2022-11-25 16:32:29 +08:00
|
|
|
#include <gtest/gtest.h>
|
|
|
|
|
|
|
|
|
|
#include "maat/maat.h"
|
|
|
|
|
#include "maat_rule.h"
|
2022-11-29 14:12:40 +08:00
|
|
|
#include "maat_utils.h"
|
2022-12-03 22:23:41 +08:00
|
|
|
#include "maat_command.h"
|
2022-12-09 17:12:18 +08:00
|
|
|
#include "IPMatcher.h"
|
2022-12-14 15:28:21 +08:00
|
|
|
#include "json2iris.h"
|
|
|
|
|
#include "maat_config_monitor.h"
|
2022-11-25 16:32:29 +08:00
|
|
|
|
2023-02-03 17:28:14 +08:00
|
|
|
#define MODULE_FRAMEWORK_GTEST module_name_str("maat.framework_gtest")
|
|
|
|
|
|
2022-11-29 14:12:40 +08:00
|
|
|
const char *table_info_path = "./table_info.conf";
|
2022-12-03 22:23:41 +08:00
|
|
|
const char *json_path="./maat_json.json";
|
2022-12-14 15:28:21 +08:00
|
|
|
const char *json_filename = "maat_json.json";
|
2023-02-03 17:28:14 +08:00
|
|
|
struct maat *g_maat_instance = NULL;
|
2022-11-29 14:12:40 +08:00
|
|
|
|
2023-02-03 17:28:14 +08:00
|
|
|
class MaatStringScan : public testing::Test
|
|
|
|
|
{
|
|
|
|
|
protected:
|
|
|
|
|
static void SetUpTestCase() {
|
|
|
|
|
table_id = maat_table_get_id(g_maat_instance, "HTTP_URL");
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
static void TearDownTestCase() {
|
|
|
|
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
static int table_id;
|
|
|
|
|
};
|
|
|
|
|
int MaatStringScan::table_id;
|
|
|
|
|
|
|
|
|
|
TEST_F(MaatStringScan, hit_one_expr) {
|
|
|
|
|
int table_id = MaatStringScan::table_id;
|
2023-01-30 21:59:35 +08:00
|
|
|
char scan_data[128] = "hello";
|
2022-12-14 15:28:21 +08:00
|
|
|
int results[5] = {0};
|
2023-01-30 21:59:35 +08:00
|
|
|
size_t n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
struct maat_state *state = NULL;
|
2023-01-30 21:59:35 +08:00
|
|
|
int ret = maat_scan_string(g_maat_instance, table_id, 0, scan_data, strlen(scan_data), results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 1);
|
|
|
|
|
EXPECT_EQ(results[0], 191);
|
|
|
|
|
|
|
|
|
|
struct maat_hit_path hit_path[128] = {0};
|
|
|
|
|
int n_read = 0;
|
|
|
|
|
n_read = maat_state_get_hit_paths(g_maat_instance, &state, hit_path, sizeof(hit_path));
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_NE(n_read, 0);
|
2023-01-30 21:59:35 +08:00
|
|
|
maat_state_free(&state);
|
2022-12-03 22:23:41 +08:00
|
|
|
}
|
|
|
|
|
|
2023-02-03 17:28:14 +08:00
|
|
|
TEST_F(MaatStringScan, hit_two_expr) {
|
|
|
|
|
int table_id = MaatStringScan::table_id;
|
2022-12-03 22:23:41 +08:00
|
|
|
char data[128] = "should hit aaa bbb";
|
2022-12-14 15:28:21 +08:00
|
|
|
int results[5] = {0};
|
2023-01-30 21:59:35 +08:00
|
|
|
size_t n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
struct maat_state *state = NULL;
|
2023-01-30 21:59:35 +08:00
|
|
|
int ret = maat_scan_string(g_maat_instance, table_id, 0, data, strlen(data), results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 2);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(results[0], 139);
|
|
|
|
|
EXPECT_EQ(results[1], 138);
|
2023-01-30 21:59:35 +08:00
|
|
|
|
|
|
|
|
maat_state_free(&state);
|
2022-12-03 22:23:41 +08:00
|
|
|
}
|
|
|
|
|
|
2023-02-03 17:28:14 +08:00
