Home | History | Annotate | Line # | Download | only in sys
t_setrlimit.c revision 1.5.2.1
      1  1.5.2.1  pgoyette /* $NetBSD: t_setrlimit.c,v 1.5.2.1 2017/03/20 06:57:59 pgoyette Exp $ */
      2      1.1    jruoho 
      3      1.1    jruoho /*-
      4      1.1    jruoho  * Copyright (c) 2011 The NetBSD Foundation, Inc.
      5      1.1    jruoho  * All rights reserved.
      6      1.1    jruoho  *
      7      1.1    jruoho  * This code is derived from software contributed to The NetBSD Foundation
      8      1.1    jruoho  * by Jukka Ruohonen.
      9      1.1    jruoho  *
     10      1.1    jruoho  * Redistribution and use in source and binary forms, with or without
     11      1.1    jruoho  * modification, are permitted provided that the following conditions
     12      1.1    jruoho  * are met:
     13      1.1    jruoho  * 1. Redistributions of source code must retain the above copyright
     14      1.1    jruoho  *    notice, this list of conditions and the following disclaimer.
     15      1.1    jruoho  * 2. Redistributions in binary form must reproduce the above copyright
     16      1.1    jruoho  *    notice, this list of conditions and the following disclaimer in the
     17      1.1    jruoho  *    documentation and/or other materials provided with the distribution.
     18      1.1    jruoho  *
     19      1.1    jruoho  * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
     20      1.1    jruoho  * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
     21      1.1    jruoho  * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
     22      1.1    jruoho  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
     23      1.1    jruoho  * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
     24      1.1    jruoho  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
     25      1.1    jruoho  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
     26      1.1    jruoho  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
     27      1.1    jruoho  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
     28      1.1    jruoho  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
     29      1.1    jruoho  * POSSIBILITY OF SUCH DAMAGE.
     30      1.1    jruoho  */
     31      1.1    jruoho #include <sys/cdefs.h>
     32  1.5.2.1  pgoyette __RCSID("$NetBSD: t_setrlimit.c,v 1.5.2.1 2017/03/20 06:57:59 pgoyette Exp $");
     33      1.1    jruoho 
     34      1.1    jruoho #include <sys/resource.h>
     35      1.1    jruoho #include <sys/mman.h>
     36      1.1    jruoho #include <sys/wait.h>
     37      1.1    jruoho 
     38      1.1    jruoho #include <atf-c.h>
     39      1.1    jruoho #include <errno.h>
     40      1.1    jruoho #include <fcntl.h>
     41      1.1    jruoho #include <limits.h>
     42      1.4  christos #include <lwp.h>
     43      1.1    jruoho #include <signal.h>
     44      1.2  dholland #include <stdint.h>
     45      1.4  christos #include <stdio.h>
     46      1.1    jruoho #include <stdlib.h>
     47      1.1    jruoho #include <string.h>
     48      1.4  christos #include <ucontext.h>
     49      1.1    jruoho #include <unistd.h>
     50      1.1    jruoho 
     51      1.1    jruoho static void		 sighandler(int);
     52      1.1    jruoho static const char	 path[] = "setrlimit";
     53      1.1    jruoho 
     54      1.1    jruoho static const int rlimit[] = {
