Greg Kerr | 3e750f4 | 2016-06-29 15:20:21 -0700 | [diff] [blame] | 1 | // Copyright 2016 The Chromium OS Authors. All rights reserved. |
| 2 | // Use of this source code is governed by a BSD-style license that can be |
| 3 | // found in the LICENSE file. |
| 4 | |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 5 | #include "imageloader_impl.h" |
| 6 | |
Greg Kerr | 6a5ee86 | 2016-10-19 11:32:43 -0700 | [diff] [blame] | 7 | #include <stdint.h> |
Greg Kerr | 3e750f4 | 2016-06-29 15:20:21 -0700 | [diff] [blame] | 8 | |
Greg Kerr | 3e750f4 | 2016-06-29 15:20:21 -0700 | [diff] [blame] | 9 | #include <list> |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 10 | #include <string> |
Greg Kerr | 3e750f4 | 2016-06-29 15:20:21 -0700 | [diff] [blame] | 11 | #include <vector> |
| 12 | |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 13 | #include "component.h" |
Greg Kerr | 9944e24 | 2017-01-26 15:09:31 -0800 | [diff] [blame] | 14 | #include "mock_helper_process.h" |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 15 | #include "test_utilities.h" |
Greg Kerr | 2f76fde | 2016-08-29 16:39:45 -0700 | [diff] [blame] | 16 | #include "verity_mounter.h" |
Greg Kerr | 3e750f4 | 2016-06-29 15:20:21 -0700 | [diff] [blame] | 17 | |
Greg Kerr | 3e750f4 | 2016-06-29 15:20:21 -0700 | [diff] [blame] | 18 | #include <base/files/file_path.h> |
| 19 | #include <base/files/file_util.h> |
| 20 | #include <base/files/scoped_temp_dir.h> |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 21 | #include <base/memory/ptr_util.h> |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 22 | #include <gmock/gmock.h> |
| 23 | #include <gtest/gtest.h> |
Greg Kerr | 3e750f4 | 2016-06-29 15:20:21 -0700 | [diff] [blame] | 24 | |
| 25 | namespace imageloader { |
| 26 | |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 27 | using testing::_; |
| 28 | |
Greg Kerr | 3e750f4 | 2016-06-29 15:20:21 -0700 | [diff] [blame] | 29 | class ImageLoaderTest : public testing::Test { |
| 30 | public: |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 31 | ImageLoaderTest() { |
| 32 | CHECK(scoped_temp_dir_.CreateUniqueTempDir()); |
| 33 | temp_dir_ = scoped_temp_dir_.path(); |
| 34 | CHECK(base::SetPosixFilePermissions(temp_dir_, kComponentDirPerms)); |
| 35 | } |
| 36 | |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 37 | ImageLoaderConfig GetConfig(const char* path) { |
Eric Caruso | 0b79bc8 | 2017-03-21 13:44:34 -0700 | [diff] [blame^] | 38 | Keys keys; |
| 39 | keys.push_back(std::vector<uint8_t>(std::begin(kDevPublicKey), |
| 40 | std::end(kDevPublicKey))); |
| 41 | keys.push_back(std::vector<uint8_t>(std::begin(kOciDevPublicKey), |
| 42 | std::end(kOciDevPublicKey))); |
| 43 | ImageLoaderConfig config(keys, path, "/foo"); |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 44 | return config; |
| 45 | } |
| 46 | |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 47 | base::ScopedTempDir scoped_temp_dir_; |
| 48 | base::FilePath temp_dir_; |
Greg Kerr | 3e750f4 | 2016-06-29 15:20:21 -0700 | [diff] [blame] | 49 | }; |
| 50 | |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 51 | // Test the RegisterComponent public interface. |
| 52 | TEST_F(ImageLoaderTest, RegisterComponentAndGetVersion) { |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 53 | ImageLoaderImpl loader(GetConfig(temp_dir_.value().c_str())); |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 54 | ASSERT_TRUE(loader.RegisterComponent(kTestComponentName, kTestDataVersion, |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 55 | GetTestComponentPath().value())); |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 56 | |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 57 | base::FilePath comp_dir = temp_dir_.Append(kTestComponentName); |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 58 | ASSERT_TRUE(base::DirectoryExists(comp_dir)); |
