1 # $OpenBSD: test-exec.sh,v 1.37 2010/02/24 06:21:56 djm Exp $
2 # Placed in the Public Domain.
10 case `uname -s 2>/dev/null` in
17 if [ ! -z "$TEST_SSH_PORT" ]; then
23 if [ -x /usr/ucb/whoami ]; then
24 USER=`/usr/ucb/whoami`
25 elif whoami >/dev/null 2>&1; then
27 elif logname >/dev/null 2>&1; then
34 if [ "x$OBJ" = "x" ]; then
35 echo '$OBJ not defined'
38 if [ ! -d $OBJ ]; then
39 echo "not a directory: $OBJ"
43 if [ "x$SCRIPT" = "x" ]; then
44 echo '$SCRIPT not defined'
47 if [ ! -f $SCRIPT ]; then
48 echo "not a file: $SCRIPT"
51 if $TEST_SHELL -n $SCRIPT; then
54 echo "syntax error in $SCRIPT"
59 SRC=`dirname ${SCRIPT}`
67 SSHKEYSCAN=ssh-keyscan
69 SFTPSERVER=/usr/libexec/openssh/sftp-server
77 if [ "x$TEST_SSH_SSH" != "x" ]; then
80 if [ "x$TEST_SSH_SSHD" != "x" ]; then
81 SSHD="${TEST_SSH_SSHD}"
83 if [ "x$TEST_SSH_SSHAGENT" != "x" ]; then
84 SSHAGENT="${TEST_SSH_SSHAGENT}"
86 if [ "x$TEST_SSH_SSHADD" != "x" ]; then
87 SSHADD="${TEST_SSH_SSHADD}"
89 if [ "x$TEST_SSH_SSHKEYGEN" != "x" ]; then
90 SSHKEYGEN="${TEST_SSH_SSHKEYGEN}"
92 if [ "x$TEST_SSH_SSHKEYSCAN" != "x" ]; then
93 SSHKEYSCAN="${TEST_SSH_SSHKEYSCAN}"
95 if [ "x$TEST_SSH_SFTP" != "x" ]; then
96 SFTP="${TEST_SSH_SFTP}"
98 if [ "x$TEST_SSH_SFTPSERVER" != "x" ]; then
99 SFTPSERVER="${TEST_SSH_SFTPSERVER}"
101 if [ "x$TEST_SSH_SCP" != "x" ]; then
102 SCP="${TEST_SSH_SCP}"
104 if [ "x$TEST_SSH_PLINK" != "x" ]; then
105 # Find real binary, if it exists
106 case "${TEST_SSH_PLINK}" in
107 /*) PLINK="${TEST_SSH_PLINK}" ;;
108 *) PLINK=`which ${TEST_SSH_PLINK} 2>/dev/null` ;;
111 if [ "x$TEST_SSH_PUTTYGEN" != "x" ]; then
112 # Find real binary, if it exists
113 case "${TEST_SSH_PUTTYGEN}" in
114 /*) PUTTYGEN="${TEST_SSH_PUTTYGEN}" ;;
115 *) PUTTYGEN=`which ${TEST_SSH_PUTTYGEN} 2>/dev/null` ;;
118 if [ "x$TEST_SSH_CONCH" != "x" ]; then
119 # Find real binary, if it exists
120 case "${TEST_SSH_CONCH}" in
121 /*) CONCH="${TEST_SSH_CONCH}" ;;
122 *) CONCH=`which ${TEST_SSH_CONCH} 2>/dev/null` ;;
126 # Path to sshd must be absolute for rexec
129 *) SSHD=`which sshd` ;;
132 if [ "x$TEST_SSH_LOGFILE" = "x" ]; then
133 TEST_SSH_LOGFILE=/dev/null
136 # these should be used in tests
137 export SSH SSHD SSHAGENT SSHADD SSHKEYGEN SSHKEYSCAN SFTP SFTPSERVER SCP
138 #echo $SSH $SSHD $SSHAGENT $SSHADD $SSHKEYGEN $SSHKEYSCAN $SFTP $SFTPSERVER $SCP
143 if [ "x`echo -n`" = "x" ]; then
145 elif [ "x`echo '\c'`" = "x" ]; then
148 fatal "Don't know how to echo without newline."
158 if [ -x $i/$1 ]; then
169 if [ -f $PIDFILE ]; then
170 pid=`$SUDO cat $PIDFILE`
171 if [ "X$pid" = "X" ]; then
174 if [ $pid -lt 2 ]; then
175 echo bad pid for ssh: $pid
178 trace "wait for sshd to exit"
180 while [ -f $PIDFILE -a $i -lt 5 ]; do
184 test -f $PIDFILE && \
185 fatal "sshd didn't exit port $PORT pid $pid"
193 echo "trace: $@" >>$TEST_SSH_LOGFILE
194 if [ "X$TEST_SSH_TRACE" = "Xyes" ]; then
201 echo "verbose: $@" >>$TEST_SSH_LOGFILE
202 if [ "X$TEST_SSH_QUIET" != "Xyes" ]; then
209 echo "WARNING: $@" >>$TEST_SSH_LOGFILE
215 echo "FAIL: $@" >>$TEST_SSH_LOGFILE
222 echo "FATAL: $@" >>$TEST_SSH_LOGFILE
229 # Check whether preprocessor symbols are defined in config.h.
