3 # Copyright (c) 2006 - 2007 Kungliga Tekniska Högskolan
4 # (Royal Institute of Technology, Stockholm, Sweden).
7 # Redistribution and use in source and binary forms, with or without
8 # modification, are permitted provided that the following conditions
11 # 1. Redistributions of source code must retain the above copyright
12 # notice, this list of conditions and the following disclaimer.
14 # 2. Redistributions in binary form must reproduce the above copyright
15 # notice, this list of conditions and the following disclaimer in the
16 # documentation and/or other materials provided with the distribution.
18 # 3. Neither the name of the Institute nor the names of its contributors
19 # may be used to endorse or promote products derived from this software
20 # without specific prior written permission.
22 # THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND
23 # ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
24 # IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
25 # ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE
26 # FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
27 # DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
28 # OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
29 # HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
30 # LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
31 # OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
34 top_builddir
="@top_builddir@"
35 env_setup
="@env_setup@"
40 # If there is no useful db support compile in, disable test
44 # Dont run this test in AFS, since it lacks support for AF_UNIX
45 expr "X`/bin/pwd || pwd`" : "X/afs/.*" > /dev
/null
2>/dev
/null
&& exit 77
51 cache
="FILE:${objdir}/cache.krb5"
52 keytabfile
=${objdir}/iprop.keytab
53 keytab
="FILE:${keytabfile}"
55 kdc
="${kdc} --addresses=localhost -P $port"
56 kadmin
="${kadmin} -r $R"
57 kinit
="${kinit} -c $cache ${afs_no_afslog}"
59 KRB5_CONFIG
="${objdir}/krb5.conf"
71 echo Creating database
74 --realm-max-ticket-life=1day \
75 --realm-max-renewable-life=1month \
78 ${kadmin} -l add
-p foo
--use-defaults user@
${R} ||
exit 1
80 ${kadmin} -l add
--random-key --use-defaults iprop
/localhost@
${R} ||
exit 1
81 ${kadmin} -l ext -k ${keytab} iprop/localhost@${R} ||
exit 1
82 ${kadmin} -l add
--random-key --use-defaults iprop
/slave.
test.h5l.se@
${R} ||
exit 1
83 ${kadmin} -l ext -k ${keytab} iprop/slave.test.h5l.se@${R} ||
exit 1
85 echo foo
> ${objdir}/foopassword
93 rm -f iprop-slave-status
95 ipropd_slave
="${ipropd_slave} --status-file=iprop-slave-status"
97 trap "echo 'killing ipropd s + m + kdc'; kill -9 \${ipdm} \${ipds} \${kdcpid} >/dev/null 2>/dev/null; tail messages.log ; tail iprop-stats; exit 1;" EXIT
103 sh
${wait_kdc} ||
exit 1
105 echo "starting master"
106 env
${HEIM_MALLOC_DEBUG} \
107 ${ipropd_master} --hostname=localhost
-k ${keytab} \
108 --database=${objdir}/current-db
&
110 sh
${wait_kdc} ipropd-master ||
exit 1
112 echo "starting slave"
113 env
${HEIM_MALLOC_DEBUG} \
114 KRB5_CONFIG
="${objdir}/krb5-slave.conf" \
115 ${ipropd_slave} --hostname=slave.