     55      1.1    jruoho 	RLIMIT_AS,
     56      1.1    jruoho 	RLIMIT_CORE,
     57      1.1    jruoho 	RLIMIT_CPU,
     58      1.1    jruoho 	RLIMIT_DATA,
     59      1.1    jruoho 	RLIMIT_FSIZE,
     60      1.1    jruoho 	RLIMIT_MEMLOCK,
     61      1.1    jruoho 	RLIMIT_NOFILE,
     62      1.1    jruoho 	RLIMIT_NPROC,
     63      1.1    jruoho 	RLIMIT_RSS,
     64      1.1    jruoho 	RLIMIT_SBSIZE,
     65      1.1    jruoho 	RLIMIT_STACK
     66      1.1    jruoho };
     67      1.1    jruoho 
     68      1.1    jruoho ATF_TC(setrlimit_basic);
     69      1.1    jruoho ATF_TC_HEAD(setrlimit_basic, tc)
     70      1.1    jruoho {
     71      1.1    jruoho 	atf_tc_set_md_var(tc, "descr", "A basic soft limit test");
     72      1.1    jruoho }
     73      1.1    jruoho 
     74      1.1    jruoho ATF_TC_BODY(setrlimit_basic, tc)
     75      1.1    jruoho {
     76      1.1    jruoho 	struct rlimit res;
     77      1.1    jruoho 	int *buf, lim;
     78      1.1    jruoho 	size_t i;
     79      1.1    jruoho 
     80      1.1    jruoho 	buf = calloc(__arraycount(rlimit), sizeof(int));
     81      1.1    jruoho 
     82      1.1    jruoho 	if (buf == NULL)
     83      1.1    jruoho 		atf_tc_fail("initialization failed");
     84      1.1    jruoho 
     85      1.1    jruoho 	for (i = lim = 0; i < __arraycount(rlimit); i++) {
     86      1.1    jruoho 
     87      1.1    jruoho 		(void)memset(&res, 0, sizeof(struct rlimit));
     88      1.1    jruoho 
     89      1.1    jruoho 		if (getrlimit(rlimit[i], &res) != 0)
     90      1.1    jruoho 			continue;
     91      1.1    jruoho 
     92      1.1    jruoho 		if (res.rlim_cur == RLIM_INFINITY || res.rlim_cur == 0)
     93      1.1    jruoho 			continue;
     94      1.1    jruoho 
     95      1.1    jruoho 		if (res.rlim_cur == res.rlim_max) /* An unprivileged run. */
     96      1.1    jruoho 			continue;
     97      1.1    jruoho 
     98      1.1    jruoho 		buf[i] = res.rlim_cur;
     99      1.1    jruoho 		res.rlim_cur = res.rlim_cur - 1;
    100      1.1    jruoho 
    101      1.1    jruoho 		if (setrlimit(rlimit[i], &res) != 0) {
    102      1.1    jruoho 			lim = rlimit[i];
    103      1.1    jruoho 			goto out;
    104      1.1    jruoho 		}
    105      1.1    jruoho 	}
    106      1.1    jruoho 
    107      1.1    jruoho out:
    108      1.1    jruoho 	for (i = 0; i < __arraycount(rlimit); i++) {
    109      1.1    jruoho 
    110      1.1    jruoho 		(void)memset(&res, 0, sizeof(struct rlimit));
    111      1.1    jruoho 
    112      1.1    jruoho 		if (buf[i] == 0)
    113      1.1    jruoho 			continue;
    114      1.1    jruoho 
    115      1.1    jruoho 		if (getrlimit(rlimit[i], &res) != 0)
    116      1.1    jruoho 			continue;
    117      1.1    jruoho 
    118      1.1    jruoho 		res.rlim_cur = buf[i];
    119      1.1    jruoho 
    120      1.1    jruoho 		(void)setrlimit(rlimit[i], &res);
    121      1.1    jruoho 	}
    122      1.1    jruoho 
    123      1.1    jruoho 	if (lim != 0)
    124      1.1    jruoho 		atf_tc_fail("failed to set limit (%d)", lim);
    125  1.5.2.1  pgoyette 	free(buf);
    126      1.1    jruoho }
    127      1.1    jruoho 
    128      1.1    jruoho ATF_TC(setrlimit_current);
    129      1.1    jruoho ATF_TC_HEAD(setrlimit_current, tc)
    130      1.1    jruoho {
