]> git.saurik.com Git - apple/security.git/blob - OSX/sec/SOSCircle/Regressions/SOSRegressionUtilities.m
Security-58286.270.3.0.1.tar.gz
[apple/security.git] / OSX / sec / SOSCircle / Regressions / SOSRegressionUtilities.m
1 /*
2 * Copyright (c) 2012-2014 Apple Inc. All Rights Reserved.
3 *
4 * @APPLE_LICENSE_HEADER_START@
5 *
6 * This file contains Original Code and/or Modifications of Original Code
7 * as defined in and that are subject to the Apple Public Source License
8 * Version 2.0 (the 'License'). You may not use this file except in
9 * compliance with the License. Please obtain a copy of the License at
10 * http://www.opensource.apple.com/apsl/ and read it before using this
11 * file.
12 *
13 * The Original Code and all software distributed under the License are
14 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
15 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
16 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
17 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
18 * Please see the License for the specific language governing rights and
19 * limitations under the License.
20 *
21 * @APPLE_LICENSE_HEADER_END@
22 */
23
24 //
25 // SOSRegressionUtilities.c
26 //
27
28 #include <AssertMacros.h>
29 #include <stdio.h>
30 #include <Security/SecItem.h>
31
32 #include <utilities/SecCFWrappers.h>
33 #include <utilities/debugging.h>
34
35 #include <Security/SecureObjectSync/SOSAccount.h>
36 #include <Security/SecureObjectSync/SOSAccountPriv.h>
37 #include <Security/SecureObjectSync/SOSCircle.h>
38 #include <Security/SecureObjectSync/SOSInternal.h>
39 #include <Security/SecureObjectSync/SOSPeerInfoInternal.h>
40
41 #include <SOSCloudKeychainClient.h>
42 #include "SOSRegressionUtilities.h"
43 #include "SOSInternal.h"
44
45 #if TARGET_OS_IPHONE
46 #include <MobileGestalt.h>
47 #endif
48
49 static const uint64_t maxTimeToWaitInSeconds = 30ull * NSEC_PER_SEC;
50
51 // MARK: ----- SOS General -----
52
53 const char *cloudKeychainProxyPath = "/System/Library/Frameworks/Security.framework/Resources/CloudKeychainProxy.bundle/CloudKeychainProxy";
54
55 static const char *basecfabsoluteTimeToString(CFAbsoluteTime abstime, CFTimeZoneRef tz)
56 {
57 CFGregorianDate greg = CFAbsoluteTimeGetGregorianDate(abstime, NULL);
58 char str[20];
59 if (19 != snprintf(str, 20, "%4.4d-%2.2d-%2.2d_%2.2d:%2.2d:%2.2d",
60 (int)greg.year, greg.month, greg.day, greg.hour, greg.minute, (int)greg.second))
61 str[0]=0;
62 char *data = (char *)malloc(20);
63 strncpy(data, str, 20);
64 return data;
65 }
66
67 const char *cfabsoluteTimeToString(CFAbsoluteTime abstime)
68 {
69 return basecfabsoluteTimeToString(abstime, NULL);
70 }
71
72 const char *cfabsoluteTimeToStringLocal(CFAbsoluteTime abstime)
73 {
74 // Caller must release using free
75 CFDateFormatterRef formatter = NULL;
76 CFTimeZoneRef tz = NULL;
77 CFLocaleRef locale = NULL;
78 CFDateRef date = NULL;
79 CFStringRef cftime_string = NULL;
80 char *time_string = NULL;
81 char buffer[1024] = {0,};
82 size_t sz;
83
84 require(tz = CFTimeZoneCopySystem(), xit);
85 require(locale = CFLocaleCreate(NULL, CFSTR("en_US")), xit);
86
87 require(formatter = CFDateFormatterCreate(kCFAllocatorDefault, locale, kCFDateFormatterShortStyle, kCFDateFormatterShortStyle), xit);
