58 lines
4.3 KiB
Plaintext
58 lines
4.3 KiB
Plaintext
|
|
*** Settings ***
|
||
|
|
Force Tags tsg_adc_wp adc_api security_policy
|
||
|
|
Library OperatingSystem
|
||
|
|
Resource ../../../02-Keyword/tsg_adc/SystemCommand.robot
|
||
|
|
Resource ../../../02-Keyword/tsg_bfapi/PolicyObject.robot
|
||
|
|
Resource ../../../02-Keyword/tsg_bfapi/LogVariable.robot
|
||
|
|
Resource ../../../02-Keyword/tsg_adc/FileOperation.robot
|
||
|
|
Resource ../../../02-Keyword/tsg_adc/FileOperation.robot
|
||
|
|
|
||
|
|
*** Test Cases ***
|
||
|
|
SecurityPolicy-Deny-Dns-00001
|
||
|
|
[Tags] fqdn
|
||
|
|
Comment 创建fqdn
|
||
|
|
${objectDict} Create Dictionary objectType=fqdn isValid=${1} addItemList=$www.facebook.com,*ok.ru
|
||
|
|
${rescode} ${objectId} AddObject2 ${1} ${objectDict}
|
||
|
|
Comment 创建安全策略
|
||
|
|
${policyDict} Create Dictionary policyName=SecurityPolicy-Deny-Dns-00001 policyType=tsg_security policyDesc=autotest action=deny userRegion={"protocol":"DNS","method":"drop"} referenceObject=${objectId}|TSG_FIELD_DNS_QNAME isValid=${1} appObjectIdArray=4
|
||
|
|
log ${policyDict}
|
||
|
|
${rescode} ${policyId} AddPolicy2 ${1} ${policyDict}
|
||
|
|
insert_policyId_to_file1 deny_dns_objectId ${objectId}
|
||
|
|
insert_policyId_to_file1 deny_dns_policyId ${policyId}
|
||
|
|
|
||
|
|
SecurityPolicy-Deny-Dns-00002
|
||
|
|
[Tags] cat
|
||
|
|
Comment 创建cat
|
||
|
|
${objectDict} Create Dictionary objectType=fqdn_category isValid=${1} addItemList=*yhd.com,$www.vk.com
|
||
|
|
${rescode} ${objectId} AddObject2 ${1} ${objectDict}
|
||
|
|
Comment 创建安全策略
|
||
|
|
${policyDict} Create Dictionary policyName=SecurityPolicy-Deny-Dns-00002 policyType=tsg_security policyDesc=autotest action=deny userRegion={"protocol":"DNS","method":"redirect","resolution":[{"qtype":"A","answer":[{"atype":"CNAME","value":"www.jd.com","ttl":{"min":500,"max":500}},{"atype":"A","value":"192.168.41.186","ttl":{"min":300,"max":300}}]}]} referenceObject=${objectId}|TSG_FIELD_DNS_QNAME isValid=${1} appObjectIdArray=4
|
||
|
|
log ${policyDict}
|
||
|
|
${rescode} ${policyId} AddPolicy2 ${1} ${policyDict}
|
||
|
|
insert_policyId_to_file1 deny_dns_objectId1 ${objectId}
|
||
|
|
insert_policyId_to_file1 deny_dns_policyId1 ${policyId}
|
||
|
|
|
||
|
|
SecurityPolicy-Deny-Dns-00003
|
||
|
|
[Tags] cat
|
||
|
|
Comment 创建cat
|
||
|
|
${objectDict} Create Dictionary objectType=fqdn_category isValid=${1} addItemList=*ya.ru
|
||
|
|
${rescode} ${objectId} AddObject2 ${1} ${objectDict}
|
||
|
|
Comment 创建安全策略
|
||
|
|
${policyDict} Create Dictionary policyName=SecurityPolicy-Deny-Dns-00003 policyType=tsg_security policyDesc=autotest action=deny userRegion={"protocol":"DNS","method":"redirect","resolution":[{"qtype":"AAAA","answer":[{"atype":"AAAA","value":"fc00::2:11","ttl":{"min":400,"max":400}},{"atype":"CNAME","value":"www.taobao.com","ttl":{"min":600,"max":600}}]}]} referenceObject=${objectId}|TSG_FIELD_DNS_QNAME isValid=${1} appObjectIdArray=4
|
||
|
|
log ${policyDict}
|
||
|
|
${rescode} ${policyId} AddPolicy2 ${1} ${policyDict}
|
||
|
|
insert_policyId_to_file1 deny_dns_objectId2 ${objectId}
|
||
|
|
insert_policyId_to_file1 deny_dns_policyId2 ${policyId}
|
||
|
|
|
||
|
|
SecurityPolicy-Deny-Dns-00004
|
||
|
|
[Tags] 最大重定向
|
||
|
|
Comment 创建fqdn
|
||
|
|
${objectDict} Create Dictionary objectType=fqdn isValid=${1} addItemList=*youtube.com
|
||
|
|
${rescode} ${objectId} AddObject2 ${1} ${objectDict}
|
||
|
|
Comment 创建安全策略
|
||
|
|
${policyDict} Create Dictionary policyName=SecurityPolicy-Deny-Dns-00004 policyType=tsg_security policyDesc=autotest action=deny userRegion={"protocol":"DNS","method":"redirect","resolution":[{"answer":[{"atype":"AAAA","value":"fc00::2:22","ttl":{"min":400,"max":400}},{"atype":"CNAME","value":"www.facebook.com","ttl":{"min":400,"max":400}}],"qtype":"AAAA"},{"qtype":"A","answer":[{"atype":"CNAME","value":"www.ok.ru","ttl":{"min":400,"max":400}},{"atype":"A","value":"192.168.40.110","ttl":{"min":400,"max":400}}]}]} referenceObject=${objectId}|TSG_FIELD_DNS_QNAME isValid=${1} appObjectIdArray=4
|
||
|
|
log ${policyDict}
|
||
|
|
${rescode} ${policyId} AddPolicy2 ${1} ${policyDict}
|
||
|
|
insert_policyId_to_file1 deny_dns_objectId3 ${objectId}
|
||
|
|
insert_policyId_to_file1 deny_dns_policyId3 ${policyId}
|