2
Unix SMB/CIFS implementation.
3
test suite for various RAP operations
4
Copyright (C) Volker Lendecke 2004
5
Copyright (C) Tim Potter 2005
6
Copyright (C) Jelmer Vernooij 2007
8
This program is free software; you can redistribute it and/or modify
9
it under the terms of the GNU General Public License as published by
10
the Free Software Foundation; either version 3 of the License, or
11
(at your option) any later version.
13
This program is distributed in the hope that it will be useful,
14
but WITHOUT ANY WARRANTY; without even the implied warranty of
15
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
16
GNU General Public License for more details.
18
You should have received a copy of the GNU General Public License
19
along with this program. If not, see <http://www.gnu.org/licenses/>.
23
#include "libcli/libcli.h"
24
#include "torture/smbtorture.h"
25
#include "torture/util.h"
26
#include "libcli/rap/rap.h"
27
#include "libcli/raw/libcliraw.h"
28
#include "libcli/libcli.h"
29
#include "librpc/ndr/libndr.h"
30
#include "param/param.h"
32
#define RAP_GOTO(call) do { \
35
if (!NT_STATUS_IS_OK(_status)) { \
41
#define NDR_GOTO(call) do { \
42
enum ndr_err_code _ndr_err; \
44
if (!NDR_ERR_CODE_IS_SUCCESS(_ndr_err)) { \
45
result = ndr_map_error2ntstatus(_ndr_err); \
50
#define NDR_RETURN(call) do { \
51
enum ndr_err_code _ndr_err; \
53
if (!NDR_ERR_CODE_IS_SUCCESS(_ndr_err)) { \
54
return ndr_map_error2ntstatus(_ndr_err); \
66
uint16_t rcv_paramlen, rcv_datalen;
68
struct ndr_push *ndr_push_param;
69
struct ndr_push *ndr_push_data;
70
struct ndr_pull *ndr_pull_param;
71
struct ndr_pull *ndr_pull_data;
74
#define RAPNDR_FLAGS (LIBNDR_FLAG_NOALIGN|LIBNDR_FLAG_STR_ASCII|LIBNDR_FLAG_STR_NULLTERM);
76
static struct rap_call *new_rap_cli_call(TALLOC_CTX *mem_ctx, struct smb_iconv_convenience *iconv_convenience, uint16_t callno)
78
struct rap_call *call;
80
call = talloc(mem_ctx, struct rap_call);
85
call->callno = callno;
86
call->rcv_paramlen = 4;
88
call->paramdesc = NULL;
89
call->datadesc = NULL;
91
call->ndr_push_param = ndr_push_init_ctx(mem_ctx, iconv_convenience);
92
call->ndr_push_param->flags = RAPNDR_FLAGS;
94
call->ndr_push_data = ndr_push_init_ctx(mem_ctx, iconv_convenience);
95
call->ndr_push_data->flags = RAPNDR_FLAGS;
100
static void rap_cli_push_paramdesc(struct rap_call *call, char desc)
104
if (call->paramdesc != NULL)
105
len = strlen(call->paramdesc);
107
call->paramdesc = talloc_realloc(call,
112
call->paramdesc[len] = desc;
113
call->paramdesc[len+1] = '\0';
116
static void rap_cli_push_word(struct rap_call *call, uint16_t val)
118
rap_cli_push_paramdesc(call, 'W');
119
ndr_push_uint16(call->ndr_push_param, NDR_SCALARS, val);
122
static void rap_cli_push_dword(struct rap_call *call, uint32_t val)
124
rap_cli_push_paramdesc(call, 'D');
125
ndr_push_uint32(call->ndr_push_param, NDR_SCALARS, val);
128
static void rap_cli_push_rcvbuf(struct rap_call *call, int len)
130
rap_cli_push_paramdesc(call, 'r');
131
rap_cli_push_paramdesc(call, 'L');
132
ndr_push_uint16(call->ndr_push_param, NDR_SCALARS, len);
133
call->rcv_datalen = len;
136
static void rap_cli_expect_multiple_entries(struct rap_call *call)
138
rap_cli_push_paramdesc(call, 'e');
139
rap_cli_push_paramdesc(call, 'h');
140
call->rcv_paramlen += 4; /* uint16_t entry count, uint16_t total */
143
static void rap_cli_expect_word(struct rap_call *call)