test.h5l.se
-k ${keytab} localhost
&
117 sh
${wait_kdc} ipropd-slave ||
exit 1
120 echo "checking slave is up"
121 ${EGREP} 'iprop/slave.test.h5l.se@TEST.H5L.SE.*Up' iprop-stats
>/dev
/null ||
exit 1
122 ${EGREP} 'up-to-date with version' iprop-slave-status
>/dev
/null ||
{ echo "slave to up to date" ; cat iprop-slave-status
; exit 1; }
124 # ----------------- checking: pushing lives changes
127 ${kadmin} -l add
--random-key --use-defaults host
/foo@
${R} ||
exit 1
129 KRB5_CONFIG
="${objdir}/krb5-slave.conf" \
130 ${kadmin} -l get host
/foo@
${R} > /dev
/null ||
exit 1
132 echo "Rollover host keys"
133 ${kadmin} -l cpw
-r --keepold host
/foo@
${R} ||
exit 1
134 ${kadmin} -l cpw
-r --keepold host
/foo@
${R} ||
exit 1
135 ${kadmin} -l cpw
-r --keepold host
/foo@
${R} ||
exit 1
137 KRB5_CONFIG
="${objdir}/krb5-slave.conf" \
138 ${kadmin} -l get host
/foo@
${R} | \
139 ${EGREP} Keytypes
: | cut
-d: -f2 |
tr ' ' '
140 ' |
sed 's/^.*[[]\(.*\)[]].*$/\1/' |
grep '[0-9]' |
sort -nu |
tr -d '
141 ' |
${EGREP} 1234 > /dev
/null ||
exit 1
143 echo "Delete 3DES keys"
144 ${kadmin} -l del_enctype host
/foo@
${R} des3-cbc-sha1
145 KRB5_CONFIG
="${objdir}/krb5-slave.conf" \
146 ${kadmin} -l get host
/foo@
${R} | \
147 ${EGREP} Keytypes
: | cut
-d: -f2 |
tr ' ' '
148 ' |
sed 's/^.*[[]\(.*\)[]].*$/\1/' |
grep '[0-9]' |
sort -nu |
tr -d '
149 ' |
${EGREP} 1234 > /dev
/null ||
exit 1
150 KRB5_CONFIG
="${objdir}/krb5-slave.conf" \
151 ${kadmin} -l get host
/foo@
${R} | \
152 ${EGREP} 'Keytypes:.*des3-cbc-sha1' > /dev
/null
&& exit 1
155 ${kadmin} -l rename host/foo@${R} host/bar@${R} ||
exit 1
157 KRB5_CONFIG
="${objdir}/krb5-slave.conf" \
158 ${kadmin} -l get host
/foo@
${R} > /dev
/null
2>/dev
/null
&& exit 1
159 KRB5_CONFIG
="${objdir}/krb5-slave.conf" \
160 ${kadmin} -l get host
/bar@
${R} > /dev
/null ||
exit 1
163 ${kadmin} -l delete host
/bar@
${R} ||
exit 1
165 KRB5_CONFIG
="${objdir}/krb5-slave.conf" \
166 ${kadmin} -l get host
/bar@
${R} > /dev
/null
2>/dev
/null
&& exit 1
170 sh
${leaks_kill} ipropd-slave
$ipds ||
exit 1
171 rm -f iprop-slave-status
173 ${EGREP} 'iprop/slave.test.h5l.se@TEST.H5L.SE.*Down' iprop-stats
>/dev
/null ||
exit 1
175 # ----------------- checking: slave is missing changes while down
177 echo "doing changes while slave is down"
178 ${kadmin} -l cpw
--random-password user@
${R} > /dev
/null ||
exit 1
179 ${kadmin} -l cpw
--random-password user@
${R} > /dev
/null ||
exit 1
181 echo "Makeing a copy of the master log file"
182 cp ${objdir}/current.log
${objdir}/current.log.tmp
184 # ----------------- checking: checking that master and slaves resyncs
186 echo "starting slave again"
189 env
${HEIM_MALLOC_DEBUG} \
190 KRB5_CONFIG
="${objdir}/krb5-slave.conf" \
191 ${ipropd_slave} --hostname=slave.
test.h5l.se
-k ${keytab} localhost
&
193 sh
${wait_kdc} ipropd-slave ||
exit 1
196 echo "checking slave is up again"
197 ${EGREP} 'iprop/slave.test.h5l.se@TEST.H5L.SE.*Up' iprop-stats
>/dev
/null ||
exit 1
198 ${EGREP} 'up-to-date with version' iprop-slave-status
>/dev
/null ||
{ echo "slave not up to date" ; cat iprop-slave-status
; exit 1; }
199 echo "checking for replay problems"
200 ${EGREP} 'Entry already exists in database' messages.log
&& exit 1
202 echo "kill slave and remove log and database"
203 sh
${leaks_kill} ipropd-slave
$ipds ||
exit 1
206 rm current.slave.log current-db.slave
* ||
exit 1
208 rm -f iprop-slave-status
210 env
${HEIM_MALLOC_DEBUG} \
211 KRB5_CONFIG
="${objdir}/krb5-slave.conf" \
212 ${ipropd_slave} --hostname=slave.
