testing: Log leaks and fail tests if any are detected
This commit is contained in:
+30
-1
@@ -357,7 +357,7 @@ do
|
||||
|
||||
|
||||
##########################################################################
|
||||
# copy test specific configurations to uml hosts and clear auth.log files
|
||||
# copy test specific configurations to hosts and clear log files
|
||||
#
|
||||
|
||||
DBDIR=/etc/db.d
|
||||
@@ -409,6 +409,16 @@ do
|
||||
ssh $SSHCONF root@`eval echo \\\$ipv4_$host` 'conntrack -F' >/dev/null 2>&1
|
||||
done
|
||||
|
||||
##########################################################################
|
||||
# remove leak detective log on all hosts
|
||||
#
|
||||
|
||||
export LEAK_DETECTIVE_LOG=/var/log/leak-detective.log
|
||||
for host in $STRONGSWANHOSTS
|
||||
do
|
||||
ssh $SSHCONF root@`eval echo \\\$ipv4_$host` 'rm -f $LEAK_DETECTIVE_LOG' >/dev/null 2>&1
|
||||
done
|
||||
|
||||
##########################################################################
|
||||
# flush IPsec state on all hosts
|
||||
#
|
||||
@@ -802,6 +812,25 @@ do
|
||||
fi
|
||||
done
|
||||
|
||||
|
||||
##########################################################################
|
||||
# make sure there were no leaks
|
||||
#
|
||||
|
||||
for host in $STRONGSWANHOSTS
|
||||
do
|
||||
eval HOSTLOGIN=root@\$ipv4_${host}
|
||||
LEAKS=`ssh $SSHCONF $HOSTLOGIN 'cat $LEAK_DETECTIVE_LOG 2>/dev/null | grep -v "No leaks detected.*"'`
|
||||
if [ -n "$LEAKS" ]
|
||||
then
|
||||
echo -e "\n$host# cat $LEAK_DETECTIVE_LOG [NO]" >> $CONSOLE_LOG
|
||||
echo "$LEAKS" >> $CONSOLE_LOG
|
||||
echo "<<< $host $LEAK_DETECTIVE_LOG >>>" >> $CONSOLE_LOG
|
||||
STATUS="failed"
|
||||
fi
|
||||
done
|
||||
|
||||
|
||||
##########################################################################
|
||||
# get a copy of /var/log/auth.log
|
||||
#
|
||||
|
||||
@@ -12,3 +12,4 @@ PermitEmptyPasswords yes
|
||||
PrintMotd no
|
||||
PrintLastLog no
|
||||
UsePAM no
|
||||
AcceptEnv LEAK_DETECTIVE_LOG
|
||||
|
||||
@@ -1,6 +1,7 @@
|
||||
Host *
|
||||
# debian default
|
||||
SendEnv LANG LC_*
|
||||
SendEnv LEAK_DETECTIVE_LOG
|
||||
StrictHostKeyChecking no
|
||||
UserKnownHostsFile /dev/null
|
||||
GSSAPIAuthentication yes
|
||||
|
||||
Reference in New Issue
Block a user