1 # $OpenBSD: test-exec.sh,v 1.31 2007/12/21 04:13:53 djm Exp $
2 # Placed in the Public Domain.
10 case `uname -s 2>/dev/null` in
17 if [ ! -z "$TEST_SSH_PORT" ]; then
23 if [ -x /usr/ucb/whoami ]; then
24 USER=`/usr/ucb/whoami`
25 elif whoami >/dev/null 2>&1; then
27 elif logname >/dev/null 2>&1; then
34 if [ "x$OBJ" = "x" ]; then
35 echo '$OBJ not defined'
38 if [ ! -d $OBJ ]; then
39 echo "not a directory: $OBJ"
43 if [ "x$SCRIPT" = "x" ]; then
44 echo '$SCRIPT not defined'
47 if [ ! -f $SCRIPT ]; then
48 echo "not a file: $SCRIPT"
51 if $TEST_SHELL -n $SCRIPT; then
54 echo "syntax error in $SCRIPT"
59 SRC=`dirname ${SCRIPT}`
67 SSHKEYSCAN=ssh-keyscan
69 SFTPSERVER=/usr/libexec/openssh/sftp-server
73 PLINK=/usr/local/bin/plink
74 PUTTYGEN=/usr/local/bin/puttygen
76 if [ "x$TEST_SSH_SSH" != "x" ]; then
79 if [ "x$TEST_SSH_SSHD" != "x" ]; then
80 SSHD="${TEST_SSH_SSHD}"
82 if [ "x$TEST_SSH_SSHAGENT" != "x" ]; then
83 SSHAGENT="${TEST_SSH_SSHAGENT}"
85 if [ "x$TEST_SSH_SSHADD" != "x" ]; then
86 SSHADD="${TEST_SSH_SSHADD}"
88 if [ "x$TEST_SSH_SSHKEYGEN" != "x" ]; then
89 SSHKEYGEN="${TEST_SSH_SSHKEYGEN}"
91 if [ "x$TEST_SSH_SSHKEYSCAN" != "x" ]; then
92 SSHKEYSCAN="${TEST_SSH_SSHKEYSCAN}"
94 if [ "x$TEST_SSH_SFTP" != "x" ]; then
95 SFTP="${TEST_SSH_SFTP}"
97 if [ "x$TEST_SSH_SFTPSERVER" != "x" ]; then
98 SFTPSERVER="${TEST_SSH_SFTPSERVER}"
100 if [ "x$TEST_SSH_SCP" != "x" ]; then
101 SCP="${TEST_SSH_SCP}"
103 if [ "x$TEST_SSH_PLINK" != "x" ]; then
104 PLINK="${TEST_SSH_PLINK}"
106 if [ "x$TEST_SSH_PUTTYGEN" != "x" ]; then
107 PUTTYGEN="${TEST_SSH_PUTTYGEN}"
110 # Path to sshd must be absolute for rexec
113 *) SSHD=`which sshd` ;;
116 if [ "x$TEST_SSH_LOGFILE" = "x" ]; then
117 TEST_SSH_LOGFILE=/dev/null
120 # these should be used in tests
121 export SSH SSHD SSHAGENT SSHADD SSHKEYGEN SSHKEYSCAN SFTP SFTPSERVER SCP
122 #echo $SSH $SSHD $SSHAGENT $SSHADD $SSHKEYGEN $SSHKEYSCAN $SFTP $SFTPSERVER $SCP
127 if [ "x`echo -n`" = "x" ]; then
129 elif [ "x`echo '\c'`" = "x" ]; then
132 fatal "Don't know how to echo without newline."
