Name Date Size #Lines LOC

..19-Mar-2024-

misc/H08-May-2022-1,9231,612

unittests/H19-Mar-2024-10,8219,123

MakefileH A D19-Mar-20249.1 KiB315269

README.regressH A D08-May-20225.7 KiB162136

addrmatch.shH A D08-May-20222.4 KiB6954

agent-getpeereid.shH A D19-Mar-20231.4 KiB6148

agent-pkcs11-cert.shH A D12-Jan-20242.9 KiB9371

agent-pkcs11-restrict.shH A D12-Jan-20245.6 KiB194166

agent-pkcs11.shH A D12-Jan-20241.2 KiB5543

agent-ptrace.shH A D11-Aug-20231.4 KiB6856

agent-restrict.shH A D19-Mar-202314.6 KiB496432

agent-subprocess.shH A D08-May-2022517 2313

agent-timeout.shH A D08-May-2022986 3932

agent.shH A D19-Mar-20236.6 KiB228183

allow-deny-users.shH A D08-May-20221.4 KiB4431

authinfo.shH A D08-May-2022574 189

banner.shH A D08-May-20221.3 KiB4732

broken-pipe.shH A D08-May-2022281 138

brokenkeys.shH A D08-May-2022462 2412

cert-file.shH A D08-May-20225.3 KiB167120

cert-hostkey.shH A D08-May-202210.5 KiB326275

cert-userkey.shH A D08-May-202211.8 KiB397324

cfginclude.shH A D08-May-20224.5 KiB294202

cfgmatch.shH A D08-May-20224.8 KiB159124

cfgmatchlisten.shH A D08-May-20226.3 KiB203155

cfgparse.shH A D08-May-20222.2 KiB7652

channel-timeout.shH A D19-Mar-20244.3 KiB162135

check-perm.cH A D08-May-20224.3 KiB206163

cipher-speed.shH A D08-May-20221 KiB4331

conch-ciphers.shH A D12-Jan-2024879 3221

connect-privsep.shH A D08-May-2022992 3524

connect-uri.shH A D08-May-2022816 3020

connect.shH A D08-May-2022407 1912

connection-timeout.shH A D07-Feb-20232 KiB8872

dhgex.shH A D19-Mar-20231.5 KiB6249

dropbear-ciphers.shH A D12-Jan-2024937 3426

dropbear-kex.shH A D12-Jan-2024928 3223

dsa_ssh2.prvH A D08-May-2022863 1514

dsa_ssh2.pubH A D08-May-2022732 1413

dynamic-forward.shH A D19-Mar-20242.8 KiB11294

ed25519_openssh.prvH A D08-May-2022419 87

ed25519_openssh.pubH A D08-May-202281 21

envpass.shH A D20-Oct-20223.2 KiB126108

exit-status-signal.shH A D08-May-2022481 2515

exit-status.shH A D08-May-2022562 2316

forcecommand.shH A D12-Jan-20242.2 KiB6852

forward-control.shH A D11-Aug-20237.5 KiB229185

forwarding.shH A D08-May-20224.3 KiB137108

host-expand.shH A D08-May-2022384 179

hostbased.shH A D07-Feb-20232.1 KiB6747

hostkey-agent.shH A D08-May-20222.8 KiB8867

hostkey-rotate.shH A D08-May-20225.1 KiB153112

integrity.shH A D19-Mar-20232.3 KiB7759

kextype.shH A D08-May-2022587 2617

key-options.shH A D08-May-20223.4 KiB125104

keygen-change.shH A D08-May-2022522 2317

keygen-comment.shH A D08-May-20221.4 KiB5343

keygen-convert.shH A D08-May-20221.7 KiB5640

keygen-knownhosts.shH A D08-May-20226.4 KiB221146

keygen-moduli.shH A D08-May-2022900 2818

keygen-sshfp.shH A D19-Mar-20231.7 KiB5038

keys-command.shH A D08-May-20222.4 KiB8060

keyscan.shH A D08-May-2022492 2619

keytype.shH A D08-May-20222.4 KiB8473

knownhosts-command.shH A D08-May-20221.6 KiB5646

knownhosts.shH A D19-Mar-20231.2 KiB3626

krl.shH A D07-Feb-20237 KiB218172

limit-keytype.shH A D08-May-20224.7 KiB13498

localcommand.shH A D08-May-2022351 148

login-timeout.shH A D08-May-2022581 1913

match-subsystem.shH A D10-Oct-20232.2 KiB9168

mkdtemp.cH A D08-May-20221.5 KiB6237

modpipe.cH A D08-May-20223.8 KiB151123

moduli.inH A D08-May-20221.6 KiB43

multiplex.shH A D19-Mar-20247.7 KiB210171

multipubkey.shH A D08-May-20222.7 KiB7651

netcat.cH A D08-May-202240.4 KiB1,6871,315

percent.shH A D11-Aug-20233.6 KiB130101

portnum.shH A D08-May-2022624 3527

principals-command.shH A D08-May-20225.2 KiB169127

proto-mismatch.shH A D08-May-2022368 1812

proto-version.shH A D08-May-2022527 3124

proxy-connect.shH A D08-May-2022706 2821

putty-ciphers.shH A D19-Mar-20241.4 KiB5641

putty-kex.shH A D19-Mar-2024970 3724

putty-transfer.shH A D19-Mar-20241,015 4233

reconfigure.shH A D08-May-20221.4 KiB6648

reexec.shH A D07-Feb-20231.1 KiB5835

rekey.shH A D08-May-20224.1 KiB173150