88 CFDateFormatterSetFormat(formatter, CFSTR("MM/dd/yy HH:mm:ss.SSS zzz"));
89 require(date = CFDateCreate(kCFAllocatorDefault, abstime), xit);
90 require(cftime_string = CFDateFormatterCreateStringWithDate(kCFAllocatorDefault, formatter, date), xit);
91
92 CFStringGetCString(cftime_string, buffer, 1024, kCFStringEncodingUTF8);
93 sz = strnlen(buffer, 1024);
94 time_string = (char *)malloc(sz);
95 strncpy(time_string, buffer, sz+1);
96 xit:
97 CFReleaseSafe(tz);
98 CFReleaseSafe(formatter);
99 CFReleaseSafe(locale);
100 CFReleaseSafe(date);
101 CFReleaseSafe(cftime_string);
102 return time_string;
103 }
104
105 #include <sys/stat.h>
106
107 static int file_exist (const char *filename)
108 {
109 struct stat buffer;
110 return (stat (filename, &buffer) == 0);
111 }
112
113 bool XPCServiceInstalled(void)
114 {
115 return file_exist(cloudKeychainProxyPath);
116 }
117
118 void registerForKVSNotifications(const void *observer, CFStringRef name, CFNotificationCallback callBack)
119 {
120 // observer is basically a context; name may not be null
121 CFNotificationCenterRef center = CFNotificationCenterGetDarwinNotifyCenter();
122 CFNotificationSuspensionBehavior suspensionBehavior = CFNotificationSuspensionBehaviorDeliverImmediately; //ignored?
123 CFNotificationCenterAddObserver(center, observer, callBack, name, NULL, suspensionBehavior);
124 }
125
126 bool testPutObjectInCloudAndSync(CFStringRef key, CFTypeRef object, CFErrorRef *error, dispatch_group_t dgroup, dispatch_queue_t processQueue)
127 {
128 bool result = testPutObjectInCloud(key, object, error, dgroup, processQueue);
129 testSynchronize(processQueue, dgroup);
130
131 return result;
132 }
133
134 bool testPutObjectInCloud(CFStringRef key, CFTypeRef object, CFErrorRef *error, dispatch_group_t dgroup, dispatch_queue_t processQueue)
135 {
136 secnotice("test", "testPutObjectInCloud: key: %@, %@", key, object);
137 CFDictionaryRef objects = CFDictionaryCreateForCFTypes(kCFAllocatorDefault, key, object, NULL);
138 if (objects)
139 {
140 dispatch_group_enter(dgroup);
141 SOSCloudKeychainPutObjectsInCloud(objects, processQueue, ^ (CFDictionaryRef returnedValues, CFErrorRef error)
142 {
143 secnotice("test", "testPutObjectInCloud returned: %@", returnedValues);
144 if (error)
145 {
146 secnotice("test", "testPutObjectInCloud returned: %@", error);
147 CFRelease(error);
148 }
149 dispatch_group_leave(dgroup);
150 });
151 CFRelease(objects);
152 }
153
154 return true;
155 }
156
157 CFTypeRef testGetObjectFromCloud(CFStringRef key, dispatch_queue_t processQueue, dispatch_group_t dgroup)
158 {
159 // TODO: make sure we return NULL, not CFNull
160 secnotice("test", "start");
161 CFMutableArrayRef keysToGet = CFArrayCreateMutableForCFTypes(kCFAllocatorDefault);
162 CFArrayAppendValue(keysToGet, key);
163
164 __block CFTypeRef object = NULL;
165
166 dispatch_semaphore_t waitSemaphore = dispatch_semaphore_create(0);
167 dispatch_time_t finishTime = dispatch_time(DISPATCH_TIME_NOW, maxTimeToWaitInSeconds);
168
169 dispatch_group_enter(dgroup);
170 SOSCloudKeychainGetObjectsFromCloud(keysToGet, processQueue, ^ (CFDictionaryRef returnedValues, CFErrorRef error)
171 {
172 secnotice("test", "SOSCloudKeychainGetObjectsFromCloud returned: %@", returnedValues);
