]> git.samba.org - obnox/samba/samba-obnox.git/blobdiff - selftest/target/Samba3.pm
vfs_shadow_copy2: add tests for snapsharepath
[obnox/samba/samba-obnox.git] / selftest / target / Samba3.pm
index 097d90a8de4a07cdc0c32a617656e3f0e9aba48f..44dadfb024ecbe4a8b2ad0b94ae113491a1c4db6 100755 (executable)
@@ -49,10 +49,9 @@ sub get_fs_specific_conf($$)
 }
 
 sub new($$) {
-       my ($classname, $bindir, $binary_mapping, $srcdir, $server_maxtime) = @_;
+       my ($classname, $bindir, $srcdir, $server_maxtime) = @_;
        my $self = { vars => {},
                     bindir => $bindir,
-                    binary_mapping => $binary_mapping,
                     srcdir => $srcdir,
                     server_maxtime => $server_maxtime
        };
@@ -173,12 +172,21 @@ sub setup_env($$$)
                return $self->{vars}->{$envname};
        }
 
+       #
+       # Avoid hitting system krb5.conf -
+       # An env that needs Kerberos will reset this to the real
+       # value.
+       #
+       $ENV{KRB5_CONFIG} = "$path/no_krb5.conf";
+
        if ($envname eq "nt4_dc") {
                return $self->setup_nt4_dc("$path/nt4_dc");
        } elsif ($envname eq "nt4_dc_schannel") {
                return $self->setup_nt4_dc_schannel("$path/nt4_dc_schannel");
        } elsif ($envname eq "simpleserver") {
                return $self->setup_simpleserver("$path/simpleserver");
+       } elsif ($envname eq "fileserver") {
+               return $self->setup_fileserver("$path/fileserver");
        } elsif ($envname eq "maptoguest") {
                return $self->setup_maptoguest("$path/maptoguest");
        } elsif ($envname eq "ktest") {
@@ -212,10 +220,13 @@ sub setup_nt4_dc($$)
        rpc_server:samr = external
        rpc_server:netlogon = external
        rpc_server:register_embedded_np = yes
+       rpc_server:FssagentRpc = external
 
        rpc_daemon:epmd = fork
        rpc_daemon:spoolssd = fork
        rpc_daemon:lsasd = fork
+       rpc_daemon:fssd = fork
+       fss: sequence timeout = 1
 ";
 
        my $vars = $self->provision($path,
@@ -524,13 +535,14 @@ sub setup_simpleserver($$)
 {
        my ($self, $path) = @_;
 
-       print "PROVISIONING server with security=share...";
+       print "PROVISIONING simple server...";
 
        my $prefix_abs = abs_path($path);
 
        my $simpleserver_options = "
        lanman auth = yes
        vfs objects = xattr_tdb streams_depot
+       change notify = no
 
 [vfs_aio_fork]
        path = $prefix_abs/share
@@ -555,6 +567,131 @@ sub setup_simpleserver($$)
        return $vars;
 }
 
