HACK selftest s3member admember...
[metze/samba/wip.git] / selftest / target / Samba3.pm
1 #!/usr/bin/perl
2 # Bootstrap Samba and run a number of tests against it.
3 # Copyright (C) 2005-2007 Jelmer Vernooij <jelmer@samba.org>
4 # Published under the GNU GPL, v3 or later.
5
6 package Samba3;
7
8 use strict;
9 use Cwd qw(abs_path);
10 use FindBin qw($RealBin);
11 use POSIX;
12
13 sub binpath($$)
14 {
15         my ($self, $binary) = @_;
16
17         if (defined($self->{bindir})) {
18                 my $path = "$self->{bindir}/$binary";
19                 -f $path or die("File $path doesn't exist");
20                 return $path;
21         }
22
23         return $binary;
24 }
25
26 sub new($$) {
27         my ($classname, $bindir, $srcdir) = @_;
28         my $self = { bindir => $bindir,
29                      srcdir => $srcdir
30         };
31         bless $self;
32         return $self;
33 }
34
35 sub teardown_env($$)
36 {
37         my ($self, $envvars) = @_;
38
39         my $smbdpid = read_pid($envvars, "smbd");
40         my $nmbdpid = read_pid($envvars, "nmbd");
41         my $winbinddpid = read_pid($envvars, "winbindd");
42
43         $self->stop_sig_term($smbdpid);
44         $self->stop_sig_term($nmbdpid);
45         $self->stop_sig_term($winbinddpid);
46
47         sleep(2);
48
49         $self->stop_sig_kill($smbdpid);
50         $self->stop_sig_kill($nmbdpid);
51         $self->stop_sig_kill($winbinddpid);
52
53         return 0;
54 }
55
56 sub getlog_env_app($$$)
57 {
58         my ($self, $envvars, $name) = @_;
59
60         my $title = "$name LOG of: $envvars->{NETBIOSNAME}\n";
61         my $out = $title;
62
63         open(LOG, "<".$envvars->{$name."_TEST_LOG"});
64
65         seek(LOG, $envvars->{$name."_TEST_LOG_POS"}, SEEK_SET);
66         while (<LOG>) {
67                 $out .= $_;
68         }
69         $envvars->{$name."_TEST_LOG_POS"} = tell(LOG);
70         close(LOG);
71
72         return "" if $out eq $title;
73  
74         return $out;
75 }
76
77 sub getlog_env($$)
78 {
79         my ($self, $envvars) = @_;
80         my $ret = "";
81
82         $ret .= $self->getlog_env_app($envvars, "SMBD");
83         $ret .= $self->getlog_env_app($envvars, "NMBD");
84         $ret .= $self->getlog_env_app($envvars, "WINBINDD");
85
86         return $ret;
87 }
88
89 sub check_env($$)
90 {
91         my ($self, $envvars) = @_;
92
93         # TODO ...
94         return 1;
95 }
96
97 sub setup_env($$$)
98 {
99         my ($self, $envname, $path) = @_;
100         
101         if ($envname eq "dc") {
102                 return $self->setup_dc("$path/dc");
103         } elsif ($envname eq "secshare") {
104                 return $self->setup_secshare("$path/secshare");
105         } elsif ($envname eq "ktest") {
106                 return $self->setup_ktest("$path/ktest");
107         } elsif ($envname eq "secserver") {
108                 if (not defined($self->{vars}->{dc})) {
109                         $self->setup_dc("$path/dc");
110                 }
111                 return $self->setup_secserver("$path/secserver", $self->{vars}->{dc});
112         } elsif ($envname eq "member") {
113                 if (not defined($self->{vars}->{dc})) {
114                         $self->setup_dc("$path/dc");
115                 }
116                 return $self->setup_member("$path/member", $self->{vars}->{dc});
117         } else {
118                 return undef;
119         }
120 }
121
122 sub setup_dc($$)
123 {
124         my ($self, $path) = @_;
125
126         print "PROVISIONING DC...";
127
128         my $dc_options = "
129         domain master = yes
130         domain logons = yes
131         lanman auth = yes
132 ";
133
134         my $vars = $self->provision($path,
135                                     "LOCALDC2",
136                                     2,
137                                     "localdc2pass",
138                                     $dc_options);
139
140         $self->check_or_start($vars,
141                               ($ENV{SMBD_MAXTIME} or 2700),
142                                "yes", "yes", "yes");
143
144         $self->wait_for_start($vars);
145