| 59 | |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 60 | base::FilePath hint_file = comp_dir.Append("latest-version"); |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 61 | ASSERT_TRUE(base::PathExists(hint_file)); |
| 62 | |
| 63 | std::string hint_file_contents; |
| 64 | ASSERT_TRUE( |
| 65 | base::ReadFileToStringWithMaxSize(hint_file, &hint_file_contents, 4096)); |
| 66 | EXPECT_EQ(kTestDataVersion, hint_file_contents); |
| 67 | |
| 68 | base::FilePath version_dir = comp_dir.Append(kTestDataVersion); |
| 69 | ASSERT_TRUE(base::DirectoryExists(version_dir)); |
| 70 | |
Greg Kerr | f50e24a | 2017-01-06 17:12:32 -0800 | [diff] [blame] | 71 | // Make sure it actually checks the reported version against the real version. |
| 72 | EXPECT_FALSE(loader.RegisterComponent(kTestComponentName, kTestUpdatedVersion, |
| 73 | GetTestComponentPath().value())); |
| 74 | |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 75 | // Now copy a new version into place. |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 76 | EXPECT_TRUE( |
| 77 | loader.RegisterComponent(kTestComponentName, kTestUpdatedVersion, |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 78 | GetTestComponentPath(kTestUpdatedVersion).value())); |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 79 | |
| 80 | std::string hint_file_contents2; |
| 81 | ASSERT_TRUE( |
| 82 | base::ReadFileToStringWithMaxSize(hint_file, &hint_file_contents2, 4096)); |
| 83 | EXPECT_EQ(kTestUpdatedVersion, hint_file_contents2); |
| 84 | |
| 85 | base::FilePath version_dir2 = comp_dir.Append(kTestUpdatedVersion); |
| 86 | ASSERT_TRUE(base::DirectoryExists(version_dir2)); |
| 87 | |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 88 | EXPECT_EQ(kTestUpdatedVersion, |
| 89 | loader.GetComponentVersion(kTestComponentName)); |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 90 | |
| 91 | // Reject rollback to an older version. |
| 92 | EXPECT_FALSE(loader.RegisterComponent(kTestComponentName, kTestDataVersion, |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 93 | GetTestComponentPath().value())); |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 94 | |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 95 | EXPECT_EQ(kTestUpdatedVersion, |
| 96 | loader.GetComponentVersion(kTestComponentName)); |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 97 | } |
| 98 | |
Greg Kerr | 1c7403c | 2016-11-11 11:57:44 -0800 | [diff] [blame] | 99 | // Pretend ImageLoader crashed, by creating an incomplete installation, and then |
| 100 | // attempt registration with ImageLoader. |
| 101 | TEST_F(ImageLoaderTest, RegisterComponentAfterCrash) { |
Greg Kerr | 1c7403c | 2016-11-11 11:57:44 -0800 | [diff] [blame] | 102 | // Now create the junk there. |
| 103 | const std::string junk_contents ="Bad file contents"; |
| 104 | const base::FilePath junk_path = |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 105 | temp_dir_.Append(kTestComponentName).Append(kTestDataVersion); |
Greg Kerr | 1c7403c | 2016-11-11 11:57:44 -0800 | [diff] [blame] | 106 | ASSERT_TRUE(base::CreateDirectory(junk_path)); |
| 107 | ASSERT_EQ(static_cast<int>(junk_contents.size()), |
| 108 | base::WriteFile(junk_path.Append("junkfile"), junk_contents.data(), |
| 109 | junk_contents.size())); |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 110 | ImageLoaderImpl loader(GetConfig(temp_dir_.value().c_str())); |
Greg Kerr | 1c7403c | 2016-11-11 11:57:44 -0800 | [diff] [blame] | 111 | ASSERT_TRUE(loader.RegisterComponent(kTestComponentName, kTestDataVersion, |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 112 | GetTestComponentPath().value())); |
