)\n");
202 expected
= torture_setting_string(torture
,
203 "winbindd_netbios_domain",
204 lp_workgroup(torture
->lp_ctx
));
206 get_winbind_domain(torture
, &domain
);
208 torture_assert_str_equal(torture
, domain
, expected
,
209 "winbindd's netbios domain doesn't match");
214 static bool torture_winbind_struct_check_machacc(struct torture_context
*torture
)
217 bool strict
= torture_setting_bool(torture
, "strict mode", false);
218 struct winbindd_response rep
;
222 torture_comment(torture
, "Running WINBINDD_CHECK_MACHACC (struct based)\n");
225 DO_STRUCT_REQ_REP_EXT(WINBINDD_CHECK_MACHACC
, NULL
, &rep
,
226 NSS_STATUS_SUCCESS
, strict
, ok
= false,
227 "WINBINDD_CHECK_MACHACC");
230 torture_assert(torture
,
231 strlen(rep
.data
.auth
.nt_status_string
)>0,
232 "Failed with empty nt_status_string");
234 torture_warning(torture
,"%s:%s:%s:%d\n",
235 nt_errstr(NT_STATUS(rep
.data
.auth
.nt_status
)),
236 rep
.data
.auth
.nt_status_string
,
237 rep
.data
.auth
.error_string
,
238 rep
.data
.auth
.pam_error
);
242 torture_assert_ntstatus_ok(torture
,
243 NT_STATUS(rep
.data
.auth
.nt_status
),
244 "WINBINDD_CHECK_MACHACC ok: nt_status");
246 torture_assert_str_equal(torture
,
247 rep
.data
.auth
.nt_status_string
,
248 nt_errstr(NT_STATUS_OK
),
249 "WINBINDD_CHECK_MACHACC ok:nt_status_string");
251 torture_assert_str_equal(torture
,
252 rep
.data
.auth
.error_string
,
253 get_friendly_nt_error_msg(NT_STATUS_OK
),
254 "WINBINDD_CHECK_MACHACC ok: error_string");
256 torture_assert_int_equal(torture
,
257 rep
.data
.auth
.pam_error
,
258 nt_status_to_pam(NT_STATUS_OK
),
259 "WINBINDD_CHECK_MACHACC ok: pam_error");
264 struct torture_trust_domain
{
265 const char *netbios_name
;
266 const char *dns_name
;
270 static bool get_trusted_domains(struct torture_context
*torture
,
271 struct torture_trust_domain
**_d
)
273 struct winbindd_request req
;
274 struct winbindd_response rep
;
275 struct torture_trust_domain
*d
= NULL
;
278 const char *extra_data
;
283 DO_STRUCT_REQ_REP(WINBINDD_LIST_TRUSTDOM
, &req
, &rep
);
285 extra_data
= (char *)rep
.extra_data
.data
;
290 torture_assert(torture
, extra_data
, "NULL trust list");
292 while (next_token(&extra_data
, line
, "\n", sizeof(line
))) {
295 d
= talloc_realloc(torture
, d
,
296 struct torture_trust_domain
,
298 ZERO_STRUCT(d
[dcount
+1]);
301 p
= strchr(lp
, '\\');
302 torture_assert(torture
, p
, "missing 1st '\\' in line");
304 d
[dcount
].netbios_name
= talloc_strdup(d
, lp
);
305 torture_assert(torture
, strlen(d
[dcount
].netbios_name
) > 0,
306 "empty netbios_name");
309 p
= strchr(lp
, '\\');
310 torture_assert(torture
, p
, "missing 2nd '\\' in line");
312 d
[dcount
].dns_name
= talloc_strdup(d
, lp
);
313 /* it's ok to have an empty dns_name */
316 d
[dcount
].sid
= dom_sid_parse_talloc(d
, lp
);
317 torture_assert(torture
, d
[dcount
].sid
,
318 "failed to parse sid");
322 SAFE_FREE(rep
.extra_data
.data
);
324 torture_assert(torture
, dcount
>= 2,
325 "The list of trusted domain should contain 2 entries");
331 static bool torture_winbind_struct_list_trustdom(struct torture_context
*torture
)
333 struct winbindd_request req
;
334 struct winbindd_response rep
;
338 struct torture_trust_domain
*listd
= NULL
;
341 torture_comment(torture
, "Running WINBINDD_LIST_TRUSTDOM (struct based)\n");
346 req
.data
.list_all_domains
= false;
348 DO_STRUCT_REQ_REP(WINBINDD_LIST_TRUSTDOM
, &req
, &rep
);
350 list1
= (char *)rep