146         $vars->{DC_SERVER} = $vars->{SERVER};
147         $vars->{DC_SERVER_IP} = $vars->{SERVER_IP};
148         $vars->{DC_NETBIOSNAME} = $vars->{NETBIOSNAME};
149         $vars->{DC_USERNAME} = $vars->{USERNAME};
150         $vars->{DC_PASSWORD} = $vars->{PASSWORD};
151
152         $self->{vars}->{dc} = $vars;
153
154         return $vars;
155 }
156
157 sub setup_member($$$)
158 {
159         my ($self, $prefix, $dcvars) = @_;
160
161         print "PROVISIONING MEMBER...";
162
163         my $member_options = "
164         security = domain
165         server signing = on
166 ";
167         my $ret = $self->provision($prefix,
168                                    "LOCALMEMBER3",
169                                    3,
170                                    "localmember3pass",
171                                    $member_options);
172
173         $ret or die("Unable to provision");
174
175         my $net = $self->binpath("net");
176         my $cmd = "";
177         $cmd .= "SOCKET_WRAPPER_DEFAULT_IFACE=\"$ret->{SOCKET_WRAPPER_DEFAULT_IFACE}\" ";
178         $cmd .= "$net join $ret->{CONFIGURATION} $dcvars->{DOMAIN} member";
179         $cmd .= " -U$dcvars->{USERNAME}\%$dcvars->{PASSWORD}";
180
181         system($cmd) == 0 or die("Join failed\n$cmd");
182
183         $self->check_or_start($ret,
184                               ($ENV{SMBD_MAXTIME} or 2700),
185                                "yes", "yes", "yes");
186
187         $self->wait_for_start($ret);
188
189         $ret->{DC_SERVER} = $dcvars->{SERVER};
190         $ret->{DC_SERVER_IP} = $dcvars->{SERVER_IP};
191         $ret->{DC_NETBIOSNAME} = $dcvars->{NETBIOSNAME};
192         $ret->{DC_USERNAME} = $dcvars->{USERNAME};
193         $ret->{DC_PASSWORD} = $dcvars->{PASSWORD};
194
195         return $ret;
196 }
197
198 sub setup_admember($$$$)
199 {
200         my ($self, $prefix, $dcvars, $iface) = @_;
201
202         print "PROVISIONING S3 AD MEMBER$iface...";
203
204         my $member_options = "
205         security = domain
206         server signing = on
207 ";
208         my $ret = $self->provision($prefix,
209                                    "LOCALADMEMBER$iface",
210                                    $iface,
211                                    "loCalMember${iface}Pass",
212                                    $member_options);
213
214         $ret or die("Unable to provision");
215
216         my $net = $self->binpath("net");
217         my $cmd = "";
218         $cmd .= "SOCKET_WRAPPER_DEFAULT_IFACE=\"$ret->{SOCKET_WRAPPER_DEFAULT_IFACE}\" ";
219         $cmd .= "selftest/gdb_run test $net join $ret->{CONFIGURATION} $dcvars->{DOMAIN} member";
220         $cmd .= " -U$dcvars->{USERNAME}\%$dcvars->{PASSWORD} -d 10 2>&1 | tee s3member-join.txt";
221
222         system($cmd) == 0 or die("Join failed\n$cmd");
223
224         $self->check_or_start($ret,
225                               ($ENV{SMBD_MAXTIME} or 2700),
226                                "yes", "yes", "yes");
227
228         $self->wait_for_start($ret);
229
230         $ret->{DC_SERVER} = $dcvars->{SERVER};
231         $ret->{DC_SERVER_IP} = $dcvars->{SERVER_IP};
232         $ret->{DC_NETBIOSNAME} = $dcvars->{NETBIOSNAME};
233         $ret->{DC_USERNAME} = $dcvars->{USERNAME};
234         $ret->{DC_PASSWORD} = $dcvars->{PASSWORD};
235
236         return $ret;
237 }
238
239 sub setup_secshare($$)
240 {
241         my ($self, $path) = @_;
242
243         print "PROVISIONING server with security=share...";
244
245         my $secshare_options = "
246         security = share
247         lanman auth = yes
248 ";
249
250         my $vars = $self->provision($path,
251                                     "LOCALSHARE4",
252                                     4,
253                                     "local4pass",
254                                     $secshare_options);
255
256         $self->check_or_start($vars,
257                               ($ENV{SMBD_MAXTIME} or 2700),
258                                "yes", "no", "yes");
259
260         $self->wait_for_start($vars);
261
262         $self->{vars}->{secshare} = $vars;
263
264         return $vars;
265 }
266
267 sub setup_secserver($$$)
268 {