Greg Kerr | 4bd7813 | 2016-07-19 11:51:16 -0700 | [diff] [blame] | 113 | } |
| 114 | |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 115 | TEST_F(ImageLoaderTest, MountValidImage) { |
Eric Caruso | 0b79bc8 | 2017-03-21 13:44:34 -0700 | [diff] [blame^] | 116 | Keys keys; |
| 117 | keys.push_back(std::vector<uint8_t>(std::begin(kDevPublicKey), |
| 118 | std::end(kDevPublicKey))); |
| 119 | |
Greg Kerr | 9944e24 | 2017-01-26 15:09:31 -0800 | [diff] [blame] | 120 | auto helper_mock = base::MakeUnique<MockHelperProcess>(); |
| 121 | EXPECT_CALL(*helper_mock, SendMountCommand(_, _, _)).Times(2); |
| 122 | ON_CALL(*helper_mock, SendMountCommand(_, _, _)) |
| 123 | .WillByDefault(testing::Return(true)); |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 124 | |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 125 | base::ScopedTempDir scoped_mount_dir; |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 126 | ASSERT_TRUE(scoped_mount_dir.CreateUniqueTempDir()); |
| 127 | |
Eric Caruso | 0b79bc8 | 2017-03-21 13:44:34 -0700 | [diff] [blame^] | 128 | ImageLoaderConfig config(keys, temp_dir_.value().c_str(), |
Greg Kerr | 9944e24 | 2017-01-26 15:09:31 -0800 | [diff] [blame] | 129 | scoped_mount_dir.path().value().c_str()); |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 130 | ImageLoaderImpl loader(std::move(config)); |
| 131 | |
| 132 | // We previously tested RegisterComponent, so assume this works if it reports |
| 133 | // true. |
| 134 | ASSERT_TRUE(loader.RegisterComponent(kTestComponentName, kTestDataVersion, |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 135 | GetTestComponentPath().value())); |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 136 | |
| 137 | const std::string expected_path = |
| 138 | scoped_mount_dir.path().value() + "/PepperFlashPlayer/22.0.0.158"; |
Greg Kerr | 9944e24 | 2017-01-26 15:09:31 -0800 | [diff] [blame] | 139 | EXPECT_EQ(expected_path, |
| 140 | loader.LoadComponent(kTestComponentName, helper_mock.get())); |
Greg Kerr | c5b9169 | 2016-09-14 12:09:22 -0700 | [diff] [blame] | 141 | |
| 142 | // Let's also test mounting the component at a fixed point. |
| 143 | const std::string expected_path2 = |
| 144 | scoped_mount_dir.path().value() + "/FixedMountPoint"; |
Greg Kerr | 9944e24 | 2017-01-26 15:09:31 -0800 | [diff] [blame] | 145 | EXPECT_TRUE(loader.LoadComponent(kTestComponentName, expected_path2, |
| 146 | helper_mock.get())); |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 147 | } |
| 148 | |
| 149 | TEST_F(ImageLoaderTest, MountInvalidImage) { |
Eric Caruso | 0b79bc8 | 2017-03-21 13:44:34 -0700 | [diff] [blame^] | 150 | Keys keys; |
| 151 | keys.push_back(std::vector<uint8_t>(std::begin(kDevPublicKey), |
| 152 | std::end(kDevPublicKey))); |
| 153 | |
Greg Kerr | 9944e24 | 2017-01-26 15:09:31 -0800 | [diff] [blame] | 154 | auto helper_mock = base::MakeUnique<MockHelperProcess>(); |
| 155 | EXPECT_CALL(*helper_mock, SendMountCommand(_, _, _)).Times(0); |
| 156 | ON_CALL(*helper_mock, SendMountCommand(_, _, _)) |
| 157 | .WillByDefault(testing::Return(true)); |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 158 | |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 159 | base::ScopedTempDir scoped_mount_dir; |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 160 | ASSERT_TRUE(scoped_mount_dir.CreateUniqueTempDir()); |
| 161 | |
Eric Caruso | 0b79bc8 | 2017-03-21 13:44:34 -0700 | [diff] [blame^] | 162 | ImageLoaderConfig config(keys, temp_dir_.value().c_str(), |
Greg Kerr | 9944e24 | 2017-01-26 15:09:31 -0800 | [diff] [blame] | 163 | scoped_mount_dir.path().value().c_str()); |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 164 | ImageLoaderImpl loader(std::move(config)); |