.extra_data
.data
;
352 torture_comment(torture
, "%s\n", list1
);
357 req
.data
.list_all_domains
= true;
359 DO_STRUCT_REQ_REP(WINBINDD_LIST_TRUSTDOM
, &req
, &rep
);
361 list2
= (char *)rep
.extra_data
.data
;
364 * The list_all_domains parameter should be ignored
366 torture_assert_str_equal(torture
, list2
, list1
, "list_all_domains not ignored");
371 ok
= get_trusted_domains(torture
, &listd
);
372 torture_assert(torture
, ok
, "failed to get trust list");
374 for (i
=0; listd
&& listd
[i
].netbios_name
; i
++) {
376 struct dom_sid
*builtin_sid
;
378 builtin_sid
= dom_sid_parse_talloc(torture
, SID_BUILTIN
);
380 torture_assert_str_equal(torture
,
381 listd
[i
].netbios_name
,
383 "first domain should be 'BUILTIN'");
385 torture_assert_str_equal(torture
,
388 "BUILTIN domain should not have a dns name");
390 ok
= dom_sid_equal(builtin_sid
,
392 torture_assert(torture
, ok
, "BUILTIN domain should have S-1-5-32");
398 * TODO: verify the content of the 2nd and 3rd (in member server mode)
406 static bool torture_winbind_struct_domain_info(struct torture_context
*torture
)
409 struct torture_trust_domain
*listd
= NULL
;
412 torture_comment(torture
, "Running WINBINDD_DOMAIN_INFO (struct based)\n");
414 ok
= get_trusted_domains(torture
, &listd
);
415 torture_assert(torture
, ok
, "failed to get trust list");
417 for (i
=0; listd
&& listd
[i
].netbios_name
; i
++) {
418 struct winbindd_request req
;
419 struct winbindd_response rep
;
421 char *flagstr
= talloc_strdup(torture
," ");
426 fstrcpy(req
.domain_name
, listd
[i
].netbios_name
);
428 DO_STRUCT_REQ_REP(WINBINDD_DOMAIN_INFO
, &req
, &rep
);
430 torture_assert_str_equal(torture
,
431 rep
.data
.domain_info
.name
,
432 listd
[i
].netbios_name
,
433 "Netbios domain name doesn't match");
435 torture_assert_str_equal(torture
,
436 rep
.data
.domain_info
.alt_name
,
438 "DNS domain name doesn't match");
440 sid
= dom_sid_parse_talloc(torture
, rep
.data
.domain_info
.sid
);
441 torture_assert(torture
, sid
, "Failed to parse SID");
443 ok
= dom_sid_equal(listd
[i
].sid
, sid
);
444 torture_assert(torture
, ok
, "SID's doesn't match");
446 if (rep
.data
.domain_info
.primary
) {
447 flagstr
= talloc_strdup_append(flagstr
, "PR ");
450 if (rep
.data
.domain_info
.active_directory
) {
451 torture_assert(torture
,
452 strlen(rep
.data
.domain_info
.alt_name
)>0,
453 "Active Directory without DNS name");
454 flagstr
= talloc_strdup_append(flagstr
, "AD ");
457 if (rep
.data
.domain_info
.native_mode
) {
458 torture_assert(torture
,
459 rep
.data
.domain_info
.active_directory
,
460 "Native-Mode, but no Active Directory");
461 flagstr
= talloc_strdup_append(flagstr
, "NA ");
464 torture_comment(torture
, "DOMAIN '%s' => '%s' [%s]\n",
465 rep
.data
.domain_info
.name
,
466 rep
.data
.domain_info
.alt_name
,
473 static bool torture_winbind_struct_getdcname(struct torture_context
*torture
)
476 bool strict
= torture_setting_bool(torture
, "strict mode", false);
477 const char *domain_name
= torture_setting_string(torture
,
478 "winbindd_netbios_domain",
479 lp_workgroup(torture
->lp_ctx
));
480 struct torture_trust_domain
*listd
= NULL
;
481 uint32_t i
, count
= 0;
483 torture_comment(torture
, "Running WINBINDD_GETDCNAME (struct based)\n");
485 ok
= get_trusted_domains(torture
, &listd
);
486 torture_assert(torture
, ok
, "failed to get trust list");
488 for (i
=0; listd
&& listd
[i
].netbios_name
; i
++) {
