2000-06-09 21:03:05 +00:00
|
|
|
#!/bin/sh
|
2000-05-19 22:45:47 +00:00
|
|
|
#
|
2011-03-05 23:52:31 +00:00
|
|
|
# Copyright (C) 2004, 2005, 2007, 2011 Internet Systems Consortium, Inc. ("ISC")
|
2001-01-09 22:01:04 +00:00
|
|
|
# Copyright (C) 2000, 2001 Internet Software Consortium.
|
2000-08-01 01:33:37 +00:00
|
|
|
#
|
2007-06-18 23:47:57 +00:00
|
|
|
# Permission to use, copy, modify, and/or distribute this software for any
|
2000-05-19 22:45:47 +00:00
|
|
|
# purpose with or without fee is hereby granted, provided that the above
|
|
|
|
# copyright notice and this permission notice appear in all copies.
|
2000-08-01 01:33:37 +00:00
|
|
|
#
|
2004-03-05 05:14:21 +00:00
|
|
|
# THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH
|
|
|
|
# REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
|
|
|
|
# AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT,
|
|
|
|
# INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
|
|
|
|
# LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE
|
|
|
|
# OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
|
|
|
# PERFORMANCE OF THIS SOFTWARE.
|
2000-07-27 09:55:03 +00:00
|
|
|
|
2011-03-05 23:52:31 +00:00
|
|
|
# $Id: tests.sh,v 1.33 2011/03/05 23:52:30 tbox Exp $
|
2000-06-22 22:00:42 +00:00
|
|
|
|
2000-06-05 19:36:44 +00:00
|
|
|
SYSTEMTESTTOP=..
|
|
|
|
. $SYSTEMTESTTOP/conf.sh
|
|
|
|
|
2000-12-18 22:39:17 +00:00
|
|
|
DIGOPTS="+tcp +noadd +nosea +nostat +noquest +nocomm +nocmd"
|
|
|
|
|
2000-07-24 22:05:16 +00:00
|
|
|
status=0
|
2001-09-07 23:29:52 +00:00
|
|
|
|
|
|
|
echo "I:testing basic zone transfer functionality"
|
2000-12-18 22:39:17 +00:00
|
|
|
$DIG $DIGOPTS example. \
|
2000-07-05 19:42:34 +00:00
|
|
|
@10.53.0.2 axfr -p 5300 > dig.out.ns2 || status=1
|
2000-05-16 22:38:06 +00:00
|
|
|
grep ";" dig.out.ns2
|
|
|
|
|
2005-11-02 04:56:49 +00:00
|
|
|
#
|
|
|
|
# Spin to allow the zone to tranfer.
|
|
|
|
#
|
|
|
|
for i in 1 2 3 4 5
|
|
|
|
do
|
|
|
|
tmp=0
|
2000-12-18 22:39:17 +00:00
|
|
|
$DIG $DIGOPTS example. \
|
2005-11-02 04:56:49 +00:00
|
|
|
@10.53.0.3 axfr -p 5300 > dig.out.ns3 || tmp=1
|
|
|
|
grep ";" dig.out.ns3 > /dev/null
|
|
|
|
if test $? -ne 0 ; then break; fi
|
|
|
|
echo "I: plain zone re-transfer"
|
|
|
|
sleep 5
|
|
|
|
done
|
|
|
|
if test $tmp -eq 1 ; then status=1; fi
|
2000-05-16 22:38:06 +00:00
|
|
|
grep ";" dig.out.ns3
|
|
|
|
|
2001-09-08 00:24:33 +00:00
|
|
|
$PERL ../digcomp.pl dig1.good dig.out.ns2 || status=1
|
2000-05-16 22:38:06 +00:00
|
|
|
|
2001-09-08 00:24:33 +00:00
|
|
|
$PERL ../digcomp.pl dig1.good dig.out.ns3 || status=1
|
2000-05-18 22:49:29 +00:00
|
|
|
|
2001-09-07 23:29:52 +00:00
|
|
|
echo "I:testing TSIG signed zone transfers"
