blob: e6a4af8985b775ccbbe98e04ac5a7e049c1ceb39 [file] [log] [blame]
// Copyright 2015 The Chromium Authors. All rights reserved.
// Use of this source code is governed by a BSD-style license that can be
// found in the LICENSE file.
#include "chromeos/network/firewall_hole.h"
#include <utility>
#include "base/bind.h"
#include "base/memory/ptr_util.h"
#include "base/run_loop.h"
#include "base/test/scoped_task_environment.h"
#include "chromeos/dbus/dbus_thread_manager.h"
#include "chromeos/dbus/fake_permission_broker_client.h"
#include "testing/gmock/include/gmock/gmock.h"
#include "testing/gtest/include/gtest/gtest.h"
namespace chromeos {
namespace {
void CopyFirewallHole(base::RunLoop* run_loop,
std::unique_ptr<FirewallHole>* out_hole,
std::unique_ptr<FirewallHole> hole) {
*out_hole = std::move(hole);
run_loop->Quit();
}
class FirewallHoleTest : public testing::Test {
public:
FirewallHoleTest()
: scoped_task_environment_(
base::test::ScopedTaskEnvironment::MainThreadType::UI) {}
~FirewallHoleTest() override = default;
void SetUp() override { DBusThreadManager::Initialize(); }
void TearDown() override { DBusThreadManager::Shutdown(); }
FakePermissionBrokerClient* permission_broker_client() {
return static_cast<FakePermissionBrokerClient*>(
DBusThreadManager::Get()->GetPermissionBrokerClient());
}
private:
base::test::ScopedTaskEnvironment scoped_task_environment_;
};
TEST_F(FirewallHoleTest, GrantTcpPortAccess) {
base::RunLoop run_loop;
std::unique_ptr<FirewallHole> hole;
FirewallHole::Open(FirewallHole::PortType::TCP, 1234, "foo0",
base::Bind(&CopyFirewallHole, &run_loop, &hole));
run_loop.Run();
EXPECT_TRUE(hole.get());
EXPECT_TRUE(permission_broker_client()->HasTcpHole(1234, "foo0"));
hole.reset();
EXPECT_FALSE(permission_broker_client()->HasTcpHole(1234, "foo0"));
}
TEST_F(FirewallHoleTest, DenyTcpPortAccess) {
permission_broker_client()->AddTcpDenyRule(1234, "foo0");
base::RunLoop run_loop;
std::unique_ptr<FirewallHole> hole;
FirewallHole::Open(FirewallHole::PortType::TCP, 1234, "foo0",
base::Bind(&CopyFirewallHole, &run_loop, &hole));
run_loop.Run();
EXPECT_FALSE(hole.get());
}
TEST_F(FirewallHoleTest, GrantUdpPortAccess) {
base::RunLoop run_loop;
std::unique_ptr<FirewallHole> hole;
FirewallHole::Open(FirewallHole::PortType::UDP, 1234, "foo0",
base::Bind(&CopyFirewallHole, &run_loop, &hole));
run_loop.Run();
EXPECT_TRUE(hole.get());
EXPECT_TRUE(permission_broker_client()->HasUdpHole(1234, "foo0"));
hole.reset();
EXPECT_FALSE(permission_broker_client()->HasUdpHole(1234, "foo0"));
}
TEST_F(FirewallHoleTest, DenyUdpPortAccess) {
permission_broker_client()->AddUdpDenyRule(1234, "foo0");
base::RunLoop run_loop;
std::unique_ptr<FirewallHole> hole;
FirewallHole::Open(FirewallHole::PortType::UDP, 1234, "foo0",
base::Bind(&CopyFirewallHole, &run_loop, &hole));
run_loop.Run();
EXPECT_FALSE(hole.get());
}
} // namespace
} // namespace chromeos