|
|
|
TEST_F(MaatStringScan, hit_three_expr) {
|
|
|
|
|
int table_id = MaatStringScan::table_id;
|
2022-12-03 22:23:41 +08:00
|
|
|
|
|
|
|
|
char data[128] = "should hit aaa bbb C#中国";
|
2022-12-14 15:28:21 +08:00
|
|
|
int results[5] = {0};
|
2023-01-30 21:59:35 +08:00
|
|
|
size_t n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
struct maat_state *state = NULL;
|
2023-01-30 21:59:35 +08:00
|
|
|
int ret = maat_scan_string(g_maat_instance, table_id, 0, data, strlen(data), results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 3);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(results[0], 139);
|
|
|
|
|
EXPECT_EQ(results[1], 138);
|
|
|
|
|
EXPECT_EQ(results[2], 129);
|
2023-01-30 21:59:35 +08:00
|
|
|
|
|
|
|
|
maat_state_free(&state);
|
2022-12-03 22:23:41 +08:00
|
|
|
}
|
|
|
|
|
|
2023-02-03 17:28:14 +08:00
|
|
|
class MaatIPScan : public testing::Test
|
|
|
|
|
{
|
|
|
|
|
protected:
|
|
|
|
|
static void SetUpTestCase() {
|
|
|
|
|
table_id = maat_table_get_id(g_maat_instance, "IP_PLUS_CONFIG");
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
static void TearDownTestCase() {
|
|
|
|
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
static int table_id;
|
|
|
|
|
};
|
|
|
|
|
int MaatIPScan::table_id;
|
|
|
|
|
|
|
|
|
|
TEST_F(MaatIPScan, hit_ip_and_port) {
|
|
|
|
|
int table_id = MaatIPScan::table_id;
|
2022-12-12 00:10:30 +08:00
|
|
|
char ip_str[32] = "192.168.58.19";
|
2023-01-30 21:59:35 +08:00
|
|
|
uint32_t sip;
|
|
|
|
|
int ret = inet_pton(AF_INET, ip_str, &sip);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(ret, 1);
|
|
|
|
|
|
|
|
|
|
int results[3] = {-1};
|
2023-01-30 21:59:35 +08:00
|
|
|
size_t n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
struct maat_state *state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 1);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(results[0], 7);
|
2023-01-30 21:59:35 +08:00
|
|
|
maat_state_free(&state);
|
2022-12-12 00:10:30 +08:00
|
|
|
|
2022-12-14 15:28:21 +08:00
|
|
|
state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-07 11:25:31 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_OK);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 0);
|
|
|
|
|
|
|
|
|
|
maat_state_free(&state);
|
2022-12-12 00:10:30 +08:00
|
|
|
}
|
2023-02-03 17:28:14 +08:00
|
|
|
#if 0
|
|
|
|
|
TEST_F(MaatStringScan, hit_ip_and_port_range) {
|
2023-01-30 21:59:35 +08:00
|
|
|
int table_id = table_manager_get_table_id(g_maat_instance->tbl_mgr, "IP_PLUS_CONFIG");
|
2022-12-09 17:12:18 +08:00
|
|
|
char ip_str[32] = "192.168.50.24";
|
2023-01-31 20:39:53 +08:00
|
|
|
uint32_t sip;
|
|
|
|
|
int ret = inet_pton(AF_INET, ip_str, &sip);
|
2022-12-09 17:12:18 +08:00
|
|
|
EXPECT_EQ(ret, 1);
|
|
|
|
|
|
|
|
|
|
int results[3] = {-1};
|
2023-01-30 21:59:35 +08:00
|
|
|
size_t n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
struct maat_state *state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 1);
|
2022-12-09 17:12:18 +08:00
|
|
|
EXPECT_EQ(results[0], 4);
|
2023-01-30 21:59:35 +08:00
|
|
|
maat_state_free(&state);
|
2022-12-12 00:10:30 +08:00
|
|
|
|
|
