xref: /freebsd/crypto/heimdal/lib/krb5/test_addr.c (revision c19800e8)
1c19800e8SDoug Rabson /*
2c19800e8SDoug Rabson  * Copyright (c) 2005 Kungliga Tekniska Högskolan
3c19800e8SDoug Rabson  * (Royal Institute of Technology, Stockholm, Sweden).
4c19800e8SDoug Rabson  * All rights reserved.
5c19800e8SDoug Rabson  *
6c19800e8SDoug Rabson  * Redistribution and use in source and binary forms, with or without
7c19800e8SDoug Rabson  * modification, are permitted provided that the following conditions
8c19800e8SDoug Rabson  * are met:
9c19800e8SDoug Rabson  *
10c19800e8SDoug Rabson  * 1. Redistributions of source code must retain the above copyright
11c19800e8SDoug Rabson  *    notice, this list of conditions and the following disclaimer.
12c19800e8SDoug Rabson  *
13c19800e8SDoug Rabson  * 2. Redistributions in binary form must reproduce the above copyright
14c19800e8SDoug Rabson  *    notice, this list of conditions and the following disclaimer in the
15c19800e8SDoug Rabson  *    documentation and/or other materials provided with the distribution.
16c19800e8SDoug Rabson  *
17c19800e8SDoug Rabson  * 3. Neither the name of KTH nor the names of its contributors may be
18c19800e8SDoug Rabson  *    used to endorse or promote products derived from this software without
19c19800e8SDoug Rabson  *    specific prior written permission.
20c19800e8SDoug Rabson  *
21c19800e8SDoug Rabson  * THIS SOFTWARE IS PROVIDED BY KTH AND ITS CONTRIBUTORS ``AS IS'' AND ANY
22c19800e8SDoug Rabson  * EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
23c19800e8SDoug Rabson  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
24c19800e8SDoug Rabson  * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL KTH OR ITS CONTRIBUTORS BE
25c19800e8SDoug Rabson  * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
26c19800e8SDoug Rabson  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
27c19800e8SDoug Rabson  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR
28c19800e8SDoug Rabson  * BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY,
29c19800e8SDoug Rabson  * WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR
30c19800e8SDoug Rabson  * OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF
31c19800e8SDoug Rabson  * ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. */
32c19800e8SDoug Rabson 
33c19800e8SDoug Rabson #include "krb5_locl.h"
34c19800e8SDoug Rabson #include <err.h>
35c19800e8SDoug Rabson 
36c19800e8SDoug Rabson static void
print_addr(krb5_context context,const char * addr)37c19800e8SDoug Rabson print_addr(krb5_context context, const char *addr)
38c19800e8SDoug Rabson {
39c19800e8SDoug Rabson     krb5_addresses addresses;
40c19800e8SDoug Rabson     krb5_error_code ret;
41c19800e8SDoug Rabson     char buf[38];
42c19800e8SDoug Rabson     char buf2[1000];
43c19800e8SDoug Rabson     size_t len;
44c19800e8SDoug Rabson     int i;
45c19800e8SDoug Rabson 
46c19800e8SDoug Rabson     ret = krb5_parse_address(context, addr, &addresses);
47c19800e8SDoug Rabson     if (ret)
48c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "krb5_parse_address");
49c19800e8SDoug Rabson 