269         my ($self, $prefix, $dcvars) = @_;
270
271         print "PROVISIONING server with security=server...";
272
273         my $secserver_options = "
274         security = server
275         password server = $dcvars->{SERVER_IP}
276 ";
277
278         my $ret = $self->provision($prefix,
279                                    "LOCALSERVER5",
280                                    5,
281                                    "localserver5pass",
282                                    $secserver_options);
283
284         $ret or die("Unable to provision");
285
286         $self->check_or_start($ret,
287                               ($ENV{SMBD_MAXTIME} or 2700),
288                                "yes", "no", "yes");
289
290         $self->wait_for_start($ret);
291
292         $ret->{DC_SERVER} = $dcvars->{SERVER};
293         $ret->{DC_SERVER_IP} = $dcvars->{SERVER_IP};
294         $ret->{DC_NETBIOSNAME} = $dcvars->{NETBIOSNAME};
295         $ret->{DC_USERNAME} = $dcvars->{USERNAME};
296         $ret->{DC_PASSWORD} = $dcvars->{PASSWORD};
297
298         return $ret;
299 }
300
301 sub setup_ktest($$$)
302 {
303         my ($self, $prefix, $dcvars) = @_;
304
305         print "PROVISIONING server with security=ads...";
306
307         my $ktest_options = "
308         workgroup = KTEST
309         realm = ktest.samba.example.com
310         security = ads
311         username map = $prefix/lib/username.map
312 ";
313
314         my $ret = $self->provision($prefix,
315                                    "LOCALKTEST6",
316                                    5,
317                                    "localktest6pass",
318                                    $ktest_options);
319
320         $ret or die("Unable to provision");
321
322         open(USERMAP, ">$prefix/lib/username.map") or die("Unable to open $prefix/lib/username.map");
323         print USERMAP "
324 $ret->{USERNAME} = KTEST\\Administrator
325 ";
326         close(USERMAP);
327
328 #This is the secrets.tdb created by 'net ads join' from Samba3 to a
329 #Samba4 DC with the same parameters as are being used here.  The
330 #domain SID is S-1-5-21-1071277805-689288055-3486227160
331
332         system("cp $self->{srcdir}/source3/selftest/ktest-secrets.tdb $prefix/private/secrets.tdb");
333         chmod 0600, "$prefix/private/secrets.tdb";
334
335 #This uses a pre-calculated krb5 credentials cache, obtained by running Samba4 with:
336 # "--option=kdc:service ticket lifetime=239232" "--option=kdc:user ticket lifetime=239232" "--option=kdc:renewal lifetime=239232"
337 #
338 #and having in krb5.conf:
339 # ticket_lifetime = 799718400
340 # renew_lifetime = 799718400
341 #
342 # The commands for the -2 keytab where were:
343 # kinit administrator@KTEST.SAMBA.EXAMPLE.COM
344 # kvno host/localktest6@KTEST.SAMBA.EXAMPLE.COM
345 # kvno cifs/localktest6@KTEST.SAMBA.EXAMPLE.COM
346 # kvno host/LOCALKTEST6@KTEST.SAMBA.EXAMPLE.COM
347 # kvno cifs/LOCALKTEST6@KTEST.SAMBA.EXAMPLE.COM
348 #
349 # and then for the -3 keytab, I did
350 #
351 # net changetrustpw; kdestroy and the same again.
352 #
353 # This creates a credential cache with a very long lifetime (2036 at
354 # at 2011-04), and shows that running 'net changetrustpw' does not
355 # break existing logins (for the secrets.tdb method at least).
356 #
357
358         $ret->{KRB5_CCACHE}="FILE:$prefix/krb5_ccache";
359
360         system("cp $self->{srcdir}/source3/selftest/ktest-krb5_ccache-2 $prefix/krb5_ccache-2");
361         chmod 0600, "$prefix/krb5_ccache-2";
362
363         system("cp $self->{srcdir}/source3/selftest/ktest-krb5_ccache-3 $prefix/krb5_ccache-3");
364         chmod 0600, "$prefix/krb5_ccache-3";
365
366         $self->check_or_start($ret,
367                               ($ENV{SMBD_MAXTIME} or 2700),
368                                "yes", "no", "yes");
369
370         $self->wait_for_start($ret);
371         return $ret;
372 }
373
374 sub stop_sig_term($$) {
375         my ($self, $pid) = @_;
376         kill("USR1", $pid) or kill("ALRM", $pid) or warn("Unable to kill $pid: $!");
377 }
378
379 sub stop_sig_kill($$) {
380         my ($self, $pid) = @_;
381         kill("ALRM", $pid) or warn("Unable to kill $pid: $!");