rsa_openssh.prvH A D08-May-2022883 1615

rsa_openssh.pubH A D08-May-2022213 21

rsa_ssh2.prvH A D08-May-2022924 1716

scp-ssh-wrapper.shH A D08-May-20221 KiB7263

scp-uri.shH A D07-Feb-20232.2 KiB8059

scp.shH A D10-Oct-20236 KiB206164

scp3.shH A D10-Oct-20231.7 KiB7054

servcfginclude.shH A D08-May-20223.8 KiB189139

setuid-allowed.cH A D08-May-20221.5 KiB5932

sftp-badcmds.shH A D08-May-20222.2 KiB6650

sftp-batch.shH A D08-May-20221.2 KiB5638

sftp-chroot.shH A D11-Aug-20231.2 KiB4834

sftp-cmds.shH A D20-Oct-20227.4 KiB234174

sftp-glob.shH A D08-May-20222.5 KiB7663

sftp-perm.shH A D08-May-20225.4 KiB272210

sftp-uri.shH A D08-May-20221.6 KiB6448

sftp.shH A D08-May-2022737 3326

ssh-com-client.shH A D08-May-20223 KiB131102

ssh-com-keygen.shH A D08-May-20221.4 KiB7564

ssh-com-sftp.shH A D08-May-20221.2 KiB6654

ssh-com.shH A D08-May-20222.7 KiB12095

ssh2putty.shH A D08-May-2022746 3725

sshcfgparse.shH A D08-May-20224.8 KiB120100

sshfp-connect.shH A D08-May-20222.8 KiB6736

sshsig.shH A D12-Jan-202421.9 KiB541422

stderr-after-eof.shH A D08-May-2022603 2517

stderr-data.shH A D08-May-2022709 2822

t11.okH A D08-May-202251 21

t4.okH A D08-May-202252 21

t5.okH A D08-May-202266 21

test-exec.shH A D19-Mar-202425.6 KiB1,026825

timestamp.cH A D19-Mar-20231.4 KiB4719

transfer.shH A D08-May-2022583 2418

try-ciphers.shH A D08-May-2022715 2920

valgrind-unit.shH A D08-May-2022640 2515

yes-head.shH A D07-Feb-2023403 149

README.regress

1Overview.
2
3$ ./configure && make tests
4
5You'll see some progress info. A failure will cause either the make to
6abort or the driver script to report a "FATAL" failure.
7
8The test consists of 2 parts. The first is the file-based tests which is
9driven by the Makefile, and the second is a set of network or proxycommand
10based tests, which are driven by a driver script (test-exec.sh) which is
11called multiple times by the Makefile.
12
13Failures in the first part will cause the Makefile to return an error.
14Failures in the second part will print a "FATAL" message for the failed
15test and continue.
16
17OpenBSD has a system-wide regression test suite. OpenSSH Portable's test
18suite is based on OpenBSD's with modifications.
19
20
21Environment variables.
22
23SKIP_UNIT: Skip unit tests.
24SUDO: path to sudo/doas command, if desired. Note that some systems
25	(notably systems using PAM) require sudo to execute some tests.
26LTESTS: Whitespace separated list of tests (filenames without the .sh
27	extension) to run.
28SKIP_LTESTS: Whitespace separated list of tests to skip.
29OBJ: used by test scripts to access build dir.
30TEST_SHELL: shell used for running the test scripts.
31TEST_SSH_FAIL_FATAL: set to "yes" to make any failure abort the test
32	currently in progress.
33TEST_SSH_PORT: TCP port to be used for the listening tests.
34TEST_SSH_QUIET: set to "yes" to suppress non-fatal output.
35TEST_SSH_SSHD_CONFOPTS: Configuration directives to be added to sshd_config
36	before running each test.
37TEST_SSH_SSH_CONFOPTS: Configuration directives to be added to
38	ssh_config before running each test.
39TEST_SSH_TRACE: set to "yes" for verbose output from tests
40TEST_SSH_x: path to "ssh" command under test, where x is one of
41	SSH, SSHD, SSHAGENT, SSHADD, SSHKEYGEN, SSHKEYSCAN, SFTP or
42	SFTPSERVER
43USE_VALGRIND: Run the tests under valgrind memory checker.
44
45
46Individual tests.
47
48You can run an individual test from the top-level Makefile, eg:
49$ make tests LTESTS=agent-timeout
50
51If you need to manipulate the environment more you can invoke test-exec.sh
52directly if you set up the path to find the binaries under test and the
53test scripts themselves, for example:
54
55$ cd regress
56$ PATH=`pwd`/..:$PATH:. TEST_SHELL=/bin/sh sh test-exec.sh `pwd` \
57    agent-timeout.sh
58ok agent timeout test
59
60
61Files.
62