|
2000-12-18 22:39:17 +00:00
|
|
|
$DIG $DIGOPTS tsigzone. \
|
|
|
|
@10.53.0.2 axfr -y tsigzone.:1234abcd8765 -p 5300 \
|
2000-07-05 19:42:34 +00:00
|
|
|
> dig.out.ns2 || status=1
|
2000-06-08 22:41:37 +00:00
|
|
|
grep ";" dig.out.ns2
|
|
|
|
|
2005-11-02 04:56:49 +00:00
|
|
|
#
|
|
|
|
# Spin to allow the zone to tranfer.
|
|
|
|
#
|
|
|
|
for i in 1 2 3 4 5
|
|
|
|
do
|
|
|
|
tmp=0
|
2000-12-18 22:39:17 +00:00
|
|
|
$DIG $DIGOPTS tsigzone. \
|
|
|
|
@10.53.0.3 axfr -y tsigzone.:1234abcd8765 -p 5300 \
|
2005-11-02 04:56:49 +00:00
|
|
|
> dig.out.ns3 || tmp=1
|
|
|
|
grep ";" dig.out.ns3 > /dev/null
|
|
|
|
if test $? -ne 0 ; then break; fi
|
|
|
|
echo "I: plain zone re-transfer"
|
|
|
|
sleep 5
|
|
|
|
done
|
|
|
|
if test $tmp -eq 1 ; then status=1; fi
|
2000-06-08 22:41:37 +00:00
|
|
|
grep ";" dig.out.ns3
|
|
|
|
|
2000-07-05 19:42:34 +00:00
|
|
|
$PERL ../digcomp.pl dig.out.ns2 dig.out.ns3 || status=1
|
2000-06-08 22:41:37 +00:00
|
|
|
|
2001-09-08 00:24:33 +00:00
|
|
|
echo "I:testing ixfr-from-differences"
|
|
|
|
|
|
|
|
$PERL -i -p -e '
|
|
|
|
s/0\.0\.0\.0/0.0.0.1/;
|
|
|
|
s/1397051952/1397051953/
|
|
|
|
' ns2/example.db
|
|
|
|
|
|
|
|
$RNDC -c ../common/rndc.conf -s 10.53.0.2 -p 9953 reload 2>&1 | sed 's/^/I:ns2 /'
|
|
|
|
|
|
|
|
sleep 5
|
|
|
|
|
|
|
|
$RNDC -c ../common/rndc.conf -s 10.53.0.3 -p 9953 reload 2>&1 | sed 's/^/I:ns3 /'
|
|
|
|
|
|
|
|
sleep 5
|
|
|
|
|
|
|
|
$DIG $DIGOPTS example. \
|
|
|
|
@10.53.0.3 axfr -p 5300 > dig.out.ns3 || status=1
|
|
|
|
grep ";" dig.out.ns3
|
|
|
|
|
|
|
|
$PERL ../digcomp.pl dig2.good dig.out.ns3 || status=1
|
|
|
|
|
|
|
|
# ns3 has a journal iff it received an IXFR.
|
|
|
|
test -f ns3/example.bk.jnl || status=1
|
|
|
|
|
2011-03-04 22:01:01 +00:00
|
|
|
# now we test transfers with assorted TSIG glitches
|
|
|
|
DIGCMD="$DIG $DIGOPTS @10.53.0.4 -p 5300"
|
|
|
|
SENDCMD="$PERL ../send.pl 10.53.0.5 5301"
|
|
|
|
RNDCCMD="$RNDC -s 10.53.0.4 -p 9953 -c ../common/rndc.conf"
|
|
|
|
|
|
|
|
echo "I:testing that incorrectly signed transfers will fail..."