+sub setup_fileserver($$)
+{
+       my ($self, $path) = @_;
+       my $prefix_abs = abs_path($path);
+       my $srcdir_abs = abs_path($self->{srcdir});
+
+       print "PROVISIONING file server ...\n";
+
+       my @dirs = ();
+
+       mkdir($prefix_abs, 0777);
+
+       my $share_dir="$prefix_abs/share";
+
+       # Create share directory structure
+       my $lower_case_share_dir="$share_dir/lower-case";
+       push(@dirs, $lower_case_share_dir);
+
+       my $lower_case_share_dir_30000="$share_dir/lower-case-30000";
+       push(@dirs, $lower_case_share_dir_30000);
+
+       my $dfree_share_dir="$share_dir/dfree";
+       push(@dirs, $dfree_share_dir);
+       push(@dirs, "$dfree_share_dir/subdir1");
+       push(@dirs, "$dfree_share_dir/subdir2");
+
+       my $valid_users_sharedir="$share_dir/valid_users";
+       push(@dirs,$valid_users_sharedir);
+
+       my $offline_sharedir="$share_dir/offline";
+       push(@dirs,$offline_sharedir);
+
+       my $fileserver_options = "
+[lowercase]
+       path = $lower_case_share_dir
+       comment = smb username is [%U]
+       case sensitive = True
+       default case = lower
+       preserve case = no
+       short preserve case = no
+[lowercase-30000]
+       path = $lower_case_share_dir_30000
+       comment = smb username is [%U]
+       case sensitive = True
+       default case = lower
+       preserve case = no
+       short preserve case = no
+[dfree]
+       path = $dfree_share_dir
+       comment = smb username is [%U]
+       dfree command = $srcdir_abs/testprogs/blackbox/dfree.sh
+[valid-users-access]
+       path = $valid_users_sharedir
+       valid users = +userdup
+[offline]
+       path = $offline_sharedir
+       vfs objects = offline
+       ";
+
+       my $vars = $self->provision($path,
+                                   "FILESERVER",
+                                   "fileserver",
+                                   $fileserver_options,
+                                   undef,
+                                   undef,
+                                   1);
+
+       $vars or return undef;
+
+       if (not $self->check_or_start($vars, "yes", "no", "yes")) {
+              return undef;
+       }
+
+       $self->{vars}->{fileserver} = $vars;
+
+       mkdir($_, 0777) foreach(@dirs);
+
+       ## Create case sensitive lower case share dir
+       foreach my $file ('a'..'z') {
+               my $full_path = $lower_case_share_dir . '/' . $file;
+               open my $fh, '>', $full_path;
+               # Add some content to file
+               print $fh $full_path;
+               close $fh;
+       }
+
+       for (my $file = 1; $file < 51; ++$file) {
+               my $full_path = $lower_case_share_dir . '/' . $file;
+               open my $fh, '>', $full_path;
+               # Add some content to file
+               print $fh $full_path;
+               close $fh;
+       }
+
+       # Create content for 30000 share
+       foreach my $file ('a'..'z') {
+               my $full_path = $lower_case_share_dir_30000 . '/' . $file;
+               open my $fh, '>', $full_path;
+               # Add some content to file
+               print $fh $full_path;
+               close $fh;
+       }
+
+       for (my $file = 1; $file < 30001; ++$file) {
+               my $full_path = $lower_case_share_dir_30000 . '/' . $file;
+               open my $fh, '>', $full_path;
+               # Add some content to file
+               print $fh $full_path;
+               close $fh;
+       }
+
+       ##
+       ## create a listable file in valid_users_share
+       ##
+        my $valid_users_target = "$valid_users_sharedir/foo";
+        unless (open(VALID_USERS_TARGET, ">$valid_users_target")) {
+                warn("Unable to open $valid_users_target");
+                return undef;
+        }
+        close(VALID_USERS_TARGET);
+        chmod 0644, $valid_users_target;
+
+       return $vars;
+}
+
 sub setup_ktest($$$)
 {
        my ($self, $prefix) = @_;
@@ -734,6 +871,7 @@ sub check_or_start($$$$$) {
                $ENV{NSS_WRAPPER_HOSTNAME} = $env_vars->{NSS_WRAPPER_HOSTNAME};
                $ENV{NSS_WRAPPER_MODULE_SO_PATH} = $env_vars->{NSS_WRAPPER_MODULE_SO_PATH};
                $ENV{NSS_WRAPPER_MODULE_FN_PREFIX} = $env_vars->{NSS_WRAPPER_MODULE_FN_PREFIX};
+               $ENV{UID_WRAPPER_ROOT} = "1";
 
                $ENV{ENVNAME} = "$ENV{ENVNAME}.nmbd";
 
@@ -797,6 +935,7 @@ sub check_or_start($$$$$) {
                } else {
                        $ENV{RESOLV_WRAPPER_HOSTS} = $env_vars->{RESOLV_WRAPPER_HOSTS};
                }
+               $ENV{UID_WRAPPER_ROOT} = "1";
 
                $ENV{ENVNAME} = "$ENV{ENVNAME}.winbindd";
 
@@ -860,6 +999,7 @@ sub check_or_start($$$$$) {
                } else {
                        $ENV{RESOLV_WRAPPER_HOSTS} = $env_vars->{RESOLV_WRAPPER_HOSTS};
                }
+               $ENV{UID_WRAPPER_ROOT} = "1";
 
                $ENV{ENVNAME} = "$ENV{ENVNAME}.smbd";
 