382 }
383
384 sub write_pid($$$)
385 {
386         my ($env_vars, $app, $pid) = @_;
387
388         open(PID, ">$env_vars->{PIDDIR}/timelimit.$app.pid");
389         print PID $pid;
390         close(PID);
391 }
392
393 sub read_pid($$)
394 {
395         my ($env_vars, $app) = @_;
396
397         open(PID, "<$env_vars->{PIDDIR}/timelimit.$app.pid");
398         my $pid = <PID>;
399         close(PID);
400         return $pid;
401 }
402
403 sub check_or_start($$$$$) {
404         my ($self, $env_vars, $maxtime, $nmbd, $winbindd, $smbd) = @_;
405
406         unlink($env_vars->{NMBD_TEST_LOG});
407         print "STARTING NMBD...";
408         my $pid = fork();
409         if ($pid == 0) {
410                 open STDOUT, ">$env_vars->{NMBD_TEST_LOG}";
411                 open STDERR, '>&STDOUT';
412
413                 SocketWrapper::set_default_iface($env_vars->{SOCKET_WRAPPER_DEFAULT_IFACE});
414
415                 $ENV{WINBINDD_SOCKET_DIR} = $env_vars->{WINBINDD_SOCKET_DIR};
416                 $ENV{NMBD_SOCKET_DIR} = $env_vars->{NMBD_SOCKET_DIR};
417
418                 $ENV{NSS_WRAPPER_PASSWD} = $env_vars->{NSS_WRAPPER_PASSWD};
419                 $ENV{NSS_WRAPPER_GROUP} = $env_vars->{NSS_WRAPPER_GROUP};
420                 $ENV{NSS_WRAPPER_WINBIND_SO_PATH} = $env_vars->{NSS_WRAPPER_WINBIND_SO_PATH};
421
422                 if ($nmbd ne "yes") {
423                         $SIG{USR1} = $SIG{ALRM} = $SIG{INT} = $SIG{QUIT} = $SIG{TERM} = sub {
424                                 my $signame = shift;
425                                 print("Skip nmbd received signal $signame");
426                                 exit 0;
427                         };
428                         sleep($maxtime);
429                         exit 0;
430                 }
431
432                 my @optargs = ("-d0");
433                 if (defined($ENV{NMBD_OPTIONS})) {
434                         @optargs = split(/ /, $ENV{NMBD_OPTIONS});
435                 }
436
437                 $ENV{MAKE_TEST_BINARY} = $self->binpath("nmbd");
438
439                 my @preargs = ($self->binpath("timelimit"), $maxtime);
440                 if(defined($ENV{NMBD_VALGRIND})) { 
441                         @preargs = split(/ /, $ENV{NMBD_VALGRIND});
442                 }
443
444                 exec(@preargs, $self->binpath("nmbd"), "-F", "--no-process-group", "-S", "-s", $env_vars->{SERVERCONFFILE}, @optargs) or die("Unable to start nmbd: $!");
445         }
446         write_pid($env_vars, "nmbd", $pid);
447         print "DONE\n";
448
449         unlink($env_vars->{WINBINDD_TEST_LOG});
450         print "STARTING WINBINDD...";
451         $pid = fork();
452         if ($pid == 0) {
453                 open STDOUT, ">$env_vars->{WINBINDD_TEST_LOG}";
454                 open STDERR, '>&STDOUT';
455
456                 SocketWrapper::set_default_iface($env_vars->{SOCKET_WRAPPER_DEFAULT_IFACE});
457
458                 $ENV{WINBINDD_SOCKET_DIR} = $env_vars->{WINBINDD_SOCKET_DIR};
459                 $ENV{NMBD_SOCKET_DIR} = $env_vars->{NMBD_SOCKET_DIR};
460
461                 $ENV{NSS_WRAPPER_PASSWD} = $env_vars->{NSS_WRAPPER_PASSWD};
462                 $ENV{NSS_WRAPPER_GROUP} = $env_vars->{NSS_WRAPPER_GROUP};
463                 $ENV{NSS_WRAPPER_WINBIND_SO_PATH} = $env_vars->{NSS_WRAPPER_WINBIND_SO_PATH};
464
465                 if ($winbindd ne "yes") {
466                         $SIG{USR1} = $SIG{ALRM} = $SIG{INT} = $SIG{QUIT} = $SIG{TERM} = sub {
467                                 my $signame = shift;
468                                 print("Skip winbindd received signal $signame");
469                                 exit 0;
470                         };
471                         sleep($maxtime);
472                         exit 0;
473                 }
474
475                 my @optargs = ("-d0");
476                 if (defined($ENV{WINBINDD_OPTIONS})) {
477                         @optargs = split(/ /, $ENV{WINBINDD_OPTIONS});
478                 }
479
480                 $ENV{MAKE_TEST_BINARY} = $self->binpath("winbindd");
481
482                 my @preargs = ($self->binpath("timelimit"), $maxtime);
