xref: /freebsd-src/crypto/heimdal/lib/krb5/test_addr.c (revision 6a068746777241722b2b32c5d0bc443a2a64d80b)
1c19800e8SDoug Rabson /*
2*ae771770SStanislav Sedov  * Copyright (c) 2005 Kungliga Tekniska Högskolan
3c19800e8SDoug Rabson  * (Royal Institute of Technology, Stockholm, Sweden).
4c19800e8SDoug Rabson  * All rights reserved.
5c19800e8SDoug Rabson  *
6c19800e8SDoug Rabson  * Redistribution and use in source and binary forms, with or without
7c19800e8SDoug Rabson  * modification, are permitted provided that the following conditions
8c19800e8SDoug Rabson  * are met:
9c19800e8SDoug Rabson  *
10c19800e8SDoug Rabson  * 1. Redistributions of source code must retain the above copyright
11c19800e8SDoug Rabson  *    notice, this list of conditions and the following disclaimer.
12c19800e8SDoug Rabson  *
13c19800e8SDoug Rabson  * 2. Redistributions in binary form must reproduce the above copyright
14c19800e8SDoug Rabson  *    notice, this list of conditions and the following disclaimer in the
15c19800e8SDoug Rabson  *    documentation and/or other materials provided with the distribution.
16c19800e8SDoug Rabson  *
17c19800e8SDoug Rabson  * 3. Neither the name of KTH nor the names of its contributors may be
18c19800e8SDoug Rabson  *    used to endorse or promote products derived from this software without
19c19800e8SDoug Rabson  *    specific prior written permission.
20c19800e8SDoug Rabson  *
21c19800e8SDoug Rabson  * THIS SOFTWARE IS PROVIDED BY KTH AND ITS CONTRIBUTORS ``AS IS'' AND ANY
22c19800e8SDoug Rabson  * EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
23c19800e8SDoug Rabson  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
24c19800e8SDoug Rabson  * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL KTH OR ITS CONTRIBUTORS BE
25c19800e8SDoug Rabson  * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
26c19800e8SDoug Rabson  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
27c19800e8SDoug Rabson  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR
28c19800e8SDoug Rabson  * BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY,
29c19800e8SDoug Rabson  * WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR
30c19800e8SDoug Rabson  * OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF
31c19800e8SDoug Rabson  * ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. */
32c19800e8SDoug Rabson 
33c19800e8SDoug Rabson #include "krb5_locl.h"
34c19800e8SDoug Rabson #include <err.h>
35c19800e8SDoug Rabson 
36c19800e8SDoug Rabson static void
print_addr(krb5_context context,const char * addr)37c19800e8SDoug Rabson print_addr(krb5_context context, const char *addr)
38c19800e8SDoug Rabson {
39c19800e8SDoug Rabson     krb5_addresses addresses;
40c19800e8SDoug Rabson     krb5_error_code ret;
41c19800e8SDoug Rabson     char buf[38];
42c19800e8SDoug Rabson     char buf2[1000];
43c19800e8SDoug Rabson     size_t len;
44c19800e8SDoug Rabson     int i;
45c19800e8SDoug Rabson 
46c19800e8SDoug Rabson     ret = krb5_parse_address(context, addr, &addresses);
47c19800e8SDoug Rabson     if (ret)
48c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "krb5_parse_address");
49c19800e8SDoug Rabson 
50c19800e8SDoug Rabson     if (addresses.len < 1)
51c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "too few addresses");
52c19800e8SDoug Rabson 
53c19800e8SDoug Rabson     for (i = 0; i < addresses.len; i++) {
54c19800e8SDoug Rabson 	krb5_print_address(&addresses.val[i], buf, sizeof(buf), &len);