489 struct winbindd_request req
;
490 struct winbindd_response rep
;
492 /* getdcname is not expected to work on "BUILTIN" or our own
494 if (strequal(listd
[i
].netbios_name
, "BUILTIN") ||
495 strequal(listd
[i
].netbios_name
, domain_name
)) {
502 fstrcpy(req
.domain_name
, listd
[i
].netbios_name
);
505 DO_STRUCT_REQ_REP_EXT(WINBINDD_GETDCNAME
, &req
, &rep
,
507 (i
<2 || strict
), ok
= false,
508 talloc_asprintf(torture
, "DOMAIN '%s'",
512 /* TODO: check rep.data.dc_name; */
513 torture_comment(torture
, "DOMAIN '%s' => DCNAME '%s'\n",
514 req
.domain_name
, rep
.data
.dc_name
);
519 torture_assert(torture
, count
> 0,
520 "WiNBINDD_GETDCNAME was not tested");
525 static bool torture_winbind_struct_dsgetdcname(struct torture_context
*torture
)
528 bool strict
= torture_setting_bool(torture
, "strict mode", false);
529 struct torture_trust_domain
*listd
= NULL
;
533 torture_comment(torture
, "Running WINBINDD_DSGETDCNAME (struct based)\n");
535 ok
= get_trusted_domains(torture
, &listd
);
536 torture_assert(torture
, ok
, "failed to get trust list");
538 for (i
=0; listd
&& listd
[i
].netbios_name
; i
++) {
539 struct winbindd_request req
;
540 struct winbindd_response rep
;
545 if (strlen(listd
[i
].dns_name
) == 0) continue;
548 * TODO: remove this and let winbindd give no dns name
551 if (strcmp(listd
[i
].dns_name
, listd
[i
].netbios_name
) == 0) {
555 fstrcpy(req
.domain_name
, listd
[i
].dns_name
);
557 /* TODO: test more flag combinations */
558 req
.flags
= DS_DIRECTORY_SERVICE_REQUIRED
;
561 DO_STRUCT_REQ_REP_EXT(WINBINDD_DSGETDCNAME
, &req
, &rep
,
564 talloc_asprintf(torture
, "DOMAIN '%s'",
568 /* TODO: check rep.data.dc_name; */
569 torture_comment(torture
, "DOMAIN '%s' => DCNAME '%s'\n",
570 req
.domain_name
, rep
.data
.dc_name
);
576 torture_warning(torture
, "WINBINDD_DSGETDCNAME"
577 " was not tested with %d non-AD domains",
582 torture_assert(torture
, count
> 0,
583 "WiNBINDD_DSGETDCNAME was not tested");
589 static bool get_user_list(struct torture_context
*torture
, char ***users
)
591 struct winbindd_request req
;
592 struct winbindd_response rep
;
596 const char *extra_data
;
601 DO_STRUCT_REQ_REP(WINBINDD_LIST_USERS
, &req
, &rep
);
603 extra_data
= (char *)rep
.extra_data
.data
;
604 torture_assert(torture
, extra_data
, "NULL extra data");
607 next_token(&extra_data
, name
, ",", sizeof(name
));
610 u
= talloc_realloc(torture
, u
, char *, count
+ 2);
612 u
[count
] = talloc_strdup(u
, name
);
615 SAFE_FREE(rep
.extra_data
.data
);
621 static bool torture_winbind_struct_list_users(struct torture_context
*torture
)
627 torture_comment(torture
, "Running WINBINDD_LIST_USERS (struct based)\n");
629 ok
= get_user_list(torture
, &users
);
630 torture_assert(torture
, ok
, "failed to get user list");
632 for (count
= 0; users
[count
]; count
++) { }
634 torture_comment(torture
, "got %d users\n", count
);
639 static bool get_group_list(struct torture_context
*torture
,
640 unsigned int *num_entries
,
643 struct winbindd_request req
;
644 struct winbindd_response rep
;
648 const char *extra_data
;
653 DO_STRUCT_REQ_REP(WINBINDD_LIST_GROUPS
, &req
, &rep
);
654 extra_data
= (char *)rep
.extra_data
.data
;
656 *num_entries
= rep
.data
.num_entries
;
658 if (*num_entries
== 0) {
659 torture_assert(torture
, extra_data
== NULL
,
660 "extra data is null for >0 reported entries\n");
665 torture_assert(torture
, extra_data
, "NULL extra data");