| 165 | |
| 166 | // We previously tested RegisterComponent, so assume this works if it reports |
| 167 | // true. |
| 168 | ASSERT_TRUE(loader.RegisterComponent(kTestComponentName, kTestDataVersion, |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 169 | GetTestComponentPath().value())); |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 170 | |
Greg Kerr | 019d59c | 2016-11-17 14:28:49 -0800 | [diff] [blame] | 171 | base::FilePath table = temp_dir_.Append(kTestComponentName) |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 172 | .Append(kTestDataVersion) |
Greg Kerr | 30cd5fb | 2016-09-29 12:37:02 -0700 | [diff] [blame] | 173 | .Append("table"); |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 174 | std::string contents = "corrupt"; |
| 175 | ASSERT_EQ(static_cast<int>(contents.size()), |
Greg Kerr | 30cd5fb | 2016-09-29 12:37:02 -0700 | [diff] [blame] | 176 | base::WriteFile(table, contents.data(), contents.size())); |
Greg Kerr | 9944e24 | 2017-01-26 15:09:31 -0800 | [diff] [blame] | 177 | ASSERT_EQ("", loader.LoadComponent(kTestComponentName, helper_mock.get())); |
Greg Kerr | 89be05f | 2016-07-27 10:40:32 -0700 | [diff] [blame] | 178 | } |
| 179 | |
Greg Kerr | 2f76fde | 2016-08-29 16:39:45 -0700 | [diff] [blame] | 180 | TEST_F(ImageLoaderTest, SetupTable) { |
| 181 | std::string base_table = "0 40 verity payload=ROOT_DEV hashtree=HASH_DEV " |
| 182 | "hashstart=40 alg=sha256 root_hexdigest=" |
| 183 | "34663b9920632778d38a0943a5472cae196bd4bf1d7dfa191506e7a8e7ec84d2 " |
| 184 | "salt=fcfc9b5a329e44be73a323188ae75ca644122d920161f672f6935623831d07e2"; |
| 185 | |
| 186 | // Make sure excess newlines are rejected. |
| 187 | std::string bad_table = base_table + "\n\n"; |
| 188 | EXPECT_FALSE(VerityMounter::SetupTable(&bad_table, "/dev/loop6")); |
| 189 | |
| 190 | // Make sure it does the right replacements on a simple base table. |
| 191 | std::string good_table = base_table; |
| 192 | EXPECT_TRUE(VerityMounter::SetupTable(&good_table, "/dev/loop6")); |
| 193 | |
| 194 | std::string known_good_table = |
| 195 | "0 40 verity payload=/dev/loop6 hashtree=/dev/loop6 " |
| 196 | "hashstart=40 alg=sha256 root_hexdigest=" |
| 197 | "34663b9920632778d38a0943a5472cae196bd4bf1d7dfa191506e7a8e7ec84d2 " |
| 198 | "salt=fcfc9b5a329e44be73a323188ae75ca644122d920161f672f6935623831d07e2 " |
| 199 | "error_behavior=eio"; |
| 200 | EXPECT_EQ(known_good_table, good_table); |
| 201 | |
| 202 | // Make sure the newline is stripped. |
| 203 | std::string good_table_newline = base_table + "\n"; |
| 204 | EXPECT_TRUE(VerityMounter::SetupTable(&good_table_newline, "/dev/loop6")); |
| 205 | EXPECT_EQ(known_good_table, good_table_newline); |
| 206 | |
| 207 | // Make sure error_behavior isn't appended twice. |
| 208 | std::string good_table_error = base_table + " error_behavior=eio\n"; |
| 209 | EXPECT_TRUE(VerityMounter::SetupTable(&good_table_error, "/dev/loop6")); |
| 210 | EXPECT_EQ(known_good_table, good_table_error); |
| 211 | } |
| 212 | |
Eric Caruso | 0b79bc8 | 2017-03-21 13:44:34 -0700 | [diff] [blame^] | 213 | TEST_F(ImageLoaderTest, SecondKey) { |
| 214 | ImageLoaderImpl loader(GetConfig(temp_dir_.value().c_str())); |
| 215 | ASSERT_TRUE(loader.RegisterComponent(kTestOciComponentName, |
| 216 | kTestOciComponentVersion, |
| 217 | GetTestOciComponentPath().value())); |
| 218 | |
| 219 | base::FilePath comp_dir = temp_dir_.Append(kTestOciComponentName); |
| 220 | ASSERT_TRUE(base::DirectoryExists(comp_dir)); |
| 221 | |
| 222 | base::FilePath version_dir = comp_dir.Append(kTestOciComponentVersion); |
| 223 | ASSERT_TRUE(base::DirectoryExists(version_dir)); |
| 224 | } |
| 225 | |
Greg Kerr | a6c0c52 | 2016-07-25 11:15:31 -0700 | [diff] [blame] | 226 | } // namespace imageloader |