@@ -977,6 +1117,24 @@ sub provision($$$$$$$$)
        my $lease2_shrdir="$shrdir/SMB3_00";
        push(@dirs,$lease2_shrdir);
 
+       my $manglenames_shrdir="$shrdir/manglenames";
+       push(@dirs,$manglenames_shrdir);
+
+       my $widelinks_shrdir="$shrdir/widelinks";
+       push(@dirs,$widelinks_shrdir);
+
+       my $widelinks_linkdir="$shrdir/widelinks_foo";
+       push(@dirs,$widelinks_linkdir);
+
+       my $shadow_tstdir="$shrdir/shadow";
+       push(@dirs,$shadow_tstdir);
+       my $shadow_mntdir="$shadow_tstdir/mount";
+       push(@dirs,$shadow_mntdir);
+       my $shadow_basedir="$shadow_mntdir/base";
+       push(@dirs,$shadow_basedir);
+       my $shadow_shrdir="$shadow_basedir/share";
+       push(@dirs,$shadow_shrdir);
+
        # this gets autocreated by winbindd
        my $wbsockdir="$prefix_abs/winbindd";
        my $wbsockprivdir="$lockdir/winbindd_privileged";
@@ -1060,6 +1218,31 @@ sub provision($$$$$$$$)
         close(BADNAME_TARGET);
         chmod 0666, $badname_target;
 
+       ##
+       ## create mangleable directory names in $manglenames_shrdir
+       ##
+        my $manglename_target = "$manglenames_shrdir/foo:bar";
+       mkdir($manglename_target, 0777);
+
+       ##
+       ## create symlinks for widelinks tests.
+       ##
+       my $widelinks_target = "$widelinks_linkdir/target";
+       unless (open(WIDELINKS_TARGET, ">$widelinks_target")) {
+               warn("Unable to open $widelinks_target");
+               return undef;
+       }
+       close(WIDELINKS_TARGET);
+       chmod 0666, $widelinks_target;
+       ##
+       ## This link should get ACCESS_DENIED
+       ##
+       symlink "$widelinks_target", "$widelinks_shrdir/source";
+       ##
+       ## This link should be allowed
+       ##
+       symlink "$widelinks_shrdir", "$widelinks_shrdir/dot";
+
        my $conffile="$libdir/server.conf";
 
        my $nss_wrapper_pl = "$ENV{PERL} $self->{srcdir}/lib/nss_wrapper/nss_wrapper.pl";
@@ -1071,6 +1254,8 @@ sub provision($$$$$$$$)
 
        my $mod_printer_pl = "$ENV{PERL} $self->{srcdir}/source3/script/tests/printing/modprinter.pl";
 
+       my $fake_snap_pl = "$ENV{PERL} $self->{srcdir}/source3/script/tests/fake_snap.pl";
+
        my @eventlog_list = ("dns server", "application");
 
        ##
@@ -1078,10 +1263,12 @@ sub provision($$$$$$$$)
        ##
 
        my ($max_uid, $max_gid);
-       my ($uid_nobody, $uid_root, $uid_pdbtest, $uid_pdbtest2);
+       my ($uid_nobody, $uid_root, $uid_pdbtest, $uid_pdbtest2, $uid_userdup);
+       my ($uid_pdbtest_wkn);
        my ($gid_nobody, $gid_nogroup, $gid_root, $gid_domusers, $gid_domadmins);
+       my ($gid_userdup, $gid_everyone);
 
-       if ($unix_uid < 0xffff - 4) {
+       if ($unix_uid < 0xffff - 5) {
                $max_uid = 0xffff;
        } else {
                $max_uid = $unix_uid;
@@ -1091,8 +1278,10 @@ sub provision($$$$$$$$)
        $uid_nobody = $max_uid - 2;
        $uid_pdbtest = $max_uid - 3;
        $uid_pdbtest2 = $max_uid - 4;
+       $uid_userdup = $max_uid - 5;
+       $uid_pdbtest_wkn = $max_uid - 6;
 
-       if ($unix_gids[0] < 0xffff - 5) {
+       if ($unix_gids[0] < 0xffff - 7) {
                $max_gid = 0xffff;
        } else {
                $max_gid = $unix_gids[0];
@@ -1103,6 +1292,8 @@ sub provision($$$$$$$$)
        $gid_root = $max_gid - 3;
        $gid_domusers = $max_gid - 4;
        $gid_domadmins = $max_gid - 5;
+       $gid_userdup = $max_gid - 6;
+       $gid_everyone = $max_gid - 7;
 