173 if (returnedValues)
174 {
175 object = (CFTypeRef)CFDictionaryGetValue(returnedValues, key);
176 if (object)
177 CFRetain(object);
178 }
179 if (error)
180 {
181 secerror("SOSCloudKeychainGetObjectsFromCloud returned error: %@", error);
182 // CFRelease(*error);
183 }
184 dispatch_group_leave(dgroup);
185 secnotice("test", "SOSCloudKeychainGetObjectsFromCloud block exit: %@", object);
186 dispatch_semaphore_signal(waitSemaphore);
187 });
188
189 dispatch_semaphore_wait(waitSemaphore, finishTime);
190 if (object && (CFGetTypeID(object) == CFNullGetTypeID())) // return a NULL instead of a CFNull
191 {
192 CFRelease(object);
193 object = NULL;
194 }
195 secnotice("test", "returned: %@", object);
196 return object;
197 }
198
199 CFTypeRef testGetObjectsFromCloud(CFArrayRef keysToGet, dispatch_queue_t processQueue, dispatch_group_t dgroup)
200 {
201 __block CFTypeRef object = NULL;
202
203 dispatch_semaphore_t waitSemaphore = dispatch_semaphore_create(0);
204 dispatch_time_t finishTime = dispatch_time(DISPATCH_TIME_NOW, maxTimeToWaitInSeconds);
205 dispatch_group_enter(dgroup);
206
207 CloudKeychainReplyBlock replyBlock =
208 ^ (CFDictionaryRef returnedValues, CFErrorRef error)
209 {
210 secnotice("test", "SOSCloudKeychainGetObjectsFromCloud returned: %@", returnedValues);
211 object = returnedValues;
212 if (object)
213 CFRetain(object);
214 if (error)
215 {
216 secerror("SOSCloudKeychainGetObjectsFromCloud returned error: %@", error);
217 }
218 dispatch_group_leave(dgroup);
219 secnotice("test", "SOSCloudKeychainGetObjectsFromCloud block exit: %@", object);
220 dispatch_semaphore_signal(waitSemaphore);
221 };
222
223 if (!keysToGet)
224 SOSCloudKeychainGetAllObjectsFromCloud(processQueue, replyBlock);
225 else
226 SOSCloudKeychainGetObjectsFromCloud(keysToGet, processQueue, replyBlock);
227
228 dispatch_semaphore_wait(waitSemaphore, finishTime);
229 if (object && (CFGetTypeID(object) == CFNullGetTypeID())) // return a NULL instead of a CFNull
230 {
231 CFRelease(object);
232 object = NULL;
233 }
234 secnotice("test", "returned: %@", object);
235 return object;
236 }
237
238 bool testSynchronize(dispatch_queue_t processQueue, dispatch_group_t dgroup)
239 {
240 __block bool result = false;
241 dispatch_semaphore_t waitSemaphore = dispatch_semaphore_create(0);
242 dispatch_time_t finishTime = dispatch_time(DISPATCH_TIME_NOW, maxTimeToWaitInSeconds);
243
244 dispatch_group_enter(dgroup);
245
246 SOSCloudKeychainSynchronize(processQueue, ^(CFDictionaryRef returnedValues, CFErrorRef error)
247 {
248 result = true;
249 dispatch_group_leave(dgroup);
250 dispatch_semaphore_signal(waitSemaphore);
251 });
252
253 dispatch_semaphore_wait(waitSemaphore, finishTime);
254 return result;
255 }
256
257 bool testClearAll(dispatch_queue_t processQueue, dispatch_group_t dgroup)
258 {
259 __block bool result = false;
260 dispatch_semaphore_t waitSemaphore = dispatch_semaphore_create(0);
261 dispatch_time_t finishTime = dispatch_time(DISPATCH_TIME_NOW, maxTimeToWaitInSeconds);
262
263 dispatch_group_enter(dgroup);
264
265 SOSCloudKeychainClearAll(processQueue, ^(CFDictionaryRef returnedValues, CFErrorRef error)
266 {
267 result = true;
268 secnotice("test", "SOSCloudKeychainClearAll returned: %@", error);