145
rap_cli_push_paramdesc(call, 'h');
146
call->rcv_paramlen += 2;
149
static void rap_cli_push_string(struct rap_call *call, const char *str)
152
rap_cli_push_paramdesc(call, 'O');
155
rap_cli_push_paramdesc(call, 'z');
156
ndr_push_string(call->ndr_push_param, NDR_SCALARS, str);
159
static void rap_cli_expect_format(struct rap_call *call, const char *format)
161
call->datadesc = format;
164
static NTSTATUS rap_pull_string(TALLOC_CTX *mem_ctx, struct ndr_pull *ndr,
165
uint16_t convert, char **dest)
167
uint16_t string_offset;
172
NDR_RETURN(ndr_pull_uint16(ndr, NDR_SCALARS, &string_offset));
173
NDR_RETURN(ndr_pull_uint16(ndr, NDR_SCALARS, &ignore));
175
string_offset -= convert;
177
if (string_offset+1 > ndr->data_size)
178
return NT_STATUS_INVALID_PARAMETER;
180
p = (const char *)(ndr->data + string_offset);
181
len = strnlen(p, ndr->data_size-string_offset);
183
if ( string_offset + len + 1 > ndr->data_size )
184
return NT_STATUS_INVALID_PARAMETER;
186
*dest = talloc_zero_array(mem_ctx, char, len+1);
187
pull_string(*dest, p, len+1, len, STR_ASCII);
192
static NTSTATUS rap_cli_do_call(struct smbcli_tree *tree,
193
struct smb_iconv_convenience *iconv_convenience,
194
struct rap_call *call)
197
DATA_BLOB param_blob;
198
struct ndr_push *params;
199
struct smb_trans2 trans;
201
params = ndr_push_init_ctx(call, iconv_convenience);
204
return NT_STATUS_NO_MEMORY;
206
params->flags = RAPNDR_FLAGS;
208
trans.in.max_param = call->rcv_paramlen;
209
trans.in.max_data = call->rcv_datalen;
210
trans.in.max_setup = 0;
212
trans.in.timeout = 0;
213
trans.in.setup_count = 0;
214
trans.in.setup = NULL;
215
trans.in.trans_name = "\\PIPE\\LANMAN";
217
NDR_RETURN(ndr_push_uint16(params, NDR_SCALARS, call->callno));
219
NDR_RETURN(ndr_push_string(params, NDR_SCALARS, call->paramdesc));
221
NDR_RETURN(ndr_push_string(params, NDR_SCALARS, call->datadesc));
223
param_blob = ndr_push_blob(call->ndr_push_param);
224
NDR_RETURN(ndr_push_bytes(params, param_blob.data,
227
trans.in.params = ndr_push_blob(params);
228
trans.in.data = data_blob(NULL, 0);
230
result = smb_raw_trans(tree, call, &trans);
232
if (!NT_STATUS_IS_OK(result))
235
call->ndr_pull_param = ndr_pull_init_blob(&trans.out.params, call,
237
call->ndr_pull_param->flags = RAPNDR_FLAGS;
239
call->ndr_pull_data = ndr_pull_init_blob(&trans.out.data, call,
241
call->ndr_pull_data->flags = RAPNDR_FLAGS;
247
static NTSTATUS smbcli_rap_netshareenum(struct smbcli_tree *tree,
248
struct smb_iconv_convenience *iconv_convenience,
250
struct rap_NetShareEnum *r)
252
struct rap_call *call;
253
NTSTATUS result = NT_STATUS_UNSUCCESSFUL;
256
call = new_rap_cli_call(tree, iconv_convenience, RAP_WshareEnum);
259
return NT_STATUS_NO_MEMORY;
261
rap_cli_push_word(call, r->in.level); /* Level */
262
rap_cli_push_rcvbuf(call, r->in.bufsize);
263
rap_cli_expect_multiple_entries(call);
265
switch(r->in.level) {
267
rap_cli_expect_format(call, "B13");
270
rap_cli_expect_format(call, "B13BWz");
274
result = rap_cli_do_call(tree, iconv_convenience, call);
276
if (!NT_STATUS_IS_OK(result))
279
NDR_GOTO(ndr_pull_uint16(call->ndr_pull_param, NDR_SCALARS, &r->out.status));
280
NDR_GOTO(ndr_pull_uint16(call->ndr_pull_param, NDR_SCALARS, &r->out.convert));
281
NDR_GOTO(ndr_pull_uint16(call->ndr_pull_param, NDR_SCALARS, &r->out.count));
282
NDR_GOTO(ndr_pull_uint16(call->ndr_pull_param, NDR_SCALARS, &r->out.available));