|
|
|
memset(results, 0, sizeof(results));
|
2023-01-30 21:59:35 +08:00
|
|
|
n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 1);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(results[0], 4);
|
2023-01-30 21:59:35 +08:00
|
|
|
maat_state_free(&state);
|
2022-12-12 00:10:30 +08:00
|
|
|
|
|
|
|
|
memset(results, 0, sizeof(results));
|
2023-01-30 21:59:35 +08:00
|
|
|
n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-07 11:25:31 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_OK);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 0);
|
2022-12-12 00:10:30 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
TEST(maat_scan_ipv4, hit_ip_range_and_port_range) {
|
2023-01-30 21:59:35 +08:00
|
|
|
int table_id = table_manager_get_table_id(g_maat_instance->tbl_mgr, "IP_PLUS_CONFIG");
|
2022-12-12 00:10:30 +08:00
|
|
|
char ip_str1[32] = "10.0.1.20";
|
|
|
|
|
char ip_str2[32] = "10.0.1.25";
|
|
|
|
|
char ip_str3[32] = "10.0.1.26";
|
2023-01-31 20:39:53 +08:00
|
|
|
uint32_t sip;
|
|
|
|
|
int ret = inet_pton(AF_INET, ip_str1, &sip);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(ret, 1);
|
|
|
|
|
|
|
|
|
|
int results[3] = {-1};
|
2023-01-30 21:59:35 +08:00
|
|
|
size_t n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
struct maat_state *state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 1);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(results[0], 8);
|
2023-01-30 21:59:35 +08:00
|
|
|
maat_state_free(&state);
|
2022-12-12 00:10:30 +08:00
|
|
|
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = inet_pton(AF_INET, ip_str2, &sip);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(ret, 1);
|
2022-12-14 15:28:21 +08:00
|
|
|
state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 1);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(results[0], 8);
|
2023-01-30 21:59:35 +08:00
|
|
|
maat_state_free(&state);
|
2022-12-12 00:10:30 +08:00
|
|
|
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = inet_pton(AF_INET, ip_str3, &sip);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(ret, 1);
|
2022-12-14 15:28:21 +08:00
|
|
|
state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-07 11:25:31 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_OK);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 0);
|
|
|
|
|
maat_state_free(&state);
|
2022-12-12 00:10:30 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
TEST(maat_scan_ipv4, hit_ip_cidr_and_port_range) {
|
2023-01-30 21:59:35 +08:00
|
|
|
int table_id = table_manager_get_table_id(g_maat_instance->tbl_mgr, "IP_PLUS_CONFIG");
|
2022-12-12 00:10:30 +08:00
|
|
|
char ip_str1[32] = "192.168.0.1";
|
|
|
|
|
char ip_str2[32] = "192.168.0.0";
|
2023-01-31 20:39:53 +08:00
|
|
|
uint32_t sip;
|
|
|
|
|
int ret = inet_pton(AF_INET, ip_str1, &sip);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(ret, 1);
|
|
|
|
|
|
|
|
|
|
int results[3] = {-1};
|
2023-01-30 21:59:35 +08:00
|
|
|
size_t n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
struct maat_state *state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 1);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(results[0], 50);