55c19800e8SDoug Rabson #if 0
56c19800e8SDoug Rabson 	printf("addr %d: %s (%d/%d)\n", i, buf, (int)len, (int)strlen(buf));
57c19800e8SDoug Rabson #endif
58c19800e8SDoug Rabson 	if (strlen(buf) > sizeof(buf))
59*ae771770SStanislav Sedov 	    krb5_err(context, 1, ret, "len %d larger then buf %d",
60*ae771770SStanislav Sedov 		     (int)strlen(buf), (int)sizeof(buf));
61c19800e8SDoug Rabson 	krb5_print_address(&addresses.val[i], buf2, sizeof(buf2), &len);
62c19800e8SDoug Rabson #if 0
63c19800e8SDoug Rabson 	printf("addr %d: %s (%d/%d)\n", i, buf2, (int)len, (int)strlen(buf2));
64c19800e8SDoug Rabson #endif
65c19800e8SDoug Rabson 	if (strlen(buf2) > sizeof(buf2))
66*ae771770SStanislav Sedov 	    krb5_err(context, 1, ret, "len %d larger then buf %d",
67*ae771770SStanislav Sedov 		     (int)strlen(buf2), (int)sizeof(buf2));
68c19800e8SDoug Rabson 
69c19800e8SDoug Rabson     }
70c19800e8SDoug Rabson     krb5_free_addresses(context, &addresses);
71c19800e8SDoug Rabson 
72c19800e8SDoug Rabson }
73c19800e8SDoug Rabson 
74c19800e8SDoug Rabson static void
truncated_addr(krb5_context context,const char * addr,size_t truncate_len,size_t outlen)75c19800e8SDoug Rabson truncated_addr(krb5_context context, const char *addr,
76c19800e8SDoug Rabson 	       size_t truncate_len, size_t outlen)
77c19800e8SDoug Rabson {
78c19800e8SDoug Rabson     krb5_addresses addresses;
79c19800e8SDoug Rabson     krb5_error_code ret;
80c19800e8SDoug Rabson     char *buf;
81c19800e8SDoug Rabson     size_t len;
82c19800e8SDoug Rabson 
83c19800e8SDoug Rabson     buf = ecalloc(1, outlen + 1);
84c19800e8SDoug Rabson 
85c19800e8SDoug Rabson     ret = krb5_parse_address(context, addr, &addresses);
86c19800e8SDoug Rabson     if (ret)
87c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "krb5_parse_address");
88c19800e8SDoug Rabson 
89c19800e8SDoug Rabson     if (addresses.len != 1)
90c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "addresses should be one");
91c19800e8SDoug Rabson 
92c19800e8SDoug Rabson     krb5_print_address(&addresses.val[0], buf, truncate_len, &len);
93c19800e8SDoug Rabson 
94c19800e8SDoug Rabson #if 0
95*ae771770SStanislav Sedov     printf("addr %s (%d/%d) should be %d\n", buf, (int)len, (int)strlen(buf), (int)outlen);
96c19800e8SDoug Rabson #endif
97c19800e8SDoug Rabson 
98c19800e8SDoug Rabson     if (truncate_len > strlen(buf) + 1)
99*ae771770SStanislav Sedov 	krb5_err(context, 1, ret, "%s truncate_len %d larger then strlen %d source %s",
100*ae771770SStanislav Sedov 		 buf, (int)truncate_len, (int)strlen(buf), addr);
101*ae771770SStanislav Sedov 
102c19800e8SDoug Rabson     if (outlen != len)
103*ae771770SStanislav Sedov 	krb5_err(context, 1, ret, "%s: outlen %d != len %d",
104*ae771770SStanislav Sedov 		 buf, (int)outlen, (int)strlen(buf));
105c19800e8SDoug Rabson 
106c19800e8SDoug Rabson     krb5_print_address(&addresses.val[0], buf, outlen + 1, &len);
107c19800e8SDoug Rabson 
108c19800e8SDoug Rabson #if 0
109c19800e8SDoug Rabson     printf("addr %s (%d/%d)\n", buf, (int)len, (int)strlen(buf));
110c19800e8SDoug Rabson #endif
111c19800e8SDoug Rabson 
112c19800e8SDoug Rabson     if (len != outlen)
113c19800e8SDoug Rabson 	abort();
114c19800e8SDoug Rabson     if (strlen(buf) != len)
115c19800e8SDoug Rabson 	abort();
116c19800e8SDoug Rabson 
117c19800e8SDoug Rabson     krb5_free_addresses(context, &addresses);
118c19800e8SDoug Rabson     free(buf);
119c19800e8SDoug Rabson }
120c19800e8SDoug Rabson 