63test-exec.sh: the main test driver. Sets environment, creates config files
64and keys and runs the specified test.
65
66At the time of writing, the individual tests are:
67connect.sh:		simple connect
68proxy-connect.sh:	proxy connect
69connect-privsep.sh:	proxy connect with privsep
70connect-uri.sh:		uri connect
71proto-version.sh:	sshd version with different protocol combinations
72proto-mismatch.sh:	protocol version mismatch
73exit-status.sh:		remote exit status
74envpass.sh:		environment passing
75transfer.sh:		transfer data
76banner.sh:		banner
77rekey.sh:		rekey
78stderr-data.sh:		stderr data transfer
79stderr-after-eof.sh:	stderr data after eof
80broken-pipe.sh:		broken pipe test
81try-ciphers.sh:		try ciphers
82yes-head.sh:		yes pipe head
83login-timeout.sh:	connect after login grace timeout
84agent.sh:		simple connect via agent
85agent-getpeereid.sh:	disallow agent attach from other uid
86agent-timeout.sh:	agent timeout test
87agent-ptrace.sh:	disallow agent ptrace attach
88keyscan.sh:		keyscan
89keygen-change.sh:	change passphrase for key
90keygen-convert.sh:	convert keys
91keygen-moduli.sh:	keygen moduli
92key-options.sh:		key options
93scp.sh:			scp
94scp-uri.sh:		scp-uri
95sftp.sh:		basic sftp put/get
96sftp-chroot.sh:		sftp in chroot
97sftp-cmds.sh:		sftp command
98sftp-badcmds.sh:	sftp invalid commands
99sftp-batch.sh:		sftp batchfile
100sftp-glob.sh:		sftp glob
101sftp-perm.sh:		sftp permissions
102sftp-uri.sh:		sftp-uri
103ssh-com-client.sh:	connect with ssh.com client
104ssh-com-keygen.sh:	ssh.com key import
105ssh-com-sftp.sh:	basic sftp put/get with ssh.com server
106ssh-com.sh:		connect to ssh.com server
107reconfigure.sh:		simple connect after reconfigure
108dynamic-forward.sh:	dynamic forwarding
109forwarding.sh:		local and remote forwarding
110multiplex.sh:		connection multiplexing
111reexec.sh:		reexec tests
112brokenkeys.sh:		broken keys
113sshcfgparse.sh:		ssh config parse
114cfgparse.sh:		sshd config parse
115cfgmatch.sh:		sshd_config match
116cfgmatchlisten.sh:	sshd_config matchlisten
117addrmatch.sh:		address match
118localcommand.sh:	localcommand
119forcecommand.sh:	forced command
120portnum.sh:		port number parsing
121keytype.sh:		login with different key types
122kextype.sh:		login with different key exchange algorithms
123cert-hostkey.sh		certified host keys
124cert-userkey.sh:	certified user keys
125host-expand.sh:		expand %h and %n
126keys-command.sh:	authorized keys from command
127forward-control.sh:	sshd control of local and remote forwarding
128integrity.sh:		integrity
129krl.sh:			key revocation lists
130multipubkey.sh:		multiple pubkey
131limit-keytype.sh:	restrict pubkey type
132hostkey-agent.sh:	hostkey agent
133keygen-knownhosts.sh:	ssh-keygen known_hosts
134hostkey-rotate.sh:	hostkey rotate
135principals-command.sh:	authorized principals command
136cert-file.sh:		ssh with certificates
137cfginclude.sh:		config include
138allow-deny-users.sh:	AllowUsers/DenyUsers
139authinfo.sh:		authinfo
140
141
142Problems?
143
144Run the failing test with shell tracing (-x) turned on:
145$ PATH=`pwd`/..:$PATH:. sh -x test-exec.sh `pwd` agent-timeout.sh
146
147Failed tests can be difficult to diagnose. Suggestions:
148- run the individual test via ./test-exec.sh `pwd` [testname]
149- set LogLevel to VERBOSE in test-exec.sh and enable syslogging of
150  auth.debug (eg to /var/log/authlog).
151
152
153Known Issues.
154
155- Similarly, if you do not have "scp" in your system's $PATH then the
156  multiplex scp tests will fail (since the system's shell startup scripts
157  will determine where the shell started by sshd will look for scp).
158
159- Recent GNU coreutils deprecate "head -[n]": this will cause the yes-head
160  test to fail.  The old behaviour can be restored by setting (and
161  exporting) _POSIX2_VERSION=199209 before running the tests.
162