142 if [ -x $i/$1 ]; then
153 if [ -f $PIDFILE ]; then
155 if [ "X$pid" = "X" ]; then
158 if [ $pid -lt 2 ]; then
159 echo bad pid for ssd: $pid
169 echo "trace: $@" >>$TEST_SSH_LOGFILE
170 if [ "X$TEST_SSH_TRACE" = "Xyes" ]; then
177 echo "verbose: $@" >>$TEST_SSH_LOGFILE
178 if [ "X$TEST_SSH_QUIET" != "Xyes" ]; then
186 echo "FAIL: $@" >>$TEST_SSH_LOGFILE
193 echo "FATAL: $@" >>$TEST_SSH_LOGFILE
205 # create server config
206 cat << EOF > $OBJ/sshd_config
210 ListenAddress 127.0.0.1
213 AuthorizedKeysFile $OBJ/authorized_keys_%u
215 AcceptEnv _XXX_TEST_*
217 Subsystem sftp $SFTPSERVER
220 if [ ! -z "$TEST_SSH_SSHD_CONFOPTS" ]; then
221 trace "adding sshd_config option $TEST_SSH_SSHD_CONFOPTS"
222 echo "$TEST_SSH_SSHD_CONFOPTS" >> $OBJ/sshd_config
225 # server config for proxy connects
226 cp $OBJ/sshd_config $OBJ/sshd_proxy
228 # allow group-writable directories in proxy-mode
229 echo 'StrictModes no' >> $OBJ/sshd_proxy
231 # create client config
232 cat << EOF > $OBJ/ssh_config
235 HostKeyAlias localhost-with-alias
238 GlobalKnownHostsFile $OBJ/known_hosts
239 UserKnownHostsFile $OBJ/known_hosts
240 RSAAuthentication yes
241 PubkeyAuthentication yes
242 ChallengeResponseAuthentication no
243 HostbasedAuthentication no
244 PasswordAuthentication no
246 StrictHostKeyChecking yes
249 if [ ! -z "$TEST_SSH_SSH_CONFOPTS" ]; then
250 trace "adding ssh_config option $TEST_SSH_SSHD_CONFOPTS"
251 echo "$TEST_SSH_SSH_CONFOPTS" >> $OBJ/ssh_config
254 rm -f $OBJ/known_hosts $OBJ/authorized_keys_$USER
256 trace "generate keys"
257 for t in rsa rsa1; do
260 ${SSHKEYGEN} -b 1024 -q -N '' -t $t -f $OBJ/$t ||\
261 fail "ssh-keygen for $t failed"
263 # known hosts file for client
265 echon 'localhost-with-alias,127.0.0.1,::1 '
267 ) >> $OBJ/known_hosts
269 # setup authorized keys
270 cat $OBJ/$t.pub >> $OBJ/authorized_keys_$USER
271 echo IdentityFile $OBJ/$t >> $OBJ/ssh_config
273 # use key as host key, too
274 $SUDO cp $OBJ/$t $OBJ/host.$t
275 echo HostKey $OBJ/host.$t >> $OBJ/sshd_config
277 # don't use SUDO for proxy connect
278 echo HostKey $OBJ/$t >> $OBJ/sshd_proxy
280 chmod 644 $OBJ/authorized_keys_$USER
282 # If PuTTY is present, prepare keys and configuration
283 REGRESS_INTEROP_PUTTY=no
284 if test -x $PUTTYGEN -a -x $PLINK ; then
285 mkdir -p ${OBJ}/.putty
287 # Add a PuTTY key to authorized_keys
288 rm -f ${OBJ}/putty.rsa2
289 puttygen -t rsa -o ${OBJ}/putty.rsa2 < /dev/null > /dev/null
290 puttygen -O public-openssh ${OBJ}/putty.rsa2 \
291 >> $OBJ/authorized_keys_$USER
293 # Convert rsa2 host key to PuTTY format
294 ${SRC}/ssh2putty.sh 127.0.0.1 $PORT $OBJ/rsa > \
295 ${OBJ}/.putty/sshhostkeys
296 ${SRC}/ssh2putty.sh 127.0.0.1 22 $OBJ/rsa >> \
297 ${OBJ}/.putty/sshhostkeys
299 # Setup proxied session
300 mkdir -p ${OBJ}/.putty/sessions
301 rm -f ${OBJ}/.putty/sessions/localhost_proxy
302 echo "Hostname=127.0.0.1" >> ${OBJ}/.putty/sessions/localhost_proxy
303 echo "PortNumber=$PORT" >> ${OBJ}/.putty/sessions/localhost_proxy
304 echo "ProxyMethod=5" >> ${OBJ}/.putty/sessions/localhost_proxy
305 echo "ProxyTelnetCommand=sh ${SRC}/sshd-log-wrapper.sh ${SSHD} ${TEST_SSH_LOGFILE} -i -f $OBJ/sshd_proxy" >> ${OBJ}/.putty/sessions/localhost_proxy
307 REGRESS_INTEROP_PUTTY=yes
310 # create a proxy version of the client config
313 echo proxycommand ${SUDO} sh ${SRC}/sshd-log-wrapper.sh ${SSHD} ${TEST_SSH_LOGFILE} -i -f $OBJ/sshd_proxy
317 ${SSHD} -t -f $OBJ/sshd_proxy || fatal "sshd_proxy broken"
322 $SUDO ${SSHD} -f $OBJ/sshd_config "$@" -t || fatal "sshd_config broken"
323 $SUDO ${SSHD} -f $OBJ/sshd_config -e "$@" >>$TEST_SSH_LOGFILE 2>&1
325 trace "wait for sshd"
327 while [ ! -f $PIDFILE -a $i -lt 10 ]; do
332 test -f $PIDFILE || fatal "no sshd running on port $PORT"
340 if [ $RESULT -eq 0 ]; then