50c19800e8SDoug Rabson     if (addresses.len < 1)
51c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "too few addresses");
52c19800e8SDoug Rabson 
53c19800e8SDoug Rabson     for (i = 0; i < addresses.len; i++) {
54c19800e8SDoug Rabson 	krb5_print_address(&addresses.val[i], buf, sizeof(buf), &len);
55c19800e8SDoug Rabson #if 0
56c19800e8SDoug Rabson 	printf("addr %d: %s (%d/%d)\n", i, buf, (int)len, (int)strlen(buf));
57c19800e8SDoug Rabson #endif
58c19800e8SDoug Rabson 	if (strlen(buf) > sizeof(buf))
59c19800e8SDoug Rabson 	    krb5_err(context, 1, ret, "len %d larger then buf %d",
60c19800e8SDoug Rabson 		     (int)strlen(buf), (int)sizeof(buf));
61c19800e8SDoug Rabson 	krb5_print_address(&addresses.val[i], buf2, sizeof(buf2), &len);
62c19800e8SDoug Rabson #if 0
63c19800e8SDoug Rabson 	printf("addr %d: %s (%d/%d)\n", i, buf2, (int)len, (int)strlen(buf2));
64c19800e8SDoug Rabson #endif
65c19800e8SDoug Rabson 	if (strlen(buf2) > sizeof(buf2))
66c19800e8SDoug Rabson 	    krb5_err(context, 1, ret, "len %d larger then buf %d",
67c19800e8SDoug Rabson 		     (int)strlen(buf2), (int)sizeof(buf2));
68c19800e8SDoug Rabson 
69c19800e8SDoug Rabson     }
70c19800e8SDoug Rabson     krb5_free_addresses(context, &addresses);
71c19800e8SDoug Rabson 
72c19800e8SDoug Rabson }
73c19800e8SDoug Rabson 
74c19800e8SDoug Rabson static void
truncated_addr(krb5_context context,const char * addr,size_t truncate_len,size_t outlen)75c19800e8SDoug Rabson truncated_addr(krb5_context context, const char *addr,
76c19800e8SDoug Rabson 	       size_t truncate_len, size_t outlen)
77c19800e8SDoug Rabson {
78c19800e8SDoug Rabson     krb5_addresses addresses;
79c19800e8SDoug Rabson     krb5_error_code ret;
80c19800e8SDoug Rabson     char *buf;
81c19800e8SDoug Rabson     size_t len;
82c19800e8SDoug Rabson 
83c19800e8SDoug Rabson     buf = ecalloc(1, outlen + 1);
84c19800e8SDoug Rabson 
85c19800e8SDoug Rabson     ret = krb5_parse_address(context, addr, &addresses);
86c19800e8SDoug Rabson     if (ret)
87c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "krb5_parse_address");
88c19800e8SDoug Rabson 
89c19800e8SDoug Rabson     if (addresses.len != 1)
90c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "addresses should be one");
91c19800e8SDoug Rabson 
92c19800e8SDoug Rabson     krb5_print_address(&addresses.val[0], buf, truncate_len, &len);
93c19800e8SDoug Rabson 
94c19800e8SDoug Rabson #if 0
95c19800e8SDoug Rabson     printf("addr %s (%d/%d) should be %d\n", buf, (int)len, (int)strlen(buf), (int)outlen);
96c19800e8SDoug Rabson #endif
97c19800e8SDoug Rabson 
98c19800e8SDoug Rabson     if (truncate_len > strlen(buf) + 1)
99c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "%s truncate_len %d larger then strlen %d source %s",
100c19800e8SDoug Rabson 		 buf, (int)truncate_len, (int)strlen(buf), addr);
101c19800e8SDoug Rabson 
102c19800e8SDoug Rabson     if (outlen != len)
103c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "%s: outlen %d != len %d",
104c19800e8SDoug Rabson 		 buf, (int)outlen, (int)strlen(buf));
105c19800e8SDoug Rabson 
106c19800e8SDoug Rabson     krb5_print_address(&addresses.val[0], buf, outlen + 1, &len);