|
2023-01-30 21:59:35 +08:00
|
|
|
maat_state_free(&state);
|
2022-12-12 00:10:30 +08:00
|
|
|
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = inet_pton(AF_INET, ip_str2, &sip);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(ret, 1);
|
2022-12-14 15:28:21 +08:00
|
|
|
state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-07 11:25:31 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_OK);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 0);
|
|
|
|
|
maat_state_free(&state);
|
2022-12-12 00:10:30 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
TEST(maat_scan_ipv4, hit_ip_cidr_and_port_mask) {
|
2023-01-30 21:59:35 +08:00
|
|
|
int table_id = table_manager_get_table_id(g_maat_instance->tbl_mgr, "IP_PLUS_CONFIG");
|
2022-12-12 00:10:30 +08:00
|
|
|
char ip_str[32] = "192.168.40.10";
|
2023-01-31 20:39:53 +08:00
|
|
|
uint32_t sip;
|
|
|
|
|
int ret = inet_pton(AF_INET, ip_str, &sip);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(ret, 1);
|
|
|
|
|
|
|
|
|
|
int results[3] = {-1};
|
2023-01-30 21:59:35 +08:00
|
|
|
size_t n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
struct maat_state *state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 2);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(results[0], 63);
|
|
|
|
|
EXPECT_EQ(results[1], 67);
|
2023-01-30 21:59:35 +08:00
|
|
|
maat_state_free(&state);
|
2022-12-12 00:10:30 +08:00
|
|
|
|
2022-12-14 15:28:21 +08:00
|
|
|
state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-07 11:25:31 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_OK);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 0);
|
|
|
|
|
maat_state_free(&state);
|
2022-12-12 00:10:30 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
TEST(maat_scan_ipv6, hit_ip_range_and_port_mask) {
|
2023-01-30 21:59:35 +08:00
|
|
|
int table_id = table_manager_get_table_id(g_maat_instance->tbl_mgr, "IP_PLUS_CONFIG");
|
2022-12-12 00:10:30 +08:00
|
|
|
char ip_str[32] = "1001:da8:205:1::101";
|
2023-01-31 20:39:53 +08:00
|
|
|
uint8_t sip6[128];
|
|
|
|
|
int ret = inet_pton(AF_INET6, ip_str, sip6);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(ret, 1);
|
|
|
|
|
|
|
|
|
|
int results[3] = {-1};
|
2023-01-30 21:59:35 +08:00
|
|
|
size_t n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
struct maat_state *state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv6(g_maat_instance, table_id, 0, sip6, results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 1);
|
2022-12-12 00:10:30 +08:00
|
|
|
EXPECT_EQ(results[0], 47);
|
2023-01-30 21:59:35 +08:00
|
|
|
maat_state_free(&state);
|
2022-12-12 00:10:30 +08:00
|
|
|
|
2022-12-14 15:28:21 +08:00
|
|
|
state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv6(g_maat_instance, table_id, 0, sip6, results, sizeof(results), &n_hit_result, &state);
|
2023-02-07 11:25:31 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_OK);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 0);
|
|
|
|
|
maat_state_free(&state);
|
2022-12-09 17:12:18 +08:00
|
|
|
}
|
|
|
|
|
|
2022-12-14 15:28:21 +08:00
|
|
|