|
|
|
|
echo "I:initial correctly-signed transfer should succeed"
|
|
|
|
|
|
|
|
$SENDCMD < ans5/goodaxfr
|
|
|
|
sleep 1
|
|
|
|
|
|
|
|
# Initially, ns4 is not authoritative for anything.
|
|
|
|
# Now that ans is up and running with the right data, we make it
|
|
|
|
# a slave for nil.
|
|
|
|
|
|
|
|
cat <<EOF >>ns4/named.conf
|
|
|
|
zone "nil" {
|
|
|
|
type slave;
|
|
|
|
file "nil.db";
|
|
|
|
masters { 10.53.0.5 key tsig_key; };
|
|
|
|
};
|
|
|
|
EOF
|
|
|
|
|
|
|
|
$RNDCCMD reload | sed 's/^/I:ns4 /'
|
|
|
|
|
|
|
|
sleep 2
|
|
|
|
|
|
|
|
$DIGCMD nil. TXT | grep 'initial AXFR' >/dev/null || {
|
|
|
|
echo "I:failed"
|
|
|
|
status=1
|
|
|
|
}
|
|
|
|
|
|
|
|
echo "I:unsigned transfer"
|
|
|
|
|
|
|
|
$SENDCMD < ans5/unsigned
|
|
|
|
sleep 1
|
|
|
|
|
|
|
|
$RNDCCMD retransfer nil | sed 's/^/I:ns4 /'
|
|
|
|
|
|
|
|
sleep 2
|
|
|
|
|
|
|
|
$DIGCMD nil. TXT | grep 'unsigned AXFR' >/dev/null && {
|
|
|
|
echo "I:failed"
|
|
|
|
status=1
|
|
|
|
}
|
|
|
|
|
|
|
|
echo "I:bad keydata"
|
|
|
|
|
|
|
|
$SENDCMD < ans5/badkeydata
|
|
|
|
sleep 1
|
|
|
|
|
|
|
|
$RNDCCMD retransfer nil | sed 's/^/I:ns4 /'
|
|
|
|
|
|
|
|
sleep 2
|
|
|
|
|
|
|
|
$DIGCMD nil. TXT | grep 'bad keydata AXFR' >/dev/null && {
|
|
|
|
echo "I:failed"
|
|
|
|
status=1
|
|
|
|
}
|
|
|
|
|
|
|
|
echo "I:partially-signed transfer"
|
|
|
|
|
|
|
|
$SENDCMD < ans5/partial
|
|
|
|
sleep 1
|
|
|
|
|
|
|
|
$RNDCCMD retransfer nil | sed 's/^/I:ns4 /'
|
|
|
|
|
|
|
|
sleep 2
|
|
|
|
|
|
|
|
$DIGCMD nil. TXT | grep 'partially signed AXFR' >/dev/null && {
|
|
|
|
echo "I:failed"
|
|
|
|
status=1
|
|
|
|
}
|
|
|
|
|
|
|
|
echo "I:unknown key"
|
|
|
|
|
|
|
|
$SENDCMD < ans5/unknownkey
|
|
|
|
sleep 1
|
|
|
|
|
|
|
|
$RNDCCMD retransfer nil | sed 's/^/I:ns4 /'
|
|
|
|
|
|
|
|
sleep 2
|
|
|
|
|
|
|
|
$DIGCMD nil. TXT | grep 'unknown key AXFR' >/dev/null && {
|
|
|
|
echo "I:failed"
|
|
|
|
status=1
|
|
|
|
}
|
|
|
|
|
|
|
|
echo "I:incorrect key"
|
|
|
|
|
|
|
|
$SENDCMD < ans5/wrongkey
|
|
|
|
sleep 1
|
|
|
|
|
|
|
|
$RNDCCMD retransfer nil | sed 's/^/I:ns4 /'
|
|
|
|
|
|
|
|
sleep 2
|
|
|
|
|
|
|
|
$DIGCMD nil. TXT | grep 'incorrect key AXFR' >/dev/null && {
|
|
|
|
echo "I:failed"
|
|
|
|
status=1
|
|
|
|
}
|
|
|
|
|
2000-07-07 18:25:20 +00:00
|
|
|
echo "I:exit status: $status"
|
2000-07-05 18:49:06 +00:00
|
|
|
exit $status
|