107c19800e8SDoug Rabson 
108c19800e8SDoug Rabson #if 0
109c19800e8SDoug Rabson     printf("addr %s (%d/%d)\n", buf, (int)len, (int)strlen(buf));
110c19800e8SDoug Rabson #endif
111c19800e8SDoug Rabson 
112c19800e8SDoug Rabson     if (len != outlen)
113c19800e8SDoug Rabson 	abort();
114c19800e8SDoug Rabson     if (strlen(buf) != len)
115c19800e8SDoug Rabson 	abort();
116c19800e8SDoug Rabson 
117c19800e8SDoug Rabson     krb5_free_addresses(context, &addresses);
118c19800e8SDoug Rabson     free(buf);
119c19800e8SDoug Rabson }
120c19800e8SDoug Rabson 
121c19800e8SDoug Rabson static void
check_truncation(krb5_context context,const char * addr)122c19800e8SDoug Rabson check_truncation(krb5_context context, const char *addr)
123c19800e8SDoug Rabson {
124c19800e8SDoug Rabson     int i, len = strlen(addr);
125c19800e8SDoug Rabson 
126c19800e8SDoug Rabson     truncated_addr(context, addr, len, len);
127c19800e8SDoug Rabson 
128c19800e8SDoug Rabson     for (i = 0; i < len; i++)
129c19800e8SDoug Rabson 	truncated_addr(context, addr, i, len);
130c19800e8SDoug Rabson }
131c19800e8SDoug Rabson 
132c19800e8SDoug Rabson static void
match_addr(krb5_context context,const char * range_addr,const char * one_addr,int match)133c19800e8SDoug Rabson match_addr(krb5_context context, const char *range_addr,
134c19800e8SDoug Rabson 	   const char *one_addr, int match)
135c19800e8SDoug Rabson {
136c19800e8SDoug Rabson     krb5_addresses range, one;
137c19800e8SDoug Rabson     krb5_error_code ret;
138c19800e8SDoug Rabson 
139c19800e8SDoug Rabson     ret = krb5_parse_address(context, range_addr, &range);
140c19800e8SDoug Rabson     if (ret)
141c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "krb5_parse_address");
142c19800e8SDoug Rabson 
143c19800e8SDoug Rabson     if (range.len != 1)
144c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "wrong num of addresses");
145c19800e8SDoug Rabson 
146c19800e8SDoug Rabson     ret = krb5_parse_address(context, one_addr, &one);
147c19800e8SDoug Rabson     if (ret)
148c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "krb5_parse_address");
149c19800e8SDoug Rabson 
150c19800e8SDoug Rabson     if (one.len != 1)
151c19800e8SDoug Rabson 	krb5_err(context, 1, ret, "wrong num of addresses");
152c19800e8SDoug Rabson 
153c19800e8SDoug Rabson     if (krb5_address_order(context, &range.val[0], &one.val[0]) == 0) {
154c19800e8SDoug Rabson 	if (!match)
155c19800e8SDoug Rabson 	    krb5_errx(context, 1, "match when one shouldn't be");
156c19800e8SDoug Rabson     } else {
157c19800e8SDoug Rabson 	if (match)
158c19800e8SDoug Rabson 	    krb5_errx(context, 1, "no match when one should be");
159c19800e8SDoug Rabson     }
160c19800e8SDoug Rabson 
161c19800e8SDoug Rabson     krb5_free_addresses(context, &range);
162c19800e8SDoug Rabson     krb5_free_addresses(context, &one);
163c19800e8SDoug Rabson }
164c19800e8SDoug Rabson 
165c19800e8SDoug Rabson #ifdef _MSC_VER
166c19800e8SDoug Rabson 
167c19800e8SDoug Rabson /* For the truncation tests, calling strcpy_s() or strcat_s() with a
168c19800e8SDoug Rabson    size of 0 results in the invalid parameter handler being invoked.