    131      1.1    jruoho 	atf_tc_set_md_var(tc, "descr", "setrlimit(3) with current limits");
    132      1.1    jruoho }
    133      1.1    jruoho 
    134      1.1    jruoho ATF_TC_BODY(setrlimit_current, tc)
    135      1.1    jruoho {
    136      1.1    jruoho 	struct rlimit res;
    137      1.1    jruoho 	size_t i;
    138      1.1    jruoho 
    139      1.1    jruoho 	for (i = 0; i < __arraycount(rlimit); i++) {
    140      1.1    jruoho 
    141      1.1    jruoho 		(void)memset(&res, 0, sizeof(struct rlimit));
    142      1.1    jruoho 
    143      1.1    jruoho 		ATF_REQUIRE(getrlimit(rlimit[i], &res) == 0);
    144      1.1    jruoho 		ATF_REQUIRE(setrlimit(rlimit[i], &res) == 0);
    145      1.1    jruoho 	}
    146      1.1    jruoho }
    147      1.1    jruoho 
    148      1.1    jruoho ATF_TC(setrlimit_err);
    149      1.1    jruoho ATF_TC_HEAD(setrlimit_err, tc)
    150      1.1    jruoho {
    151      1.1    jruoho 	atf_tc_set_md_var(tc, "descr", "Test error conditions");
    152      1.1    jruoho }
    153      1.1    jruoho 
    154      1.1    jruoho ATF_TC_BODY(setrlimit_err, tc)
    155      1.1    jruoho {
    156      1.1    jruoho 	struct rlimit res;
    157      1.1    jruoho 	size_t i;
    158      1.1    jruoho 
    159      1.1    jruoho 	for (i = 0; i < __arraycount(rlimit); i++) {
    160      1.1    jruoho 
    161      1.1    jruoho 		errno = 0;
    162      1.1    jruoho 
    163      1.1    jruoho 		ATF_REQUIRE(getrlimit(rlimit[i], (void *)0) != 0);
    164      1.1    jruoho 		ATF_REQUIRE(errno == EFAULT);
    165      1.1    jruoho 	}
    166      1.1    jruoho 
    167      1.1    jruoho 	errno = 0;
    168      1.1    jruoho 
    169      1.1    jruoho 	ATF_REQUIRE(getrlimit(INT_MAX, &res) != 0);
    170      1.1    jruoho 	ATF_REQUIRE(errno == EINVAL);
    171      1.1    jruoho }
    172      1.1    jruoho 
    173      1.1    jruoho ATF_TC_WITH_CLEANUP(setrlimit_fsize);
    174      1.1    jruoho ATF_TC_HEAD(setrlimit_fsize, tc)
    175      1.1    jruoho {
    176      1.1    jruoho 	atf_tc_set_md_var(tc, "descr", "Test setrlimit(2), RLIMIT_FSIZE");
    177      1.1    jruoho }
    178      1.1    jruoho 
    179      1.1    jruoho ATF_TC_BODY(setrlimit_fsize, tc)
    180      1.1    jruoho {
    181      1.1    jruoho 	struct rlimit res;
    182      1.1    jruoho 	int fd, sta;
    183      1.1    jruoho 	pid_t pid;
    184      1.1    jruoho 
    185      1.1    jruoho 	fd = open(path, O_RDWR | O_CREAT, 0700);
    186      1.1    jruoho 
    187      1.1    jruoho 	if (fd < 0)
    188      1.1    jruoho 		atf_tc_fail("initialization failed");
    189      1.1    jruoho 
    190      1.1    jruoho 	pid = fork();
    191      1.1    jruoho 	ATF_REQUIRE(pid >= 0);
    192      1.1    jruoho 
    193      1.1    jruoho 	if (pid == 0) {
    194      1.1    jruoho 
    195      1.1    jruoho 		res.rlim_cur = 2;
    196      1.1    jruoho 		res.rlim_max = 2;
    197      1.1    jruoho 
    198      1.1    jruoho 		if (setrlimit(RLIMIT_FSIZE, &res) != 0)
    199      1.1    jruoho 			_exit(EXIT_FAILURE);
    200      1.1    jruoho 
    201      1.1    jruoho 		if (signal(SIGXFSZ, sighandler) == SIG_ERR)
    202      1.1    jruoho 			_exit(EXIT_FAILURE);
    203      1.1    jruoho 
    204      1.1    jruoho 		/*
    205      1.1    jruoho 		 * The third call should generate a SIGXFSZ.