668 next_token(&extra_data
, name
, ",", sizeof(name
));
671 g
= talloc_realloc(torture
, g
, char *, count
+ 2);
673 g
[count
] = talloc_strdup(g
, name
);
676 SAFE_FREE(rep
.extra_data
.data
);
678 torture_assert_int_equal(torture
, *num_entries
, count
,
679 "Wrong number of group entries reported.");
685 static bool torture_winbind_struct_list_groups(struct torture_context
*torture
)
691 torture_comment(torture
, "Running WINBINDD_LIST_GROUPS (struct based)\n");
693 ok
= get_group_list(torture
, &count
, &groups
);
694 torture_assert(torture
, ok
, "failed to get group list");
696 torture_comment(torture
, "got %d groups\n", count
);
701 struct torture_domain_sequence
{
702 const char *netbios_name
;
706 static bool get_sequence_numbers(struct torture_context
*torture
,
707 struct torture_domain_sequence
**seqs
)
709 struct winbindd_request req
;
710 struct winbindd_response rep
;
711 const char *extra_data
;
714 struct torture_domain_sequence
*s
= NULL
;
719 DO_STRUCT_REQ_REP(WINBINDD_SHOW_SEQUENCE
, &req
, &rep
);
721 extra_data
= (char *)rep
.extra_data
.data
;
722 torture_assert(torture
, extra_data
, "NULL sequence list");
724 while (next_token(&extra_data
, line
, "\n", sizeof(line
))) {
728 s
= talloc_realloc(torture
, s
, struct torture_domain_sequence
,
730 ZERO_STRUCT(s
[count
+1]);
734 torture_assert(torture
, p
, "invalid line format");
736 s
[count
].netbios_name
= talloc_strdup(s
, lp
);
739 torture_assert(torture
, strncmp(lp
, ": ", 2) == 0,
740 "invalid line format");
742 if (strcmp(lp
, "DISCONNECTED") == 0) {
745 seq
= (uint32_t)strtol(lp
, &p
, 10);
746 torture_assert(torture
, (*p
== '\0'),
747 "invalid line format");
748 torture_assert(torture
, (seq
!= (uint32_t)-1),
749 "sequence number -1 encountered");
755 SAFE_FREE(rep
.extra_data
.data
);
757 torture_assert(torture
, count
>= 2, "The list of domain sequence "
758 "numbers should contain 2 entries");
764 static bool torture_winbind_struct_show_sequence(struct torture_context
*torture
)
768 struct torture_trust_domain
*domlist
= NULL
;
769 struct torture_domain_sequence
*s
= NULL
;
771 torture_comment(torture
, "Running WINBINDD_SHOW_SEQUENCE (struct based)\n");
773 ok
= get_sequence_numbers(torture
, &s
);
774 torture_assert(torture
, ok
, "failed to get list of sequence numbers");
776 ok
= get_trusted_domains(torture
, &domlist
);
777 torture_assert(torture
, ok
, "failed to get trust list");
779 for (i
=0; domlist
[i
].netbios_name
; i
++) {
780 struct winbindd_request req
;
781 struct winbindd_response rep
;
784 torture_assert(torture
, s
[i
].netbios_name
,
785 "more domains recieved in second run");
786 torture_assert_str_equal(torture
, domlist
[i
].netbios_name
,
788 "inconsistent order of domain lists");
792 fstrcpy(req
.domain_name
, domlist
[i
].netbios_name
);
794 DO_STRUCT_REQ_REP(WINBINDD_SHOW_SEQUENCE
, &req
, &rep
);
796 seq
= rep
.data
.sequence_number
;
799 torture_assert(torture
, (seq
!= (uint32_t)-1),
800 "BUILTIN domain disconnected");
802 torture_assert(torture
, (seq
!= (uint32_t)-1),
803 "local domain disconnected");
807 if (seq
== (uint32_t)-1) {
808 torture_comment(torture
, " * %s : DISCONNECTED\n",
811 torture_comment(torture
, " * %s : %d\n",
812 req
.domain_name
, seq
);
814 torture_assert(torture
, (seq
>= s
[i
].seq
),
815 "illegal sequence number encountered");
821 static bool torture_winbind_struct_setpwent(struct torture_context
*torture
)