284
r->out.info = talloc_array(mem_ctx, union rap_shareenum_info, r->out.count);
286
if (r->out.info == NULL) {
287
result = NT_STATUS_NO_MEMORY;
291
for (i=0; i<r->out.count; i++) {
292
switch(r->in.level) {
294
NDR_GOTO(ndr_pull_bytes(call->ndr_pull_data,
295
(uint8_t *)r->out.info[i].info0.name, 13));
298
NDR_GOTO(ndr_pull_bytes(call->ndr_pull_data,
299
(uint8_t *)r->out.info[i].info1.name, 13));
300
NDR_GOTO(ndr_pull_bytes(call->ndr_pull_data,
301
(uint8_t *)&r->out.info[i].info1.pad, 1));
302
NDR_GOTO(ndr_pull_uint16(call->ndr_pull_data,
303
NDR_SCALARS, &r->out.info[i].info1.type));
304
RAP_GOTO(rap_pull_string(mem_ctx, call->ndr_pull_data,
306
&r->out.info[i].info1.comment));
311
result = NT_STATUS_OK;
318
static bool test_netshareenum(struct torture_context *tctx,
319
struct smbcli_state *cli)
321
struct rap_NetShareEnum r;
327
torture_assert_ntstatus_ok(tctx,
328
smbcli_rap_netshareenum(cli->tree, lp_iconv_convenience(tctx->lp_ctx), tctx, &r), "");
330
for (i=0; i<r.out.count; i++) {
331
printf("%s %d %s\n", r.out.info[i].info1.name,
332
r.out.info[i].info1.type,
333
r.out.info[i].info1.comment);
339
static NTSTATUS smbcli_rap_netserverenum2(struct smbcli_tree *tree,
340
struct smb_iconv_convenience *iconv_convenience,
342
struct rap_NetServerEnum2 *r)
344
struct rap_call *call;
345
NTSTATUS result = NT_STATUS_UNSUCCESSFUL;
348
call = new_rap_cli_call(mem_ctx, iconv_convenience, RAP_NetServerEnum2);
351
return NT_STATUS_NO_MEMORY;
353
rap_cli_push_word(call, r->in.level);
354
rap_cli_push_rcvbuf(call, r->in.bufsize);
355
rap_cli_expect_multiple_entries(call);
356
rap_cli_push_dword(call, r->in.servertype);
357
rap_cli_push_string(call, r->in.domain);
359
switch(r->in.level) {
361
rap_cli_expect_format(call, "B16");
364
rap_cli_expect_format(call, "B16BBDz");
368
result = rap_cli_do_call(tree, iconv_convenience, call);
370
if (!NT_STATUS_IS_OK(result))
373
result = NT_STATUS_INVALID_PARAMETER;
375
NDR_GOTO(ndr_pull_uint16(call->ndr_pull_param, NDR_SCALARS, &r->out.status));
376
NDR_GOTO(ndr_pull_uint16(call->ndr_pull_param, NDR_SCALARS, &r->out.convert));
377
NDR_GOTO(ndr_pull_uint16(call->ndr_pull_param, NDR_SCALARS, &r->out.count));
378
NDR_GOTO(ndr_pull_uint16(call->ndr_pull_param, NDR_SCALARS, &r->out.available));
380
r->out.info = talloc_array(mem_ctx, union rap_server_info, r->out.count);
382
if (r->out.info == NULL) {
383
result = NT_STATUS_NO_MEMORY;
387
for (i=0; i<r->out.count; i++) {
388
switch(r->in.level) {
390
NDR_GOTO(ndr_pull_bytes(call->ndr_pull_data,
391
(uint8_t *)r->out.info[i].info0.name, 16));
394
NDR_GOTO(ndr_pull_bytes(call->ndr_pull_data,
395
(uint8_t *)r->out.info[i].info1.name, 16));
396
NDR_GOTO(ndr_pull_bytes(call->ndr_pull_data,
397
&r->out.info[i].info1.version_major, 1));
398
NDR_GOTO(ndr_pull_bytes(call->ndr_pull_data,
399
&r->out.info[i].info1.version_minor, 1));
400
NDR_GOTO(ndr_pull_uint32(call->ndr_pull_data,
401
NDR_SCALARS, &r->out.info[i].info1.servertype));
402
RAP_GOTO(rap_pull_string(mem_ctx, call->ndr_pull_data,
404
&r->out.info[i].info1.comment));
408
result = NT_STATUS_OK;
415
static bool test_netserverenum(struct torture_context *tctx,
416
struct smbcli_state *cli)
418
struct rap_NetServerEnum2 r;
423
r.in.servertype = 0xffffffff;
424
r.in.servertype = 0x80000000;
427
torture_assert_ntstatus_ok(tctx,
428