121c19800e8SDoug Rabson static void
check_truncation(krb5_context context,const char * addr)122c19800e8SDoug Rabson check_truncation(krb5_context context, const char *addr)
123c19800e8SDoug Rabson {
124c19800e8SDoug Rabson     int i, len = strlen(addr);
125c19800e8SDoug Rabson 
126*ae771770SStanislav Sedov     truncated_addr(context, addr, len, len);
127*ae771770SStanislav Sedov 
128c19800e8SDoug Rabson     for (i = 0; i < len; i++)
129c19800e8SDoug Rabson 	truncated_addr(context, addr, i, len);
130c19800e8SDoug Rabson }
131c19800e8SDoug Rabson 
132c19800e8SDoug Rabson static void
match_addr(krb5_context context,const char * range_addr,const char * one_addr,int match)133c19800e8SDoug Rabson match_addr(krb5_context context, const char *range_addr,
134c19800e8SDoug Rabson 	   const char *one_addr, int match)
135c19800e8SDoug Rabson {
136c19800e8SDoug Rabson     krb5_addresses range, one;
137c19800e8SDoug Rabson     krb5_error_code ret;
138c19800e8SDoug Rabson 
139c19800e8SDoug Rabson     ret = krb5_parse_address(context, range_addr, &range);
140c19800e8SDoug Rabson     if (ret)
141c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "krb5_parse_address");
142c19800e8SDoug Rabson 
143c19800e8SDoug Rabson     if (range.len != 1)
144c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "wrong num of addresses");
145c19800e8SDoug Rabson 
146c19800e8SDoug Rabson     ret = krb5_parse_address(context, one_addr, &one);
147c19800e8SDoug Rabson     if (ret)
148c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "krb5_parse_address");
149c19800e8SDoug Rabson 
150c19800e8SDoug Rabson     if (one.len != 1)
151c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "wrong num of addresses");
152c19800e8SDoug Rabson 
153c19800e8SDoug Rabson     if (krb5_address_order(context, &range.val[0], &one.val[0]) == 0) {
154c19800e8SDoug Rabson 	if (!match)
155c19800e8SDoug Rabson 	    krb5_errx(context, 1, "match when one shouldn't be");
156c19800e8SDoug Rabson     } else {
157c19800e8SDoug Rabson 	if (match)
158c19800e8SDoug Rabson 	    krb5_errx(context, 1, "no match when one should be");
159c19800e8SDoug Rabson     }
160c19800e8SDoug Rabson 
161c19800e8SDoug Rabson     krb5_free_addresses(context, &range);
162c19800e8SDoug Rabson     krb5_free_addresses(context, &one);
163c19800e8SDoug Rabson }
164c19800e8SDoug Rabson 
165*ae771770SStanislav Sedov #ifdef _MSC_VER
166*ae771770SStanislav Sedov 
167*ae771770SStanislav Sedov /* For the truncation tests, calling strcpy_s() or strcat_s() with a
168*ae771770SStanislav Sedov    size of 0 results in the invalid parameter handler being invoked.
169*ae771770SStanislav Sedov    For the debug version, the runtime also throws an assert. */
170*ae771770SStanislav Sedov 
171*ae771770SStanislav Sedov static void
inv_param_handler(const wchar_t * expression,const wchar_t * function,const wchar_t * file,unsigned int line,uintptr_t pReserved)172*ae771770SStanislav Sedov inv_param_handler(const wchar_t* expression,
173*ae771770SStanislav Sedov 		  const wchar_t* function,
174*ae771770SStanislav Sedov 		  const wchar_t* file,
175*ae771770SStanislav Sedov 		  unsigned int line,
176*ae771770SStanislav Sedov 		  uintptr_t pReserved)
177*ae771770SStanislav Sedov {
178*ae771770SStanislav Sedov     printf("Invalid parameter handler invoked for: %S in %S(%d) [%S]\n",
179*ae771770SStanislav Sedov 	   function, file, line, expression);
180*ae771770SStanislav Sedov }
181*ae771770SStanislav Sedov 