269 dispatch_group_leave(dgroup);
270 dispatch_semaphore_signal(waitSemaphore);
271 });
272
273 dispatch_semaphore_wait(waitSemaphore, finishTime);
274 secnotice("test", "SOSCloudKeychainClearAll exit");
275 return result;
276 }
277
278 void unregisterFromKVSNotifications(const void *observer)
279 {
280 CFNotificationCenterRemoveEveryObserver(CFNotificationCenterGetDarwinNotifyCenter(), observer);
281 }
282
283 //
284 // MARK: SOSPeerInfo creation helpers
285 //
286
287 CFDictionaryRef SOSCreatePeerGestaltFromName(CFStringRef name)
288 {
289 return CFDictionaryCreateForCFTypes(kCFAllocatorDefault,
290 kPIUserDefinedDeviceNameKey, name,
291 NULL);
292 }
293
294
295 SOSPeerInfoRef SOSCreatePeerInfoFromName(CFStringRef name,
296 SecKeyRef* outSigningKey,
297 SecKeyRef* outOctagonSigningKey,
298 SecKeyRef* outOctagonEncryptionKey,
299 CFErrorRef *error)
300 {
301 SOSPeerInfoRef result = NULL;
302 SecKeyRef publicKey = NULL;
303 SecKeyRef octagonSigningPublicKey = NULL;
304 SecKeyRef octagonEncryptionPublicKey = NULL;
305 CFDictionaryRef gestalt = NULL;
306
307 require(outSigningKey, exit);
308
309 require_quiet(SecError(GeneratePermanentECPair(256, &publicKey, outSigningKey), error, CFSTR("Failed To Create Key")), exit);
310 require_quiet(SecError(GeneratePermanentECPair(384, &octagonSigningPublicKey, outOctagonSigningKey), error, CFSTR("Failed to Create Octagon Signing Key")), exit);
311 require_quiet(SecError(GeneratePermanentECPair(384, &octagonEncryptionPublicKey, outOctagonEncryptionKey), error, CFSTR("Failed to Create Octagon Encryption Key")), exit);
312
313 gestalt = SOSCreatePeerGestaltFromName(name);
314 require(gestalt, exit);
315
316 result = SOSPeerInfoCreate(NULL, gestalt, NULL, *outSigningKey,
317 *outOctagonSigningKey, *outOctagonEncryptionKey, error);
318
319 exit:
320 CFReleaseNull(gestalt);
321 CFReleaseNull(publicKey);
322 CFReleaseNull(octagonSigningPublicKey);
323 CFReleaseNull(octagonEncryptionPublicKey);
324
325 return result;
326 }
327
328 SOSFullPeerInfoRef SOSCreateFullPeerInfoFromName(CFStringRef name,
329 SecKeyRef* outSigningKey,
330 SecKeyRef* outOctagonSigningKey,
331 SecKeyRef* outOctagonEncryptionKey,
332 CFErrorRef *error)
333 {
334 SOSFullPeerInfoRef result = NULL;
335 SecKeyRef publicKey = NULL;
336 CFDictionaryRef gestalt = NULL;
337
338 require(outSigningKey, exit);
339 *outSigningKey = GeneratePermanentFullECKey(256, name, error);
340 require(*outSigningKey, exit);
341
342 require(outOctagonSigningKey, exit);
343 *outOctagonSigningKey = GeneratePermanentFullECKey(384, name, error);
344 require(*outOctagonSigningKey, exit);
345
346 require(outOctagonEncryptionKey, exit);
347 *outOctagonEncryptionKey = GeneratePermanentFullECKey(384, name, error);
348 require(*outOctagonEncryptionKey, exit);
349
350 gestalt = SOSCreatePeerGestaltFromName(name);
351 require(gestalt, exit);
352
353 result = SOSFullPeerInfoCreate(NULL, gestalt,
354 NULL,
355 *outSigningKey,
356 *outOctagonSigningKey,
357 *outOctagonEncryptionKey,
358 error);
359
360 exit:
361 CFReleaseNull(gestalt);
362 CFReleaseNull(publicKey);
363
364 return result;
365 }
366
367 // MARK: ----- MAC Address -----
368
369 /*
370 * Name: GetHardwareAdress
371 *
372 * Parameters: None.