823 struct winbindd_request req
;
824 struct winbindd_response rep
;
826 torture_comment(torture
, "Running WINBINDD_SETPWENT (struct based)\n");
831 DO_STRUCT_REQ_REP(WINBINDD_SETPWENT
, &req
, &rep
);
836 static bool torture_winbind_struct_getpwent(struct torture_context
*torture
)
838 struct winbindd_request req
;
839 struct winbindd_response rep
;
840 struct winbindd_pw
*pwent
;
842 torture_comment(torture
, "Running WINBINDD_GETPWENT (struct based)\n");
844 torture_comment(torture
, " - Running WINBINDD_SETPWENT first\n");
847 DO_STRUCT_REQ_REP(WINBINDD_SETPWENT
, &req
, &rep
);
849 torture_comment(torture
, " - Running WINBINDD_GETPWENT now\n");
852 req
.data
.num_entries
= 1;
853 if (torture_setting_bool(torture
, "samba3", false)) {
855 DO_STRUCT_REQ_REP_EXT(WINBINDD_GETPWENT
, &req
, &rep
,
856 NSS_STATUS_SUCCESS
, false, __noop
=true,
859 DO_STRUCT_REQ_REP(WINBINDD_GETPWENT
, &req
, &rep
);
861 pwent
= (struct winbindd_pw
*)rep
.extra_data
.data
;
862 if (!torture_setting_bool(torture
, "samba3", false)) {
863 torture_assert(torture
, (pwent
!= NULL
), "NULL pwent");
866 torture_comment(torture
, "name: %s, uid: %d, gid: %d, shell: %s\n",
867 pwent
->pw_name
, pwent
->pw_uid
, pwent
->pw_gid
,
874 static bool torture_winbind_struct_endpwent(struct torture_context
*torture
)
876 struct winbindd_request req
;
877 struct winbindd_response rep
;
879 torture_comment(torture
, "Running WINBINDD_ENDPWENT (struct based)\n");
884 DO_STRUCT_REQ_REP(WINBINDD_ENDPWENT
, &req
, &rep
);
889 /* Copy of parse_domain_user from winbindd_util.c. Parse a string of the
890 form DOMAIN/user into a domain and a user */
892 static bool parse_domain_user(struct torture_context
*torture
,
893 const char *domuser
, fstring domain
,
896 char *p
= strchr(domuser
, winbind_separator(torture
));
900 /* Maybe it was a UPN? */
901 if ((p
= strchr(domuser
, '@')) != NULL
) {
903 fstrcpy(user
, domuser
);
907 fstrcpy(user
, domuser
);
908 get_winbind_domain(torture
, &dom
);
909 fstrcpy(domain
, dom
);
914 fstrcpy(domain
, domuser
);
915 domain
[PTR_DIFF(p
, domuser
)] = 0;
921 static bool lookup_name_sid_list(struct torture_context
*torture
, char **list
)
925 for (count
= 0; list
[count
]; count
++) {
926 struct winbindd_request req
;
927 struct winbindd_response rep
;
930 const char *domain_name
= torture_setting_string(torture
,
931 "winbindd_netbios_domain",
932 lp_workgroup(torture
->lp_ctx
));
937 parse_domain_user(torture
, list
[count
], req
.data
.name
.dom_name
,
940 DO_STRUCT_REQ_REP(WINBINDD_LOOKUPNAME
, &req
, &rep
);
942 sid
= talloc_strdup(torture
, rep
.data
.sid
.sid
);
947 fstrcpy(req
.data
.sid
, sid
);
949 DO_STRUCT_REQ_REP(WINBINDD_LOOKUPSID
, &req
, &rep
);
951 if (strequal(rep
.data
.name
.dom_name
, domain_name
)) {
952 name
= talloc_asprintf(torture
, "%s",
955 name
= talloc_asprintf(torture
, "%s%c%s",
956 rep
.data
.name
.dom_name
,
957 winbind_separator(torture
),
961 torture_assert_casestr_equal(torture
, list
[count
], name
,
962 "LOOKUP_SID after LOOKUP_NAME != id");
965 torture_comment(torture
, " %s -> %s -> %s\n", list
[count
],
976 static bool name_is_in_list(const char *name
, const char **list
)
980 for (count
= 0; list
&& list
[count
]; count
++) {
981 if (strequal(name
, list
[count
])) {
988 static bool torture_winbind_struct_lookup_name_sid(struct torture_context
*torture
)
990 struct winbindd_request req
;
991 struct winbindd_response rep
;