483                 if(defined($ENV{WINBINDD_VALGRIND})) {
484                         @preargs = split(/ /, $ENV{WINBINDD_VALGRIND});
485                 }
486
487                 exec(@preargs, $self->binpath("winbindd"), "-F", "--no-process-group", "-s", $env_vars->{SERVERCONFFILE}, @optargs) or die("Unable to start winbindd: $!");
488         }
489         write_pid($env_vars, "winbindd", $pid);
490         print "DONE\n";
491
492         unlink($env_vars->{SMBD_TEST_LOG});
493         print "STARTING SMBD...";
494         $pid = fork();
495         if ($pid == 0) {
496                 open STDOUT, ">$env_vars->{SMBD_TEST_LOG}";
497                 open STDERR, '>&STDOUT';
498
499                 SocketWrapper::set_default_iface($env_vars->{SOCKET_WRAPPER_DEFAULT_IFACE});
500
501                 $ENV{WINBINDD_SOCKET_DIR} = $env_vars->{WINBINDD_SOCKET_DIR};
502                 $ENV{NMBD_SOCKET_DIR} = $env_vars->{NMBD_SOCKET_DIR};
503
504                 $ENV{NSS_WRAPPER_PASSWD} = $env_vars->{NSS_WRAPPER_PASSWD};
505                 $ENV{NSS_WRAPPER_GROUP} = $env_vars->{NSS_WRAPPER_GROUP};
506                 $ENV{NSS_WRAPPER_WINBIND_SO_PATH} = $env_vars->{NSS_WRAPPER_WINBIND_SO_PATH};
507
508                 if ($smbd ne "yes") {
509                         $SIG{USR1} = $SIG{ALRM} = $SIG{INT} = $SIG{QUIT} = $SIG{TERM} = sub {
510                                 my $signame = shift;
511                                 print("Skip smbd received signal $signame");
512                                 exit 0;
513                         };
514                         sleep($maxtime);
515                         exit 0;
516                 }
517
518                 $ENV{MAKE_TEST_BINARY} = $self->binpath("smbd");
519                 my @optargs = ("-d0");
520                 if (defined($ENV{SMBD_OPTIONS})) {
521                         @optargs = split(/ /, $ENV{SMBD_OPTIONS});
522                 }
523                 my @preargs = ($self->binpath("timelimit"), $maxtime);
524                 if(defined($ENV{SMBD_VALGRIND})) {
525                         @preargs = split(/ /,$ENV{SMBD_VALGRIND});
526                 }
527                 exec(@preargs, $self->binpath("smbd"), "-F", "--no-process-group", "-s", $env_vars->{SERVERCONFFILE}, @optargs) or die("Unable to start smbd: $!");
528         }
529         write_pid($env_vars, "smbd", $pid);
530         print "DONE\n";
531
532         return 0;
533 }
534
535 sub provision($$$$$$)
536 {
537         my ($self, $prefix, $server, $swiface, $password, $extra_options) = @_;
538
539         ##
540         ## setup the various environment variables we need
541         ##
542
543         my %ret = ();
544         my $server_ip = "127.0.0.$swiface";
545         my $domain = "SAMBA-TEST";
546
547         my $unix_name = ($ENV{USER} or $ENV{LOGNAME} or `PATH=/usr/ucb:$ENV{PATH} whoami`);
548         chomp $unix_name;
549         my $unix_uid = $>;
550         my $unix_gids_str = $);
551         my @unix_gids = split(" ", $unix_gids_str);
552
553         my $prefix_abs = abs_path($prefix);
554         my $bindir_abs = abs_path($self->{bindir});
555         my $vfs_modulesdir_abs = ($ENV{VFSLIBDIR} or $bindir_abs);
556
557         my @dirs = ();
558
559         my $shrdir="$prefix_abs/share";
560         push(@dirs,$shrdir);
561
562         my $libdir="$prefix_abs/lib";
563         push(@dirs,$libdir);
564
565         my $piddir="$prefix_abs/pid";
566         push(@dirs,$piddir);
567
568         my $privatedir="$prefix_abs/private";
569         push(@dirs,$privatedir);
570
571         my $lockdir="$prefix_abs/lockdir";
572         push(@dirs,$lockdir);
573
574         my $eventlogdir="$prefix_abs/lockdir/eventlog";
575         push(@dirs,$eventlogdir);
576
577         my $logdir="$prefix_abs/logs";
578         push(@dirs,$logdir);
579
580         my $driver32dir="$shrdir/W32X86";
581         push(@dirs,$driver32dir);
582
583         my $driver64dir="$shrdir/x64";
584         push(@dirs,$driver64dir);
585
586         my $driver40dir="$shrdir/WIN40";
587         push(@dirs,$driver40dir);
588
589         my $ro_shrdir="$shrdir/root-tmp";
590         push(@dirs,$ro_shrdir);
591
592         my $msdfs_shrdir="$shrdir/msdfsshare";