        ##
        ## create conffile
@@ -1154,7 +1345,7 @@ sub provision($$$$$$$$)
        kernel change notify = no
        smb2 leases = yes
 
-       syslog = no
+       logging = file
        printing = bsd
        printcap name = /dev/null
 
@@ -1179,6 +1370,7 @@ sub provision($$$$$$$$)
        create mask = 755
        dos filemode = yes
        strict rename = yes
+       strict sync = yes
        vfs objects = acl_xattr fake_acls xattr_tdb streams_depot
 
        printing = vlp
@@ -1198,6 +1390,21 @@ sub provision($$$$$$$$)
         # sending messages works, and that the %m sub works.
         message command = mv %s $shrdir/message.%m
 
+       # fsrvp server requires registry shares
+       registry shares = yes
+
+       # Used by RPC SRVSVC tests
+       add share command = $bindir_abs/smbaddshare
+       change share command = $bindir_abs/smbchangeshare
+       delete share command = $bindir_abs/smbdeleteshare
+
+       # fruit:copyfile is a global option
+       fruit:copyfile = yes
+
+       #this does not mean that we use non-secure test env,
+       #it just means we ALLOW one to be configured.
+       allow insecure wide links = yes
+
        # Begin extra options
        $extra_options
        # End extra options
@@ -1234,9 +1441,15 @@ sub provision($$$$$$$$)
         force user = $unix_name
         guest ok = yes
 [forceuser_unixonly]
+       comment = force a user with unix user SID and group SID
        path = $shrdir
        force user = pdbtest
        guest ok = yes
+[forceuser_wkngroup]
+       comment = force a user with well-known group SID
+       path = $shrdir
+       force user = pdbtest_wkn
+       guest ok = yes
 [forcegroup]
        path = $shrdir
         force group = nogroup
@@ -1320,7 +1533,8 @@ sub provision($$$$$$$$)
 
 [vfs_fruit]
        path = $shrdir
-       vfs objects = catia fruit streams_xattr
+       vfs objects = catia fruit streams_xattr acl_xattr
+       ea support = yes
        fruit:ressource = file
        fruit:metadata = netatalk
        fruit:locking = netatalk
@@ -1330,9 +1544,92 @@ sub provision($$$$$$$$)
        path = $badnames_shrdir
        guest ok = yes
 
+[manglenames_share]
+       path = $manglenames_shrdir
+       guest ok = yes
+
 [dynamic_share]
        path = $shrdir/%R
        guest ok = yes
+
+[widelinks_share]
+       path = $widelinks_shrdir
+       wide links = no
+       guest ok = yes
+
+[fsrvp_share]
+       path = $shrdir
+       comment = fake shapshots using rsync
+       vfs objects = shell_snap shadow_copy2
+       shell_snap:check path command = $fake_snap_pl --check
+       shell_snap:create command = $fake_snap_pl --create
+       shell_snap:delete command = $fake_snap_pl --delete
+       # a relative path here fails, the snapshot dir is no longer found
+       shadow:snapdir = $shrdir/.snapshots
+
+[shadow1]
+       path = $shadow_shrdir
+       comment = previous versions snapshots under mount point
+       vfs objects = shadow_copy2
+       shadow:mountpoint = $shadow_mntdir
+
+[shadow2]
+       path = $shadow_shrdir
+       comment = previous versions snapshots outside mount point
+       vfs objects = shadow_copy2
+       shadow:mountpoint = $shadow_mntdir
+       shadow:snapdir = $shadow_tstdir/.snapshots
+
+[shadow3]
+       path = $shadow_shrdir
+       comment = previous versions with subvolume snapshots, snapshots under base dir
+       vfs objects = shadow_copy2
+       shadow:mountpoint = $shadow_mntdir
+       shadow:basedir = $shadow_basedir
+       shadow:snapdir = $shadow_basedir/.snapshots
+
+[shadow4]
+       path = $shadow_shrdir
+       comment = previous versions with subvolume snapshots, snapshots outside mount point
+       vfs objects = shadow_copy2
+       shadow:mountpoint = $shadow_mntdir
+       shadow:basedir = $shadow_basedir
+       shadow:snapdir = $shadow_tstdir/.snapshots
+
+[shadow5]
+       path = $shadow_shrdir
+       comment = previous versions at volume root snapshots under mount point
+       vfs objects = shadow_copy2
+       shadow:mountpoint = $shadow_shrdir
+
+[shadow6]
+       path = $shadow_shrdir
+       comment = previous versions at volume root snapshots outside mount point
+       vfs objects = shadow_copy2
+       shadow:mountpoint = $shadow_shrdir
+       shadow:snapdir = $shadow_tstdir/.snapshots
+
+[shadow7]
+       path = $shadow_shrdir
+       comment = previous versions snapshots everywhere
+       vfs objects = shadow_copy2
+       shadow:mountpoint = $shadow_mntdir
+       shadow:snapdirseverywhere = yes
+
+[shadow8]
+       path = $shadow_shrdir
+       comment = previous versions using snapsharepath
+       vfs objects = shadow_copy2
+       shadow:mountpoint = $shadow_mntdir
+       shadow:snapdir = $shadow_tstdir/.snapshots
+       shadow:snapsharepath = share
+
+[shadow_wl]
+       path = $shadow_shrdir
+       comment = previous versions with wide links allowed
+       vfs objects = shadow_copy2
+       shadow:mountpoint = $shadow_mntdir
+       wide links = yes
        ";
        close(CONF);
 