169c19800e8SDoug Rabson    For the debug version, the runtime also throws an assert. */
170c19800e8SDoug Rabson 
171c19800e8SDoug Rabson static void
inv_param_handler(const wchar_t * expression,const wchar_t * function,const wchar_t * file,unsigned int line,uintptr_t pReserved)172c19800e8SDoug Rabson inv_param_handler(const wchar_t* expression,
173c19800e8SDoug Rabson 		  const wchar_t* function,
174c19800e8SDoug Rabson 		  const wchar_t* file,
175c19800e8SDoug Rabson 		  unsigned int line,
176c19800e8SDoug Rabson 		  uintptr_t pReserved)
177c19800e8SDoug Rabson {
178c19800e8SDoug Rabson     printf("Invalid parameter handler invoked for: %S in %S(%d) [%S]\n",
179c19800e8SDoug Rabson 	   function, file, line, expression);
180c19800e8SDoug Rabson }
181c19800e8SDoug Rabson 
182c19800e8SDoug Rabson static _invalid_parameter_handler _inv_old = NULL;
183c19800e8SDoug Rabson 
184c19800e8SDoug Rabson #define SET_INVALID_PARAM_HANDLER _inv_old = _set_invalid_parameter_handler(inv_param_handler)
185c19800e8SDoug Rabson 
186c19800e8SDoug Rabson #else
187c19800e8SDoug Rabson 
188c19800e8SDoug Rabson #define SET_INVALID_PARAM_HANDLER ((void) 0)
189c19800e8SDoug Rabson 
190c19800e8SDoug Rabson #endif
191c19800e8SDoug Rabson 
192c19800e8SDoug Rabson int
main(int argc,char ** argv)193c19800e8SDoug Rabson main(int argc, char **argv)
194c19800e8SDoug Rabson {
195c19800e8SDoug Rabson     krb5_context context;
196c19800e8SDoug Rabson     krb5_error_code ret;
197c19800e8SDoug Rabson 
198c19800e8SDoug Rabson     SET_INVALID_PARAM_HANDLER;
199c19800e8SDoug Rabson 
200c19800e8SDoug Rabson     setprogname(argv[0]);
201c19800e8SDoug Rabson 
202c19800e8SDoug Rabson     ret = krb5_init_context(&context);
203     if (ret)
204 	errx (1, "krb5_init_context failed: %d", ret);
205 
206     print_addr(context, "RANGE:127.0.0.0/8");
207     print_addr(context, "RANGE:127.0.0.0/24");
208     print_addr(context, "RANGE:IPv4:127.0.0.0-IPv4:127.0.0.255");
209     print_addr(context, "RANGE:130.237.237.4/29");
210 #ifdef HAVE_IPV6
211     print_addr(context, "RANGE:2001:db8:1:2:3:4:1428:7ab/64");
212     print_addr(context, "RANGE:IPv6:fe80::209:6bff:fea0:e522/64");
213     print_addr(context, "RANGE:IPv6:fe80::-IPv6:fe80::ffff:ffff:ffff:ffff");
214     print_addr(context, "RANGE:fe80::-fe80::ffff:ffff:ffff:ffff");
215 #endif
216 
217     check_truncation(context, "IPv4:127.0.0.0");
218     check_truncation(context, "RANGE:IPv4:127.0.0.0-IPv4:127.0.0.255");
219 #ifdef HAVE_IPV6
220     check_truncation(context, "IPv6:::");
221     check_truncation(context, "IPv6:::1");
222     check_truncation(context, "IPv6:2001:db8:1:2:3:4:1428:7ab");
223     check_truncation(context, "IPv6:fe80::209:0:0:0");
224     check_truncation(context, "IPv6:fe80::ffff:ffff:ffff:ffff");
225 #endif
226 
227     match_addr(context, "RANGE:127.0.0.0/8", "inet:127.0.0.0", 1);
228     match_addr(context, "RANGE:127.0.0.0/8", "inet:127.255.255.255", 1);
229     match_addr(context, "RANGE:127.0.0.0/8", "inet:128.0.0.0", 0);
230 
231     match_addr(context, "RANGE:130.237.237.8/29", "inet:130.237.237.7", 0);
232     match_addr(context, "RANGE:130.237.237.8/29", "inet:130.237.237.8", 1);
233     match_addr(context, "RANGE:130.237.237.8/29", "inet:130.237.237.15", 1);
234     match_addr(context, "RANGE:130.237.237.8/29", "inet:130.237.237.16", 0);
235 
236     krb5_free_context(context);
237 
238     return 0;
239 }
240