    206      1.1    jruoho 		 */
    207      1.1    jruoho 		(void)write(fd, "X", 1);
    208      1.1    jruoho 		(void)write(fd, "X", 1);
    209      1.1    jruoho 		(void)write(fd, "X", 1);
    210      1.1    jruoho 
    211      1.1    jruoho 		_exit(EXIT_FAILURE);
    212      1.1    jruoho 	}
    213      1.1    jruoho 
    214      1.1    jruoho 	(void)close(fd);
    215      1.1    jruoho 	(void)wait(&sta);
    216      1.1    jruoho 	(void)unlink(path);
    217      1.1    jruoho 
    218      1.1    jruoho 	if (WIFEXITED(sta) == 0 || WEXITSTATUS(sta) != EXIT_SUCCESS)
    219      1.1    jruoho 		atf_tc_fail("RLIMIT_FSIZE not enforced");
    220      1.1    jruoho }
    221      1.1    jruoho 
    222      1.1    jruoho ATF_TC_CLEANUP(setrlimit_fsize, tc)
    223      1.1    jruoho {
    224      1.1    jruoho 	(void)unlink(path);
    225      1.1    jruoho }
    226      1.1    jruoho 
    227      1.1    jruoho static void
    228      1.1    jruoho sighandler(int signo)
    229      1.1    jruoho {
    230      1.1    jruoho 
    231      1.1    jruoho 	if (signo != SIGXFSZ)
    232      1.1    jruoho 		_exit(EXIT_FAILURE);
    233      1.1    jruoho 
    234      1.1    jruoho 	_exit(EXIT_SUCCESS);
    235      1.1    jruoho }
    236      1.1    jruoho 
    237      1.1    jruoho ATF_TC(setrlimit_memlock);
    238      1.1    jruoho ATF_TC_HEAD(setrlimit_memlock, tc)
    239      1.1    jruoho {
    240      1.1    jruoho 	atf_tc_set_md_var(tc, "descr", "Test setrlimit(2), RLIMIT_MEMLOCK");
    241      1.1    jruoho }
    242      1.1    jruoho 
    243      1.1    jruoho ATF_TC_BODY(setrlimit_memlock, tc)
    244      1.1    jruoho {
    245      1.1    jruoho 	struct rlimit res;
    246      1.1    jruoho 	void *buf;
    247      1.1    jruoho 	long page;
    248      1.1    jruoho 	pid_t pid;
    249      1.1    jruoho 	int sta;
    250      1.1    jruoho 
    251      1.1    jruoho 	page = sysconf(_SC_PAGESIZE);
    252      1.1    jruoho 	ATF_REQUIRE(page >= 0);
    253      1.1    jruoho 
    254      1.1    jruoho 	buf = malloc(page);
    255      1.1    jruoho 	pid = fork();
    256      1.1    jruoho 
    257      1.1    jruoho 	if (buf == NULL || pid < 0)
    258      1.1    jruoho 		atf_tc_fail("initialization failed");
    259      1.1    jruoho 
    260      1.1    jruoho 	if (pid == 0) {
    261      1.1    jruoho 
    262      1.1    jruoho 		/*
    263      1.1    jruoho 		 * Try to lock a page while
    264      1.1    jruoho 		 * RLIMIT_MEMLOCK is zero.