593         push(@dirs,$msdfs_shrdir);
594
595         my $msdfs_deeppath="$msdfs_shrdir/deeppath";
596         push(@dirs,$msdfs_deeppath);
597
598         # this gets autocreated by winbindd
599         my $wbsockdir="$prefix_abs/winbindd";
600         my $wbsockprivdir="$lockdir/winbindd_privileged";
601
602         my $nmbdsockdir="$prefix_abs/nmbd";
603         unlink($nmbdsockdir);
604
605         ## 
606         ## create the test directory layout
607         ##
608         die ("prefix_abs = ''") if $prefix_abs eq "";
609         die ("prefix_abs = '/'") if $prefix_abs eq "/";
610
611         mkdir($prefix_abs, 0777);
612         print "CREATE TEST ENVIRONMENT IN '$prefix'...";
613         system("rm -rf $prefix_abs/*");
614         mkdir($_, 0777) foreach(@dirs);
615
616         ##
617         ## create ro and msdfs share layout
618         ##
619
620         chmod 0755, $ro_shrdir;
621         my $unreadable_file = "$ro_shrdir/unreadable_file";
622         open(UNREADABLE_FILE, ">$unreadable_file") or die("Unable to open $unreadable_file");
623         close(UNREADABLE_FILE);
624         chmod 0600, $unreadable_file;
625
626         my $msdfs_target = "$ro_shrdir/msdfs-target";
627         open(MSDFS_TARGET, ">$msdfs_target") or die("Unable to open $msdfs_target");
628         close(MSDFS_TARGET);
629         chmod 0666, $msdfs_target;
630         symlink "msdfs:$server_ip\\ro-tmp", "$msdfs_shrdir/msdfs-src1";
631         symlink "msdfs:$server_ip\\ro-tmp", "$msdfs_shrdir/deeppath/msdfs-src2";
632
633         my $conffile="$libdir/server.conf";
634
635         my $nss_wrapper_pl = "$ENV{PERL} $self->{srcdir}/lib/nss_wrapper/nss_wrapper.pl";
636         my $nss_wrapper_passwd = "$privatedir/passwd";
637         my $nss_wrapper_group = "$privatedir/group";
638
639         my $mod_printer_pl = "$ENV{PERL} $self->{srcdir}/source3/script/tests/printing/modprinter.pl";
640
641         my @eventlog_list = ("dns server", "application");
642
643         ##
644         ## calculate uids and gids
645         ##
646
647         my ($max_uid, $max_gid);
648         my ($uid_nobody, $uid_root);
649         my ($gid_nobody, $gid_nogroup, $gid_root, $gid_domusers);
650
651         if ($unix_uid < 0xffff - 2) {
652                 $max_uid = 0xffff;
653         } else {
654                 $max_uid = $unix_uid;
655         }
656
657         $uid_root = $max_uid - 1;
658         $uid_nobody = $max_uid - 2;
659
660         if ($unix_gids[0] < 0xffff - 3) {
661                 $max_gid = 0xffff;
662         } else {
663                 $max_gid = $unix_gids[0];
664         }
665
666         $gid_nobody = $max_gid - 1;
667         $gid_nogroup = $max_gid - 2;
668         $gid_root = $max_gid - 3;
669         $gid_domusers = $max_gid - 4;
670
671         ##
672         ## create conffile
673         ##
674
675         open(CONF, ">$conffile") or die("Unable to open $conffile");
676         print CONF "
677 [global]
678         netbios name = $server
679         interfaces = $server_ip/8
680         bind interfaces only = yes
681         panic action = $self->{srcdir}/selftest/gdb_backtrace %d %\$(MAKE_TEST_BINARY)
682
683         workgroup = $domain
684
685         private dir = $privatedir
686         pid directory = $piddir
687         lock directory = $lockdir
688         log file = $logdir/log.\%m
689         log level = 0
690         debug pid = yes
691         max log size = 0
692
693         name resolve order = bcast
694
695         state directory = $lockdir
696         cache directory = $lockdir
697
698         passdb backend = tdbsam
699
700         time server = yes
701
702         add user script =               $nss_wrapper_pl --passwd_path $nss_wrapper_passwd --type passwd --action add --name %u --gid $gid_nogroup
703         add group script =              $nss_wrapper_pl --group_path  $nss_wrapper_group  --type group  --action add --name %g
704         add machine script =            $nss_wrapper_pl --passwd_path $nss_wrapper_passwd --type passwd --action add --name %u --gid $gid_nogroup
705         add user to group script =      $nss_wrapper_pl --passwd_path $nss_wrapper_passwd --type member --action add --member %u --name %g --group_path $nss_wrapper_group