TEST(maat_scan_string, dynamic_config) {
|
2023-01-30 21:59:35 +08:00
|
|
|
int table_id = table_manager_get_table_id(g_maat_instance->tbl_mgr, "HTTP_URL");
|
2022-12-14 15:28:21 +08:00
|
|
|
|
|
|
|
|
char data[128] = "hello world";
|
|
|
|
|
int results[5] = {0};
|
2023-01-30 21:59:35 +08:00
|
|
|
size_t n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
struct maat_state *state = NULL;
|
2023-01-30 21:59:35 +08:00
|
|
|
int ret = maat_scan_string(g_maat_instance, table_id, 0, data, strlen(data), results, sizeof(results), &n_hit_result, &state);
|
2023-02-07 11:25:31 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_OK);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 0);
|
|
|
|
|
maat_state_free(&state);
|
2022-12-14 15:28:21 +08:00
|
|
|
|
|
|
|
|
const char *table_name = "HTTP_URL";
|
|
|
|
|
const char *table_line = "9999\t8888\thello world\t0\t0\t0\t1\t";
|
|
|
|
|
struct maat_cmd_line line_rule;
|
|
|
|
|
line_rule.rule_id = 101;
|
|
|
|
|
line_rule.table_line = table_line;
|
|
|
|
|
line_rule.table_name = table_name;
|
|
|
|
|
ret = maat_cmd_set_line(g_maat_instance, &line_rule);
|
|
|
|
|
EXPECT_EQ(ret, 1);
|
|
|
|
|
|
|
|
|
|
sleep(2);
|
|
|
|
|
state = NULL;
|
2023-01-30 21:59:35 +08:00
|
|
|
ret = maat_scan_string(g_maat_instance, table_id, 0, data, strlen(data), results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 1);
|
2022-12-14 15:28:21 +08:00
|
|
|
EXPECT_EQ(results[0], 9999);
|
2023-01-30 21:59:35 +08:00
|
|
|
maat_state_free(&state);
|
2022-12-14 15:28:21 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
TEST(maat_scan_ip, dynamic_config) {
|
2023-01-30 21:59:35 +08:00
|
|
|
int table_id = table_manager_get_table_id(g_maat_instance->tbl_mgr, "IP_PLUS_CONFIG");
|
2022-12-14 15:28:21 +08:00
|
|
|
|
|
|
|
|
char ip_str[32] = "10.0.6.201";
|
2023-01-31 20:39:53 +08:00
|
|
|
uint32_t sip;
|
|
|
|
|
int ret = inet_pton(AF_INET, ip_str, &sip);
|
2022-12-14 15:28:21 +08:00
|
|
|
EXPECT_EQ(ret, 1);
|
|
|
|
|
|
|
|
|
|
int results[3] = {-1};
|
2023-01-30 21:59:35 +08:00
|
|
|
size_t n_hit_result = 0;
|
2022-12-14 15:28:21 +08:00
|
|
|
struct maat_state *state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-07 11:25:31 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_OK);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 0);
|
|
|
|
|
maat_state_free(&state);
|
2022-12-14 15:28:21 +08:00
|
|
|
|
|
|
|
|
const char *table_name = "IP_PLUS_CONFIG";
|
|
|
|
|
const char *table_line = "9998\t8887\t4\trange\t10.0.6.201\t255.255.0.0\trange\t0\t65535\t6\t0\t1";
|
|
|
|
|
struct maat_cmd_line line_rule;
|
|
|
|
|
line_rule.rule_id = 101;
|
|
|
|
|
line_rule.table_line = table_line;
|
|
|
|
|
line_rule.table_name = table_name;
|
|
|
|
|
ret = maat_cmd_set_line(g_maat_instance, &line_rule);
|
|
|
|
|
EXPECT_EQ(ret, 0);
|
|
|
|
|
|
|
|
|
|
sleep(2);
|
|
|
|
|
state = NULL;
|
2023-01-31 20:39:53 +08:00
|
|
|
ret = maat_scan_ipv4(g_maat_instance, table_id, 0, sip, results, sizeof(results), &n_hit_result, &state);
|
2023-02-03 17:28:14 +08:00
|
|
|
EXPECT_EQ(ret, MAAT_SCAN_HIT);
|
2023-01-30 21:59:35 +08:00
|
|
|
EXPECT_EQ(n_hit_result, 1);