992 const char *invalid_sid
= "S-0-0-7";
994 const char *invalid_user
= "noone";
996 bool strict
= torture_setting_bool(torture
, "strict mode", false);
999 uint32_t count
, num_groups
;
1002 torture_comment(torture
, "Running WINBINDD_LOOKUP_NAME_SID (struct based)\n");
1004 ok
= get_user_list(torture
, &users
);
1005 torture_assert(torture
, ok
, "failed to retrieve list of users");
1006 lookup_name_sid_list(torture
, users
);
1008 ok
= get_group_list(torture
, &num_groups
, &groups
);
1009 torture_assert(torture
, ok
, "failed to retrieve list of groups");
1010 if (num_groups
> 0) {
1011 lookup_name_sid_list(torture
, groups
);
1017 fstrcpy(req
.data
.sid
, invalid_sid
);
1020 DO_STRUCT_REQ_REP_EXT(WINBINDD_LOOKUPSID
, &req
, &rep
,
1021 NSS_STATUS_NOTFOUND
,
1024 talloc_asprintf(torture
,
1025 "invalid sid %s was resolved",
1031 /* try to find an invalid name... */
1034 get_winbind_domain(torture
, &domain
);
1037 invalid_name
= talloc_asprintf(torture
, "%s\\%s%u",
1039 invalid_user
, count
);
1040 } while(name_is_in_list(invalid_name
, (const char **)users
) ||
1041 name_is_in_list(invalid_name
, (const char **)groups
));
1043 fstrcpy(req
.data
.name
.dom_name
, domain
);
1044 fstrcpy(req
.data
.name
.name
,
1045 talloc_asprintf(torture
, "%s%u", invalid_user
,
1049 DO_STRUCT_REQ_REP_EXT(WINBINDD_LOOKUPNAME
, &req
, &rep
,
1050 NSS_STATUS_NOTFOUND
,
1053 talloc_asprintf(torture
,
1054 "invalid name %s was resolved",
1058 talloc_free(groups
);
1063 struct torture_suite
*torture_winbind_struct_init(void)
1065 struct torture_suite
*suite
= torture_suite_create(talloc_autofree_context(), "STRUCT");
1067 torture_suite_add_simple_test(suite
, "INTERFACE_VERSION", torture_winbind_struct_interface_version
);
1068 torture_suite_add_simple_test(suite
, "PING", torture_winbind_struct_ping
);
1069 torture_suite_add_simple_test(suite
, "INFO", torture_winbind_struct_info
);
1070 torture_suite_add_simple_test(suite
, "PRIV_PIPE_DIR", torture_winbind_struct_priv_pipe_dir
);
1071 torture_suite_add_simple_test(suite
, "NETBIOS_NAME", torture_winbind_struct_netbios_name
);
1072 torture_suite_add_simple_test(suite
, "DOMAIN_NAME", torture_winbind_struct_domain_name
);
1073 torture_suite_add_simple_test(suite
, "CHECK_MACHACC", torture_winbind_struct_check_machacc
);
1074 torture_suite_add_simple_test(suite
, "LIST_TRUSTDOM", torture_winbind_struct_list_trustdom
);
1075 torture_suite_add_simple_test(suite
, "DOMAIN_INFO", torture_winbind_struct_domain_info
);
1076 torture_suite_add_simple_test(suite
, "GETDCNAME", torture_winbind_struct_getdcname
);
1077 torture_suite_add_simple_test(suite
, "DSGETDCNAME", torture_winbind_struct_dsgetdcname
);
1078 torture_suite_add_simple_test(suite
, "LIST_USERS", torture_winbind_struct_list_users
);
1079 torture_suite_add_simple_test(suite
, "LIST_GROUPS", torture_winbind_struct_list_groups
);
1080 torture_suite_add_simple_test(suite
, "SHOW_SEQUENCE", torture_winbind_struct_show_sequence
);
1081 torture_suite_add_simple_test(suite
, "SETPWENT", torture_winbind_struct_setpwent
);
1082 torture_suite_add_simple_test(suite
, "GETPWENT", torture_winbind_struct_getpwent
);
1083 torture_suite_add_simple_test(suite
, "ENDPWENT", torture_winbind_struct_endpwent
);
1084 torture_suite_add_simple_test(suite
, "LOOKUP_NAME_SID", torture_winbind_struct_lookup_name_sid
);
1086 suite
->description
= talloc_strdup(suite
, "WINBIND - struct based protocol tests");