182*ae771770SStanislav Sedov static _invalid_parameter_handler _inv_old = NULL;
183*ae771770SStanislav Sedov 
184*ae771770SStanislav Sedov #define SET_INVALID_PARAM_HANDLER _inv_old = _set_invalid_parameter_handler(inv_param_handler)
185*ae771770SStanislav Sedov 
186*ae771770SStanislav Sedov #else
187*ae771770SStanislav Sedov 
188*ae771770SStanislav Sedov #define SET_INVALID_PARAM_HANDLER ((void) 0)
189*ae771770SStanislav Sedov 
190*ae771770SStanislav Sedov #endif
191*ae771770SStanislav Sedov 
192c19800e8SDoug Rabson int
main(int argc,char ** argv)193c19800e8SDoug Rabson main(int argc, char **argv)
194c19800e8SDoug Rabson {
195c19800e8SDoug Rabson     krb5_context context;
196c19800e8SDoug Rabson     krb5_error_code ret;
197c19800e8SDoug Rabson 
198*ae771770SStanislav Sedov     SET_INVALID_PARAM_HANDLER;
199*ae771770SStanislav Sedov 
200c19800e8SDoug Rabson     setprogname(argv[0]);
201c19800e8SDoug Rabson 
202c19800e8SDoug Rabson     ret = krb5_init_context(&context);
203c19800e8SDoug Rabson     if (ret)
204c19800e8SDoug Rabson 	errx (1, "krb5_init_context failed: %d", ret);
205c19800e8SDoug Rabson 
206c19800e8SDoug Rabson     print_addr(context, "RANGE:127.0.0.0/8");
207c19800e8SDoug Rabson     print_addr(context, "RANGE:127.0.0.0/24");
208c19800e8SDoug Rabson     print_addr(context, "RANGE:IPv4:127.0.0.0-IPv4:127.0.0.255");
209c19800e8SDoug Rabson     print_addr(context, "RANGE:130.237.237.4/29");
210c19800e8SDoug Rabson #ifdef HAVE_IPV6
211*ae771770SStanislav Sedov     print_addr(context, "RANGE:2001:db8:1:2:3:4:1428:7ab/64");
212c19800e8SDoug Rabson     print_addr(context, "RANGE:IPv6:fe80::209:6bff:fea0:e522/64");
213c19800e8SDoug Rabson     print_addr(context, "RANGE:IPv6:fe80::-IPv6:fe80::ffff:ffff:ffff:ffff");
214c19800e8SDoug Rabson     print_addr(context, "RANGE:fe80::-fe80::ffff:ffff:ffff:ffff");
215c19800e8SDoug Rabson #endif
216c19800e8SDoug Rabson 
217c19800e8SDoug Rabson     check_truncation(context, "IPv4:127.0.0.0");
218c19800e8SDoug Rabson     check_truncation(context, "RANGE:IPv4:127.0.0.0-IPv4:127.0.0.255");
219c19800e8SDoug Rabson #ifdef HAVE_IPV6
220*ae771770SStanislav Sedov     check_truncation(context, "IPv6:::");
221c19800e8SDoug Rabson     check_truncation(context, "IPv6:::1");
222*ae771770SStanislav Sedov     check_truncation(context, "IPv6:2001:db8:1:2:3:4:1428:7ab");
223*ae771770SStanislav Sedov     check_truncation(context, "IPv6:fe80::209:0:0:0");
224c19800e8SDoug Rabson     check_truncation(context, "IPv6:fe80::ffff:ffff:ffff:ffff");
225c19800e8SDoug Rabson #endif
226c19800e8SDoug Rabson 
227c19800e8SDoug Rabson     match_addr(context, "RANGE:127.0.0.0/8", "inet:127.0.0.0", 1);
228c19800e8SDoug Rabson     match_addr(context, "RANGE:127.0.0.0/8", "inet:127.255.255.255", 1);
229c19800e8SDoug Rabson     match_addr(context, "RANGE:127.0.0.0/8", "inet:128.0.0.0", 0);
230c19800e8SDoug Rabson 
231c19800e8SDoug Rabson     match_addr(context, "RANGE:130.237.237.8/29", "inet:130.237.237.7", 0);
232c19800e8SDoug Rabson     match_addr(context, "RANGE:130.237.237.8/29", "inet:130.237.237.8", 1);
233c19800e8SDoug Rabson     match_addr(context, "RANGE:130.237.237.8/29", "inet:130.237.237.15", 1);
234c19800e8SDoug Rabson     match_addr(context, "RANGE:130.237.237.8/29", "inet:130.237.237.16", 0);
235c19800e8SDoug Rabson 
236c19800e8SDoug Rabson     krb5_free_context(context);
237c19800e8SDoug Rabson 
238c19800e8SDoug Rabson     return 0;
239c19800e8SDoug Rabson }
240