|
2022-12-14 15:28:21 +08:00
|
|
|
EXPECT_EQ(results[0], 9998);
|
2023-01-30 21:59:35 +08:00
|
|
|
maat_state_free(&state);
|
2022-12-14 15:28:21 +08:00
|
|
|
}
|
2023-02-03 17:28:14 +08:00
|
|
|
#endif
|
|
|
|
|
|
2022-12-14 15:28:21 +08:00
|
|
|
|
|
|
|
|
int count_line_num_cb(const char *table_name, const char *line, void *u_para)
|
|
|
|
|
{
|
|
|
|
|
(*((unsigned int *)u_para))++;
|
|
|
|
|
return 0;
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
int line_idx = 0;
|
|
|
|
|
long long absolute_expire_time=0;
|
|
|
|
|
int make_serial_rule(const char *table_name, const char *line, void *u_para)
|
|
|
|
|
{
|
|
|
|
|
struct serial_rule *s_rule=(struct serial_rule *)u_para;
|
|
|
|
|
int rule_id = 0;
|
|
|
|
|
char *buff = ALLOC(char, strlen(line) + 1);
|
|
|
|
|
|
|
|
|
|
memcpy(buff, line, strlen(line) + 1);
|
|
|
|
|
|
|
|
|
|
while (buff[strlen(buff) - 1] == '\n' || buff[strlen(buff) - 1] == '\t') {
|
|
|
|
|
buff[strlen(buff) - 1] = '\0';
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
int j = 0;
|
|
|
|
|
char *str1 = NULL;
|
|
|
|
|
char *token = NULL;
|
|
|
|
|
char *saveptr1 = NULL;
|
|
|
|
|
|
|
|
|
|
for (j = 0,str1 = buff; ; j++, str1 = NULL) {
|
|
|
|
|
token = strtok_r(str1, "\t ", &saveptr1);
|
|
|
|
|
if (token == NULL)
|
|
|
|
|
break;
|
|
|
|
|
if (j == 0) {
|
|
|
|
|
sscanf(token,"%d", &rule_id);
|
|
|
|
|
}
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
memcpy(buff, line, strlen(line)+1);
|
|
|
|
|
while(buff[strlen(buff)-1]=='\n'||buff[strlen(buff)-1]=='\t') {
|
|
|
|
|
buff[strlen(buff)-1]='\0';
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
maat_cmd_set_serial_rule(s_rule + line_idx, MAAT_OP_ADD, rule_id, table_name, buff, absolute_expire_time);
|
|
|
|
|
line_idx++;
|
|
|
|
|
FREE(str1);
|
|
|
|
|
|
|
|
|
|
return 0;
|
|
|
|
|
}
|
|
|
|
|
|
2023-02-03 17:28:14 +08:00
|
|
|
int write_config_to_redis(char *redis_ip, int redis_port, int redis_db,
|
|
|
|
|
struct log_handle *logger)
|
2022-11-25 16:32:29 +08:00
|
|
|
{
|
2022-12-14 15:28:21 +08:00
|
|
|
char json_iris_path[128] = {0};
|
|
|
|
|
|
|
|
|
|
snprintf(json_iris_path, sizeof(json_iris_path), "./%s_iris_tmp", json_filename);
|
|
|
|
|
|
|
|
|
|
redisContext *c = maat_cmd_connect_redis(redis_ip, redis_port, redis_db, logger);
|
2023-02-03 17:28:14 +08:00
|
|
|
if (nullptr == c) {
|
|
|
|
|
return -1;
|
|
|
|
|
}
|
2022-11-25 16:32:29 +08:00
|
|
|
|
2022-12-14 15:28:21 +08:00
|
|
|
redisReply *reply = maat_cmd_wrap_redis_command(c, "flushdb");
|
2023-02-03 17:28:14 +08:00
|
|
|
if (nullptr == reply) {
|
|
|
|
|
return -1;
|
|
|
|
|
}
|
2022-12-14 15:28:21 +08:00
|
|
|
|
|
|
|
|
if ((access(json_iris_path, F_OK)) < 0) {
|
|
|
|
|
char tmp_iris_path[128] = {0};
|
|
|
|
|
char *json_buff = NULL;
|
|
|
|
|
size_t json_buff_sz = 0;
|
|
|
|
|
|
|
|
|
|
int ret = load_file_to_memory(json_filename, (unsigned char **)&json_buff, &json_buff_sz);
|
2023-02-03 17:28:14 +08:00
|
|
|
if (ret < 0) {
|
|
|
|
|
return -1;
|
|
|
|
|
}
|
2022-12-14 15:28:21 +08:00
|
|
|
|
|
|
|
|
ret = json2iris(json_buff, json_filename, c, tmp_iris_path,
|
|
|
|
|
sizeof(tmp_iris_path), NULL, NULL, logger);
