2 * Copyright (c) 2013 Samsung Electronics Co., Ltd All Rights Reserved
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
8 * http://www.apache.org/licenses/LICENSE-2.0
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
18 * @file tests_common.cpp
19 * @author Lukasz Kostyra (l.kostyra@partner.samsung.com)
21 * @brief Common functions and macros used in security-tests package.
24 #include "tests_common.h"
31 int DB::Transaction::db_result = PC_OPERATION_SUCCESS;
33 const char *WGT_APP_ID = "QwCqJ0ttyS";
35 int smack_runtime_check(void)
37 static int smack_present = -1;
38 if (-1 == smack_present) {
39 if (smack_smackfs_path()) {
50 #ifndef WRT_SMACK_ENABLED
53 return smack_runtime_check();
58 * Dropping root privileges
59 * returns 0 on success, 1 on error
61 int drop_root_privileges(uid_t appUid, gid_t appGid)
64 /* process is running as root, drop privileges */
65 if (setgid(appGid) != 0)
67 if (setuid(appUid) != 0)
77 void setLabelForSelf(const int line, const char *label)
79 int ret = smack_set_label_for_self(label);
80 RUNNER_ASSERT_MSG(ret == 0, "Error in smack_set_label_for_self(): " << ret << ", line: " << line);
84 * Add a new group to the current process groups.
86 void add_process_group(const char* group_name)
88 // get group ID by group name
89 group *gr = getgrnam(group_name);
90 RUNNER_ASSERT_ERRNO_MSG(gr != nullptr, "getgrnam failed on '" << group_name << "' group");
91 const gid_t new_group_id = gr->gr_gid;
93 // get number of groups that the current process belongs to
94 int ngroups = getgroups(0, nullptr);
96 //allocate groups table + space for new group entry
97 std::vector<gid_t> groups(ngroups + 1);
98 getgroups(ngroups, groups.data());
100 // check if the process already belongs to the group
101 if (std::find(groups.begin(), groups.end(), new_group_id) != groups.end()) return;
103 // add new group & apply change
104 groups[ngroups] = new_group_id;
105 int ret = setgroups(groups.size(), groups.data());
106 RUNNER_ASSERT_ERRNO_MSG(ret == 0, "setgroups() failed");
110 * Remove specific group from the current process groups.
112 void remove_process_group(const char* group_name)
114 // get group ID by group name
115 group *gr = getgrnam(group_name);
116 RUNNER_ASSERT_ERRNO_MSG(gr != nullptr, "getgrnam failed on '" << group_name << "' group");
117 const gid_t new_group_id = gr->gr_gid;
119 int ngroups = getgroups(0, nullptr);
120 std::vector<gid_t> groups(ngroups);
121 getgroups(ngroups, groups.data());
123 // remove group from the list
124 groups.erase(std::remove(groups.begin(), groups.end(), new_group_id), groups.end());
126 if (groups.size() != (size_t)ngroups) {
128 int ret = setgroups(groups.size(), groups.data());
129 RUNNER_ASSERT_ERRNO_MSG(ret == 0, "setgroups() failed");
133 std::string formatCstr(const char *cstr)
136 return std::string("nullptr");
137 return std::string("\"") + cstr + "\"";