233 while test "x$2" != "x" ; do
237 egrep "^#define.*($str)" ${BUILDDIR}/config.h >/dev/null 2>&1
245 # create server config
246 cat << EOF > $OBJ/sshd_config
251 ListenAddress 127.0.0.1
254 AuthorizedKeysFile $OBJ/authorized_keys_%u
256 AcceptEnv _XXX_TEST_*
258 Subsystem sftp $SFTPSERVER
261 if [ ! -z "$TEST_SSH_SSHD_CONFOPTS" ]; then
262 trace "adding sshd_config option $TEST_SSH_SSHD_CONFOPTS"
263 echo "$TEST_SSH_SSHD_CONFOPTS" >> $OBJ/sshd_config
266 # server config for proxy connects
267 cp $OBJ/sshd_config $OBJ/sshd_proxy
269 # allow group-writable directories in proxy-mode
270 echo 'StrictModes no' >> $OBJ/sshd_proxy
272 # create client config
273 cat << EOF > $OBJ/ssh_config
277 HostKeyAlias localhost-with-alias
280 GlobalKnownHostsFile $OBJ/known_hosts
281 UserKnownHostsFile $OBJ/known_hosts
282 RSAAuthentication yes
283 PubkeyAuthentication yes
284 ChallengeResponseAuthentication no
285 HostbasedAuthentication no
286 PasswordAuthentication no
288 StrictHostKeyChecking yes
291 if [ ! -z "$TEST_SSH_SSH_CONFOPTS" ]; then
292 trace "adding ssh_config option $TEST_SSH_SSHD_CONFOPTS"
293 echo "$TEST_SSH_SSH_CONFOPTS" >> $OBJ/ssh_config
296 rm -f $OBJ/known_hosts $OBJ/authorized_keys_$USER
298 trace "generate keys"
299 for t in rsa rsa1; do
302 ${SSHKEYGEN} -b 1024 -q -N '' -t $t -f $OBJ/$t ||\
303 fail "ssh-keygen for $t failed"
305 # known hosts file for client
307 echon 'localhost-with-alias,127.0.0.1,::1 '
309 ) >> $OBJ/known_hosts
311 # setup authorized keys
312 cat $OBJ/$t.pub >> $OBJ/authorized_keys_$USER
313 echo IdentityFile $OBJ/$t >> $OBJ/ssh_config
315 # use key as host key, too
316 $SUDO cp $OBJ/$t $OBJ/host.$t
317 echo HostKey $OBJ/host.$t >> $OBJ/sshd_config
319 # don't use SUDO for proxy connect
320 echo HostKey $OBJ/$t >> $OBJ/sshd_proxy
322 chmod 644 $OBJ/authorized_keys_$USER
324 # Activate Twisted Conch tests if the binary is present
325 REGRESS_INTEROP_CONCH=no
326 if test -x "$CONCH" ; then
327 REGRESS_INTEROP_CONCH=yes
330 # If PuTTY is present and we are running a PuTTY test, prepare keys and
332 REGRESS_INTEROP_PUTTY=no
333 if test -x "$PUTTYGEN" -a -x "$PLINK" ; then
334 REGRESS_INTEROP_PUTTY=yes
338 *) REGRESS_INTEROP_PUTTY=no ;;
341 if test "$REGRESS_INTEROP_PUTTY" = "yes" ; then
342 mkdir -p ${OBJ}/.putty
344 # Add a PuTTY key to authorized_keys
345 rm -f ${OBJ}/putty.rsa2
346 puttygen -t rsa -o ${OBJ}/putty.rsa2 < /dev/null > /dev/null
347 puttygen -O public-openssh ${OBJ}/putty.rsa2 \
348 >> $OBJ/authorized_keys_$USER
350 # Convert rsa2 host key to PuTTY format
351 ${SRC}/ssh2putty.sh 127.0.0.1 $PORT $OBJ/rsa > \
352 ${OBJ}/.putty/sshhostkeys
353 ${SRC}/ssh2putty.sh 127.0.0.1 22 $OBJ/rsa >> \
354 ${OBJ}/.putty/sshhostkeys
356 # Setup proxied session
357 mkdir -p ${OBJ}/.putty/sessions
358 rm -f ${OBJ}/.putty/sessions/localhost_proxy
359 echo "Hostname=127.0.0.1" >> ${OBJ}/.putty/sessions/localhost_proxy
360 echo "PortNumber=$PORT" >> ${OBJ}/.putty/sessions/localhost_proxy
361 echo "ProxyMethod=5" >> ${OBJ}/.putty/sessions/localhost_proxy
362 echo "ProxyTelnetCommand=sh ${SRC}/sshd-log-wrapper.sh ${SSHD} ${TEST_SSH_LOGFILE} -i -f $OBJ/sshd_proxy" >> ${OBJ}/.putty/sessions/localhost_proxy
364 REGRESS_INTEROP_PUTTY=yes
367 # create a proxy version of the client config
370 echo proxycommand ${SUDO} sh ${SRC}/sshd-log-wrapper.sh ${SSHD} ${TEST_SSH_LOGFILE} -i -f $OBJ/sshd_proxy
374 ${SSHD} -t -f $OBJ/sshd_proxy || fatal "sshd_proxy broken"
379 $SUDO ${SSHD} -f $OBJ/sshd_config "$@" -t || fatal "sshd_config broken"
380 $SUDO ${SSHD} -f $OBJ/sshd_config -e "$@" >>$TEST_SSH_LOGFILE 2>&1
382 trace "wait for sshd"
384 while [ ! -f $PIDFILE -a $i -lt 10 ]; do
389 test -f $PIDFILE || fatal "no sshd running on port $PORT"
397 if [ $RESULT -eq 0 ]; then