706         delete user script =            $nss_wrapper_pl --passwd_path $nss_wrapper_passwd --type passwd --action delete --name %u
707         delete group script =           $nss_wrapper_pl --group_path  $nss_wrapper_group  --type group  --action delete --name %g
708         delete user from group script = $nss_wrapper_pl --passwd_path $nss_wrapper_passwd --type member --action delete --member %u --name %g --group_path $nss_wrapper_group
709
710         addprinter command =            $mod_printer_pl -a -s $conffile --
711         deleteprinter command =         $mod_printer_pl -d -s $conffile --
712
713         eventlog list = application \"dns server\"
714
715         kernel oplocks = no
716         kernel change notify = no
717
718         syslog = no
719         printing = bsd
720         printcap name = /dev/null
721
722         winbindd:socket dir = $wbsockdir
723         nmbd:socket dir = $nmbdsockdir
724         idmap config * : range = 100000-200000
725         winbind enum users = yes
726         winbind enum groups = yes
727
728 #       min receivefile size = 4000
729
730         max protocol = SMB2
731         read only = no
732         server signing = auto
733
734         smbd:sharedelay = 100000
735 #       smbd:writetimeupdatedelay = 500000
736         map hidden = no
737         map system = no
738         map readonly = no
739         store dos attributes = yes
740         create mask = 755
741         vfs objects = $vfs_modulesdir_abs/xattr_tdb.so $vfs_modulesdir_abs/streams_depot.so
742
743         printing = vlp
744         print command = $bindir_abs/vlp tdbfile=$lockdir/vlp.tdb print %p %s
745         lpq command = $bindir_abs/vlp tdbfile=$lockdir/vlp.tdb lpq %p
746         lp rm command = $bindir_abs/vlp tdbfile=$lockdir/vlp.tdb lprm %p %j
747         lp pause command = $bindir_abs/vlp tdbfile=$lockdir/vlp.tdb lppause %p %j
748         lp resume command = $bindir_abs/vlp tdbfile=$lockdir/vlp.tdb lpresume %p %j
749         queue pause command = $bindir_abs/vlp tdbfile=$lockdir/vlp.tdb queuepause %p
750         queue resume command = $bindir_abs/vlp tdbfile=$lockdir/vlp.tdb queueresume %p
751         lpq cache time = 0
752
753         ncalrpc dir = $lockdir/ncalrpc
754         rpc_server:epmapper = embedded
755
756         # Begin extra options
757         $extra_options
758         # End extra options
759
760         #Include user defined custom parameters if set
761 ";
762
763         if (defined($ENV{INCLUDE_CUSTOM_CONF})) {
764                 print CONF "\t$ENV{INCLUDE_CUSTOM_CONF}\n";
765         }
766
767         print CONF "
768 [tmp]
769         path = $shrdir
770 [tmpguest]
771         path = $shrdir
772         guest ok = yes
773 [guestonly]
774         path = $shrdir
775         guest only = yes
776         guest ok = yes
777 [forceuser]
778         path = $shrdir
779         force user = $unix_name
780         guest ok = yes
781 [forcegroup]
782         path = $shrdir
783         force group = nogroup
784         guest ok = yes
785 [ro-tmp]
786         path = $ro_shrdir
787         guest ok = yes
788 [msdfs-share]
789         path = $msdfs_shrdir
790         msdfs root = yes
791         guest ok = yes
792 [hideunread]
793         copy = tmp
794         hide unreadable = yes
795 [tmpcase]
796         copy = tmp
797         case sensitive = yes
798 [hideunwrite]
799         copy = tmp
800         hide unwriteable files = yes
801 [print1]
802         copy = tmp
803         printable = yes
804
805 [print2]
806         copy = print1
807 [print3]
808         copy = print1
809 [lp]
810         copy = print1
811 [print\$]
812         copy = tmp
813         ";
814         close(CONF);
815
816         ##
817         ## create a test account
818         ##
819
820         open(PASSWD, ">$nss_wrapper_passwd") or die("Unable to open $nss_wrapper_passwd");
821         print PASSWD "nobody:x:$uid_nobody:$gid_nobody:nobody gecos:$prefix_abs:/bin/false
822 $unix_name:x:$unix_uid:$unix_gids[0]:$unix_name gecos:$prefix_abs:/bin/false
823 ";
824         if ($unix_uid != 0) {
825                 print PASSWD "root:x:$uid_root:$gid_root:root gecos:$prefix_abs:/bin/false";
