1 # $OpenBSD: test-exec.sh,v 1.27 2005/02/27 11:33:30 dtucker Exp $
2 # Placed in the Public Domain.
10 if [ ! -z "$TEST_SSH_PORT" ]; then
16 if [ -x /usr/ucb/whoami ]; then
17 USER=`/usr/ucb/whoami`
18 elif whoami >/dev/null 2>&1; then
25 if [ "x$OBJ" = "x" ]; then
26 echo '$OBJ not defined'
29 if [ ! -d $OBJ ]; then
30 echo "not a directory: $OBJ"
34 if [ "x$SCRIPT" = "x" ]; then
35 echo '$SCRIPT not defined'
38 if [ ! -f $SCRIPT ]; then
39 echo "not a file: $SCRIPT"
42 if $TEST_SHELL -n $SCRIPT; then
45 echo "syntax error in $SCRIPT"
50 SRC=`dirname ${SCRIPT}`
58 SSHKEYSCAN=ssh-keyscan
60 SFTPSERVER=/usr/libexec/openssh/sftp-server
63 if [ "x$TEST_SSH_SSH" != "x" ]; then
66 if [ "x$TEST_SSH_SSHD" != "x" ]; then
67 SSHD="${TEST_SSH_SSHD}"
69 if [ "x$TEST_SSH_SSHAGENT" != "x" ]; then
70 SSHAGENT="${TEST_SSH_SSHAGENT}"
72 if [ "x$TEST_SSH_SSHADD" != "x" ]; then
73 SSHADD="${TEST_SSH_SSHADD}"
75 if [ "x$TEST_SSH_SSHKEYGEN" != "x" ]; then
76 SSHKEYGEN="${TEST_SSH_SSHKEYGEN}"
78 if [ "x$TEST_SSH_SSHKEYSCAN" != "x" ]; then
79 SSHKEYSCAN="${TEST_SSH_SSHKEYSCAN}"
81 if [ "x$TEST_SSH_SFTP" != "x" ]; then
82 SFTP="${TEST_SSH_SFTP}"
84 if [ "x$TEST_SSH_SFTPSERVER" != "x" ]; then
85 SFTPSERVER="${TEST_SSH_SFTPSERVER}"
87 if [ "x$TEST_SSH_SCP" != "x" ]; then
91 # Path to sshd must be absolute for rexec
92 if [ ! -x /$SSHD ]; then
96 if [ "x$TEST_SSH_LOGFILE" = "x" ]; then
97 TEST_SSH_LOGFILE=/dev/null
100 # these should be used in tests
101 export SSH SSHD SSHAGENT SSHADD SSHKEYGEN SSHKEYSCAN SFTP SFTPSERVER SCP
102 #echo $SSH $SSHD $SSHAGENT $SSHADD $SSHKEYGEN $SSHKEYSCAN $SFTP $SFTPSERVER $SCP
107 if [ "x`echo -n`" = "x" ]; then
109 elif [ "x`echo '\c'`" = "x" ]; then
112 fatal "Don't know how to echo without newline."
122 if [ -x $i/$1 ]; then
133 if [ -f $PIDFILE ]; then
135 if [ "X$pid" = "X" ]; then
138 if [ $pid -lt 2 ]; then
139 echo bad pid for ssd: $pid
149 echo "trace: $@" >>$TEST_SSH_LOGFILE
150 if [ "X$TEST_SSH_TRACE" = "Xyes" ]; then
157 echo "verbose: $@" >>$TEST_SSH_LOGFILE
158 if [ "X$TEST_SSH_QUIET" != "Xyes" ]; then
166 echo "FAIL: $@" >>$TEST_SSH_LOGFILE
173 echo "FATAL: $@" >>$TEST_SSH_LOGFILE
185 # create server config
186 cat << EOF > $OBJ/sshd_config
189 ListenAddress 127.0.0.1
192 AuthorizedKeysFile $OBJ/authorized_keys_%u
194 AcceptEnv _XXX_TEST_*
196 Subsystem sftp $SFTPSERVER
199 if [ ! -z "$TEST_SSH_SSHD_CONFOPTS" ]; then
200 trace "adding sshd_config option $TEST_SSH_SSHD_CONFOPTS"
201 echo "$TEST_SSH_SSHD_CONFOPTS" >> $OBJ/sshd_config
204 # server config for proxy connects
205 cp $OBJ/sshd_config $OBJ/sshd_proxy
207 # allow group-writable directories in proxy-mode
208 echo 'StrictModes no' >> $OBJ/sshd_proxy
210 # create client config
211 cat << EOF > $OBJ/ssh_config
214 HostKeyAlias localhost-with-alias
217 GlobalKnownHostsFile $OBJ/known_hosts
218 UserKnownHostsFile $OBJ/known_hosts
219 RSAAuthentication yes
220 PubkeyAuthentication yes
221 ChallengeResponseAuthentication no
222 HostbasedAuthentication no
223 PasswordAuthentication no
225 StrictHostKeyChecking yes
228 if [ ! -z "$TEST_SSH_SSH_CONFOPTS" ]; then
229 trace "adding ssh_config option $TEST_SSH_SSHD_CONFOPTS"
230 echo "$TEST_SSH_SSH_CONFOPTS" >> $OBJ/ssh_config
233 rm -f $OBJ/known_hosts $OBJ/authorized_keys_$USER
235 trace "generate keys"
236 for t in rsa rsa1; do
239 ${SSHKEYGEN} -q -N '' -t $t -f $OBJ/$t ||\
240 fail "ssh-keygen for $t failed"
242 # known hosts file for client
244 echon 'localhost-with-alias,127.0.0.1,::1 '
246 ) >> $OBJ/known_hosts
248 # setup authorized keys
249 cat $OBJ/$t.pub >> $OBJ/authorized_keys_$USER
250 echo IdentityFile $OBJ/$t >> $OBJ/ssh_config
252 # use key as host key, too
253 $SUDO cp $OBJ/$t $OBJ/host.$t
254 echo HostKey $OBJ/host.$t >> $OBJ/sshd_config
256 # don't use SUDO for proxy connect
257 echo HostKey $OBJ/$t >> $OBJ/sshd_proxy
259 chmod 644 $OBJ/authorized_keys_$USER
261 # create a proxy version of the client config
264 echo proxycommand sh ${SRC}/sshd-log-wrapper.sh ${SUDO} ${SSHD} ${TEST_SSH_LOGFILE} -i -f $OBJ/sshd_proxy
268 ${SSHD} -t -f $OBJ/sshd_proxy || fatal "sshd_proxy broken"
273 $SUDO ${SSHD} -f $OBJ/sshd_config -t || fatal "sshd_config broken"
274 $SUDO ${SSHD} -f $OBJ/sshd_config -e >>$TEST_SSH_LOGFILE 2>&1
276 trace "wait for sshd"
278 while [ ! -f $PIDFILE -a $i -lt 10 ]; do
283 test -f $PIDFILE || fatal "no sshd running on port $PORT"
291 if [ $RESULT -eq 0 ]; then