test.h5l.se
-k ${keytab} localhost
&
214 sh
${wait_kdc} ipropd-slave ||
exit 1
217 echo "checking slave is up again"
218 ${EGREP} 'iprop/slave.test.h5l.se@TEST.H5L.SE.*Up' iprop-stats
>/dev
/null ||
exit 1
219 ${EGREP} 'up-to-date with version' iprop-slave-status
>/dev
/null ||
{ echo "slave not up to date" ; cat iprop-slave-status
; exit 1; }
220 echo "checking for replay problems"
221 ${EGREP} 'Entry already exists in database' messages.log
&& exit 1
223 # ----------------- checking: checking live truncation of master log
225 ${kadmin} -l cpw
--random-password user@
${R} > /dev
/null ||
exit 1
228 echo "live truncate on master log"
229 ${iprop_log} truncate ||
exit 1
232 echo "Killing master and slave"
233 sh
${leaks_kill} ipropd-master
$ipdm ||
exit 1
234 sh
${leaks_kill} ipropd-slave
$ipds ||
exit 1
236 rm -f iprop-slave-status
239 #${EGREP} "^master down at " iprop-stats > /dev/null || exit 1
241 echo "compare versions on master and slave logs"
242 KRB5_CONFIG
=${objdir}/krb5-slave.conf \
243 ${iprop_log} last-version
> slave-last.tmp
244 ${iprop_log} last-version
> master-last.tmp
245 cmp master-last.tmp slave-last.tmp ||
exit 1
247 # ----------------- checking: master going backward
251 echo "Going back to old version of the master log file"
252 cp ${objdir}/current.log.tmp
${objdir}/current.log
254 echo "starting master"
255 env
${HEIM_MALLOC_DEBUG} \
256 ${ipropd_master} --hostname=localhost
-k ${keytab} \
257 --database=${objdir}/current-db
&
259 sh
${wait_kdc} ipropd-master ||
exit 1
261 echo "starting slave"
262 env
${HEIM_MALLOC_DEBUG} \
263 KRB5_CONFIG
="${objdir}/krb5-slave.conf" \
264 ${ipropd_slave} --hostname=slave.
test.h5l.se
-k ${keytab} localhost
&
266 sh
${wait_kdc} ipropd-slave ||
exit 1
269 echo "checking slave is up again"
270 ${EGREP} 'iprop/slave.test.h5l.se@TEST.H5L.SE.*Up' iprop-stats
>/dev
/null ||
exit 1
271 ${EGREP} 'up-to-date with version' iprop-slave-status
>/dev
/null ||
{ echo "slave to up to date" ; cat iprop-slave-status
; exit 1; }
272 echo "checking for replay problems"
273 ${EGREP} 'Entry already exists in database' messages.log
&& exit 1
275 echo "pushing one change"
276 ${kadmin} -l cpw
--random-password user@
${R} > /dev
/null ||
exit 1
279 echo "Killing master"
280 sh
${leaks_kill} ipropd-master
$ipdm ||
exit 1
284 ${EGREP} 'disconnected' iprop-slave-status
>/dev
/null
&& { echo "slave still think its connected" ; cat iprop-slave-status
; exit 1; }
286 if ! tail -30 messages.log |
grep 'disconnected for server' > /dev
/null
; then
287 echo "client didnt disconnect"
291 echo "probing for slave pid"
292 kill -0 ${ipds} ||
{ echo "slave no longer there"; exit 1; }
296 echo "Staring master again"
297 env
${HEIM_MALLOC_DEBUG} \
298 ${ipropd_master} --hostname=localhost
-k ${keytab} \
299 --database=${objdir}/current-db
&
301 sh
${wait_kdc} ipropd-master ||
exit 1
303 echo "probing for slave pid"
304 kill -0 ${ipds} ||
{ echo "slave no longer there"; exit 1; }
306 sh
${wait_kdc} ipropd-slave messages.log
"connection successful to master" ||
exit 1
308 sh
${wait_kdc} ipropd-slave messages.log
"ipropd-slave started at version" ||
exit 1
310 echo "pushing one change"
311 ${kadmin} -l cpw
--random-password user@
${R} > /dev
/null ||
exit 1
314 echo "shutting down all services"
317 sh
${leaks_kill} kdc
$kdcpid ||
exit 1
318 sh
${leaks_kill} ipropd-master
$ipdm ||
exit 1
319 sh
${leaks_kill} ipropd-slave
$ipds ||
exit 1
321 rm -f iprop-slave-status
323 echo "compare versions on master and slave logs"
324 KRB5_CONFIG
=${objdir}/krb5-slave.conf \
325 ${iprop_log} last-version
> slave-last.tmp
326 ${iprop_log} last-version
> master-last.tmp
327 cmp master-last.tmp slave-last.tmp ||
exit 1