|
2023-02-03 17:28:14 +08:00
|
|
|
if (ret < 0) {
|
|
|
|
|
return -1;
|
|
|
|
|
}
|
2022-12-14 15:28:21 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
size_t total_line_cnt = 0;
|
|
|
|
|
char tmp_iris_full_idx_path[128] = {0};
|
|
|
|
|
snprintf(tmp_iris_full_idx_path, sizeof(tmp_iris_full_idx_path), "%s/index", json_iris_path);
|
|
|
|
|
config_monitor_traverse(0, tmp_iris_full_idx_path, NULL, count_line_num_cb, NULL, &total_line_cnt, logger);
|
|
|
|
|
|
|
|
|
|
struct serial_rule *s_rule = ALLOC(struct serial_rule, total_line_cnt);
|
|
|
|
|
long long server_time = maat_cmd_redis_server_time_s(c);
|
2023-02-03 17:28:14 +08:00
|
|
|
if (server_time < 0) {
|
|
|
|
|
return -1;
|
|
|
|
|
}
|
2022-12-14 15:28:21 +08:00
|
|
|
|
|
|
|
|
absolute_expire_time = server_time + 300;
|
|
|
|
|
config_monitor_traverse(0, tmp_iris_full_idx_path, NULL, make_serial_rule, NULL, s_rule, logger);
|
|
|
|
|
|
|
|
|
|
int success_cnt = 0;
|
|
|
|
|
do {
|
|
|
|
|
success_cnt = maat_cmd_write_rule(c, s_rule, total_line_cnt, server_time, logger);
|
|
|
|
|
} while (success_cnt < 0);
|
|
|
|
|
|
|
|
|
|
EXPECT_EQ(success_cnt, (int)total_line_cnt);
|
|
|
|
|
|
|
|
|
|
for (size_t i = 0; i < total_line_cnt; i++) {
|
|
|
|
|
maat_cmd_clear_rule_cache(s_rule + i);
|
|
|
|
|
}
|
|
|
|
|
FREE(s_rule);
|
|
|
|
|
redisFree(c);
|
|
|
|
|
|
2023-02-03 17:28:14 +08:00
|
|
|
return 0;
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
int main(int argc, char ** argv)
|
|
|
|
|
{
|
|
|
|
|
int ret=0;
|
|
|
|
|
::testing::InitGoogleTest(&argc, argv);
|
|
|
|
|
|
|
|
|
|
struct log_handle *logger = log_handle_create("./maat_framework_gtest.log", 0);
|
|
|
|
|
if (NULL == logger) {
|
|
|
|
|
printf("create log handle failed.\n");
|
|
|
|
|
return -1;
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
char redis_ip[64] = "127.0.0.1";
|
|
|
|
|
int redis_port = 6379;
|
|
|
|
|
int redis_db = 0;
|
|
|
|
|
|
|
|
|
|
ret = write_config_to_redis(redis_ip, redis_port, redis_db, logger);
|
|
|
|
|
if (ret < 0) {
|
|
|
|
|
log_error(logger, MODULE_FRAMEWORK_GTEST, "write config to redis failed.");
|
|
|
|
|
log_handle_destroy(logger);
|
|
|
|
|
return -1;
|
|
|
|
|
}
|
|
|
|
|
|
2022-12-14 15:28:21 +08:00
|
|
|
struct maat_options *opts = maat_options_new();
|
2023-01-06 18:54:59 +08:00
|
|
|
maat_options_set_redis(opts, redis_ip, redis_port, redis_db);
|
2022-12-14 15:28:21 +08:00
|
|
|
maat_options_set_logger(opts, logger);
|
|
|
|
|
|
|
|
|
|
g_maat_instance = maat_new(opts, table_info_path);
|
2023-01-30 21:59:35 +08:00
|
|
|
maat_options_free(opts);
|
2023-02-03 17:28:14 +08:00
|
|
|
if (NULL == g_maat_instance) {
|
|
|
|
|
log_error(logger, MODULE_FRAMEWORK_GTEST, "create maat instance in MaatStringScan failed.");
|
|
|
|
|
log_handle_destroy(logger);
|
|
|
|
|
return -1;
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
ret=RUN_ALL_TESTS();
|
|
|
|
|
|
2022-11-25 16:32:29 +08:00
|
|
|
maat_free(g_maat_instance);
|
2023-02-03 17:28:14 +08:00
|
|
|
log_handle_destroy(logger);
|
2022-11-25 16:32:29 +08:00
|
|
|
|
|
|
|
|
return ret;
|
2023-02-03 17:28:14 +08:00
|
|
|
}
|