826         }
827         close(PASSWD);
828
829         open(GROUP, ">$nss_wrapper_group") or die("Unable to open $nss_wrapper_group");
830         print GROUP "nobody:x:$gid_nobody:
831 nogroup:x:$gid_nogroup:nobody
832 $unix_name-group:x:$unix_gids[0]:
833 domusers:X:$gid_domusers:
834 ";
835         if ($unix_gids[0] != 0) {
836                 print GROUP "root:x:$gid_root:";
837         }
838
839         close(GROUP);
840
841         foreach my $evlog (@eventlog_list) {
842                 my $evlogtdb = "$eventlogdir/$evlog.tdb";
843                 open(EVENTLOG, ">$evlogtdb") or die("Unable to open $evlogtdb");
844                 close(EVENTLOG);
845         }
846
847         $ENV{NSS_WRAPPER_PASSWD} = $nss_wrapper_passwd;
848         $ENV{NSS_WRAPPER_GROUP} = $nss_wrapper_group;
849
850         open(PWD, "|".$self->binpath("smbpasswd")." -c $conffile -L -s -a $unix_name >/dev/null");
851         print PWD "$password\n$password\n";
852         close(PWD) or die("Unable to set password for test account");
853
854         print "DONE\n";
855
856         open(HOSTS, ">>$ENV{SELFTEST_PREFIX}/dns_host_file") or die("Unable to open $ENV{SELFTEST_PREFIX}/dns_host_file");
857         print HOSTS "A $server. $server_ip
858 ";
859         close(HOSTS);
860
861         $ret{SERVER_IP} = $server_ip;
862         $ret{NMBD_TEST_LOG} = "$prefix/nmbd_test.log";
863         $ret{NMBD_TEST_LOG_POS} = 0;
864         $ret{WINBINDD_TEST_LOG} = "$prefix/winbindd_test.log";
865         $ret{WINBINDD_TEST_LOG_POS} = 0;
866         $ret{SMBD_TEST_LOG} = "$prefix/smbd_test.log";
867         $ret{SMBD_TEST_LOG_POS} = 0;
868         $ret{SERVERCONFFILE} = $conffile;
869         $ret{CONFIGURATION} ="-s $conffile";
870         $ret{SERVER} = $server;
871         $ret{USERNAME} = $unix_name;
872         $ret{USERID} = $unix_uid;
873         $ret{DOMAIN} = $domain;
874         $ret{NETBIOSNAME} = $server;
875         $ret{PASSWORD} = $password;
876         $ret{PIDDIR} = $piddir;
877         $ret{WINBINDD_SOCKET_DIR} = $wbsockdir;
878         $ret{WINBINDD_PRIV_PIPE_DIR} = $wbsockprivdir;
879         $ret{NMBD_SOCKET_DIR} = $nmbdsockdir;
880         $ret{SOCKET_WRAPPER_DEFAULT_IFACE} = $swiface;
881         $ret{NSS_WRAPPER_PASSWD} = $nss_wrapper_passwd;
882         $ret{NSS_WRAPPER_GROUP} = $nss_wrapper_group;
883         $ret{NSS_WRAPPER_WINBIND_SO_PATH} = $ENV{NSS_WRAPPER_WINBIND_SO_PATH};
884         $ret{LOCAL_PATH} = "$shrdir";
885
886         return \%ret;
887 }
888
889 sub wait_for_start($$)
890 {
891         my ($self, $envvars) = @_;
892
893         # give time for nbt server to register its names
894         print "delaying for nbt name registration\n";
895         sleep(10);
896         # This will return quickly when things are up, but be slow if we need to wait for (eg) SSL init 
897         system($self->binpath("nmblookup") ." $envvars->{CONFIGURATION} -U $envvars->{SERVER_IP} __SAMBA__");
898         system($self->binpath("nmblookup") ." $envvars->{CONFIGURATION} __SAMBA__");
899         system($self->binpath("nmblookup") ." $envvars->{CONFIGURATION} -U 127.255.255.255 __SAMBA__");
900         system($self->binpath("nmblookup") ." $envvars->{CONFIGURATION} -U $envvars->{SERVER_IP} $envvars->{SERVER}");
901         system($self->binpath("nmblookup") ." $envvars->{CONFIGURATION} $envvars->{SERVER}");
902
903         # make sure smbd is also up set
904         print "wait for smbd\n";
905
906         my $count = 0;
907         my $ret;
908         do {
909             $ret = system($self->binpath("smbclient") ." $envvars->{CONFIGURATION} -L $envvars->{SERVER} -U% -p 139");
910             if ($ret != 0) {
911                 sleep(2);
912             }
913             $count++
914         } while ($ret != 0 && $count < 10);
915         if ($count == 10) {
916             print "SMBD failed to start up in a reasonable time (20sec)\n";
917             exit 1;
918         }
919         # Ensure we have domain users mapped.
920         system($self->binpath("net") ." $envvars->{CONFIGURATION} groupmap add rid=513 unixgroup=domusers type=domain");
921
922         print $self->getlog_env($envvars);
923 }
924
925 1;