smbcli_rap_netserverenum2(cli->tree, lp_iconv_convenience(tctx->lp_ctx), tctx, &r), "");
430
for (i=0; i<r.out.count; i++) {
431
switch (r.in.level) {
433
printf("%s\n", r.out.info[i].info0.name);
436
printf("%s %x %s\n", r.out.info[i].info1.name,
437
r.out.info[i].info1.servertype,
438
r.out.info[i].info1.comment);
446
NTSTATUS smbcli_rap_netservergetinfo(struct smbcli_tree *tree,
447
struct smb_iconv_convenience *iconv_convenience,
449
struct rap_WserverGetInfo *r)
451
struct rap_call *call;
452
NTSTATUS result = NT_STATUS_UNSUCCESSFUL;
454
if (!(call = new_rap_cli_call(mem_ctx, iconv_convenience, RAP_WserverGetInfo))) {
455
return NT_STATUS_NO_MEMORY;
458
rap_cli_push_word(call, r->in.level);
459
rap_cli_push_rcvbuf(call, r->in.bufsize);
460
rap_cli_expect_word(call);
462
switch(r->in.level) {
464
rap_cli_expect_format(call, "B16");
467
rap_cli_expect_format(call, "B16BBDz");
470
result = NT_STATUS_INVALID_PARAMETER;
474
result = rap_cli_do_call(tree, iconv_convenience, call);
476
if (!NT_STATUS_IS_OK(result))
479
NDR_GOTO(ndr_pull_uint16(call->ndr_pull_param, NDR_SCALARS, &r->out.status));
480
NDR_GOTO(ndr_pull_uint16(call->ndr_pull_param, NDR_SCALARS, &r->out.convert));
481
NDR_GOTO(ndr_pull_uint16(call->ndr_pull_param, NDR_SCALARS, &r->out.available));
483
switch(r->in.level) {
485
NDR_GOTO(ndr_pull_bytes(call->ndr_pull_data,
486
(uint8_t *)r->out.info.info0.name, 16));
489
NDR_GOTO(ndr_pull_bytes(call->ndr_pull_data,
490
(uint8_t *)r->out.info.info1.name, 16));
491
NDR_GOTO(ndr_pull_bytes(call->ndr_pull_data,
492
&r->out.info.info1.version_major, 1));
493
NDR_GOTO(ndr_pull_bytes(call->ndr_pull_data,
494
&r->out.info.info1.version_minor, 1));
495
NDR_GOTO(ndr_pull_uint32(call->ndr_pull_data,
496
NDR_SCALARS, &r->out.info.info1.servertype));
497
RAP_GOTO(rap_pull_string(mem_ctx, call->ndr_pull_data,
499
&r->out.info.info1.comment));
506
static bool test_netservergetinfo(struct torture_context *tctx,
507
struct smbcli_state *cli)
509
struct rap_WserverGetInfo r;
512
r.in.bufsize = 0xffff;
515
torture_assert_ntstatus_ok(tctx, smbcli_rap_netservergetinfo(cli->tree, lp_iconv_convenience(tctx->lp_ctx), tctx, &r), "");
517
torture_assert_ntstatus_ok(tctx, smbcli_rap_netservergetinfo(cli->tree, lp_iconv_convenience(tctx->lp_ctx), tctx, &r), "");
522
bool torture_rap_scan(struct torture_context *torture, struct smbcli_state *cli)
526
for (callno = 0; callno < 0xffff; callno++) {
527
struct rap_call *call = new_rap_cli_call(torture, lp_iconv_convenience(torture->lp_ctx), callno);
530
result = rap_cli_do_call(cli->tree, lp_iconv_convenience(torture->lp_ctx), call);
532
if (!NT_STATUS_EQUAL(result, NT_STATUS_INVALID_PARAMETER))
535
printf("callno %d is RAP call\n", callno);
541
NTSTATUS torture_rap_init(void)
543
struct torture_suite *suite = torture_suite_create(talloc_autofree_context(), "RAP");
544
struct torture_suite *suite_basic = torture_suite_create(suite, "BASIC");
546
torture_suite_add_suite(suite, suite_basic);
548
torture_suite_add_1smb_test(suite_basic, "netserverenum",
550
torture_suite_add_1smb_test(suite_basic, "netshareenum",
552
torture_suite_add_1smb_test(suite_basic, "netservergetinfo",
553
test_netservergetinfo);
555
torture_suite_add_1smb_test(suite, "SCAN", torture_rap_scan);
557
suite->description = talloc_strdup(suite,
558
"Remote Administration Protocol tests");
560
torture_register_suite(suite);