373 *
374 * Returns: Nothing
375 *
376 * Description: Retrieve the hardare address for a specified network interface
377 *
378 */
379
380 #include <stdlib.h>
381 #include <string.h>
382
383 #include <sys/socket.h>
384 #include <netinet/in.h>
385 #include <sys/sysctl.h>
386 #include <net/if.h>
387 #include <net/if_dl.h>
388 #include <net/route.h>
389
390 #include <unistd.h>
391 #include <netdb.h>
392 #include <sys/stat.h>
393
394 static int getHardwareAddress(const char *interfaceName, size_t maxLenAllowed, size_t *outActualLength, char *outHardwareAddress)
395 {
396 char *end;
397 struct if_msghdr *ifm;
398 struct sockaddr_dl *sdl;
399 char *buf;
400 int result = -1;
401 size_t buffSize;
402 int mib[6] = {CTL_NET, AF_ROUTE, 0, AF_INET, NET_RT_IFLIST, 0 };
403
404 buf = 0;
405 *outActualLength = 0;
406 // see how much space is needed
407 require_noerr(result = sysctl(mib, 6, NULL, &buffSize, NULL, 0), xit);
408
409 // allocate the buffer
410 require(buf = malloc(buffSize), xit);
411
412 // get the interface info
413 require_noerr(result = sysctl(mib, 6, buf, &buffSize, NULL, 0), xit);
414
415 ifm = (struct if_msghdr *) buf;
416 end = buf + buffSize;
417 do
418 {
419 if (ifm->ifm_type == RTM_IFINFO) // should always be true
420 {
421 sdl = (struct sockaddr_dl *) (ifm + 1);
422 if ( sdl->sdl_nlen == strlen( interfaceName ) && ( bcmp( sdl->sdl_data, interfaceName, sdl->sdl_nlen ) == 0 ) )
423 {
424 if ( sdl->sdl_alen > 0 )
425 {
426 size_t hardwareLen;
427
428 result = 0; // indicate found the interface
429 hardwareLen = sdl->sdl_alen;
430 if ( hardwareLen > maxLenAllowed )
431 {
432 hardwareLen = maxLenAllowed;
433 result = -2; // indicate truncation of the address
434 }
435 memcpy( outHardwareAddress, sdl->sdl_data + sdl->sdl_nlen, hardwareLen );
436 *outActualLength = hardwareLen;
437 break;
438
439 }
440 }
441 }
442 ifm = (struct if_msghdr *) ((char*)ifm + ifm->ifm_msglen);
443 } while ( (char*)ifm < end );
444
445 xit:
446 if (buf)
447 free(buf);
448
449 return result;
450 }
451
452 // MARK: ----- cloudTransportTests -----
453
454 CFStringRef myMacAddress(void)
455 {
456 // 6 bytes, no ":"s
457 CFStringRef result = NULL;
458 const char *interfaceName = "en0";
459 size_t maxLenAllowed = 1024;
460 size_t outActualLength = 0;
461 char outHardwareAddress[1024];
462
463 require_noerr(getHardwareAddress(interfaceName, maxLenAllowed, &outActualLength, outHardwareAddress), xit);
464 require(outActualLength==6, xit);
465 unsigned char buf[32]={0,};
466
467 unsigned char *ps = (unsigned char *)buf;
468 unsigned char *pa = (unsigned char *)outHardwareAddress;
469 for (int ix = 0; ix < 6; ix++, pa++)
470 ps += sprintf((char *)ps, "%02x", *pa);
471
472 result = CFStringCreateWithCString(kCFAllocatorDefault, (const char *)buf, kCFStringEncodingUTF8);
473
474 xit:
475 return result;
476 }