@@ -1348,6 +1645,8 @@ sub provision($$$$$$$$)
 $unix_name:x:$unix_uid:$unix_gids[0]:$unix_name gecos:$prefix_abs:/bin/false
 pdbtest:x:$uid_pdbtest:$gid_nogroup:pdbtest gecos:$prefix_abs:/bin/false
 pdbtest2:x:$uid_pdbtest2:$gid_nogroup:pdbtest gecos:$prefix_abs:/bin/false
+userdup:x:$uid_userdup:$gid_userdup:userdup gecos:$prefix_abs:/bin/false
+pdbtest_wkn:x:$uid_pdbtest_wkn:$gid_everyone:pdbtest_wkn gecos:$prefix_abs:/bin/false
 ";
        if ($unix_uid != 0) {
                print PASSWD "root:x:$uid_root:$gid_root:root gecos:$prefix_abs:/bin/false
@@ -1364,6 +1663,8 @@ nogroup:x:$gid_nogroup:nobody
 $unix_name-group:x:$unix_gids[0]:
 domusers:X:$gid_domusers:
 domadmins:X:$gid_domadmins:
+userdup:x:$gid_userdup:$unix_name
+everyone:x:$gid_everyone:
 ";
        if ($unix_gids[0] != 0) {
                print GROUP "root:x:$gid_root:
@@ -1468,6 +1769,13 @@ domadmins:X:$gid_domadmins:
        $ret{LOCAL_PATH} = "$shrdir";
         $ret{LOGDIR} = $logdir;
 
+       #
+       # Avoid hitting system krb5.conf -
+       # An env that needs Kerberos will reset this to the real
+       # value.
+       #
+       $ret{KRB5_CONFIG} = abs_path($prefix) . "/no_krb5.conf";
+
        return \%ret;
 }
 
@@ -1527,7 +1835,7 @@ sub wait_for_start($$$$$)
 
            my $count = 0;
            do {
-               $ret = system(Samba::bindir_path($self, "smbclient3") ." $envvars->{CONFIGURATION} -L $envvars->{SERVER} -U% -p 139");
+               $ret = system(Samba::bindir_path($self, "smbclient") ." $envvars->{CONFIGURATION} -L $envvars->{SERVER} -U% -p 139");
                if ($ret != 0) {
                    sleep(2);
                }
@@ -1549,6 +1857,10 @@ sub wait_for_start($$$$$)
        if ($ret != 0) {
            return 1;
        }
+       $ret = system(Samba::bindir_path($self, "net") ." $envvars->{CONFIGURATION} groupmap add sid=S-1-1-0 unixgroup=everyone type=builtin");
+       if ($ret != 0) {
+           return 1;
+       }
 
        if ($winbindd eq "yes") {
            # note: creating builtin groups requires winbindd for the