    265      1.1    jruoho 		 */
    266      1.1    jruoho 		if (mlock(buf, page) != 0)
    267      1.1    jruoho 			_exit(EXIT_FAILURE);
    268      1.1    jruoho 
    269      1.1    jruoho 		if (munlock(buf, page) != 0)
    270      1.1    jruoho 			_exit(EXIT_FAILURE);
    271      1.1    jruoho 
    272      1.1    jruoho 		res.rlim_cur = 0;
    273      1.1    jruoho 		res.rlim_max = 0;
    274      1.1    jruoho 
    275      1.1    jruoho 		if (setrlimit(RLIMIT_MEMLOCK, &res) != 0)
    276      1.1    jruoho 			_exit(EXIT_FAILURE);
    277      1.1    jruoho 
    278      1.1    jruoho 		if (mlock(buf, page) != 0)
    279      1.1    jruoho 			_exit(EXIT_SUCCESS);
    280      1.1    jruoho 
    281      1.1    jruoho 		(void)munlock(buf, page);
    282      1.1    jruoho 
    283      1.1    jruoho 		_exit(EXIT_FAILURE);
    284      1.1    jruoho 	}
    285      1.1    jruoho 
    286      1.1    jruoho 	free(buf);
    287      1.1    jruoho 
    288      1.1    jruoho 	(void)wait(&sta);
    289      1.1    jruoho 
    290      1.1    jruoho 	if (WIFEXITED(sta) == 0 || WEXITSTATUS(sta) != EXIT_SUCCESS)
    291      1.1    jruoho 		atf_tc_fail("RLIMIT_MEMLOCK not enforced");
    292      1.1    jruoho }
    293      1.1    jruoho 
    294      1.1    jruoho ATF_TC(setrlimit_nofile_1);
    295      1.1    jruoho ATF_TC_HEAD(setrlimit_nofile_1, tc)
    296      1.1    jruoho {
    297      1.1    jruoho 	atf_tc_set_md_var(tc, "descr", "Test setrlimit(2), RLIMIT_NOFILE, #1");
    298      1.1    jruoho }
    299      1.1    jruoho 
    300      1.1    jruoho ATF_TC_BODY(setrlimit_nofile_1, tc)
    301      1.1    jruoho {
    302      1.1    jruoho 	struct rlimit res;
    303      1.1    jruoho 	int fd, i, rv, sta;
    304      1.1    jruoho 	pid_t pid;
    305      1.1    jruoho 
    306      1.1    jruoho 	res.rlim_cur = 0;
    307      1.1    jruoho 	res.rlim_max = 0;
    308      1.1    jruoho 
    309      1.1    jruoho 	pid = fork();
    310      1.1    jruoho 	ATF_REQUIRE(pid >= 0);
    311      1.1    jruoho 
    312      1.1    jruoho 	if (pid == 0) {
    313      1.1    jruoho 
    314      1.1    jruoho 		/*
    315      1.1    jruoho 		 * Close all descriptors, set RLIMIT_NOFILE
    316      1.1    jruoho 		 * to zero, and try to open a random file.
    317      1.1    jruoho 		 * This should fail with EMFILE.
    318      1.1    jruoho 		 */
    319      1.1    jruoho 		for (i = 0; i < 1024; i++)
    320      1.1    jruoho 			(void)close(i);
    321      1.1    jruoho 
    322      1.1    jruoho 		rv = setrlimit(RLIMIT_NOFILE, &res);
    323      1.1    jruoho 
    324      1.1    jruoho 		if (rv != 0)
    325      1.1    jruoho 			_exit(EXIT_FAILURE);
    326      1.1    jruoho 
    327      1.1    jruoho 		errno = 0;
    328      1.1    jruoho 		fd = open("/etc/passwd", O_RDONLY);
    329      1.1    jruoho 
    330      1.1    jruoho 		if (fd >= 0 || errno != EMFILE)
    331      1.1    jruoho 			_exit(EXIT_FAILURE);
    332      1.1    jruoho 
    333      1.1    jruoho 		_exit(EXIT_SUCCESS);
    334      1.1    jruoho 	}
    335      1.1    jruoho 
    336      1.1    jruoho 	(void)wait(&sta);
    337      1.1    jruoho 
    338      1.1    jruoho 	if (WIFEXITED(sta) == 0 || WEXITSTATUS(sta) != EXIT_SUCCESS)
    339      1.1    jruoho 		atf_tc_fail("RLIMIT_NOFILE not enforced");
    340      1.1    jruoho }
    341      1.1    jruoho 
    342      1.1    jruoho ATF_TC(setrlimit_nofile_2);
    343      1.1    jruoho ATF_TC_HEAD(setrlimit_nofile_2, tc)
    344      1.1    jruoho {
    345      1.1    jruoho 	atf_tc_set_md_var(tc, "descr", "Test setrlimit(2), RLIMIT_NOFILE, #2");
    346      1.1    jruoho }
    347      1.1    jruoho 
    348      1.1    jruoho ATF_TC_BODY(setrlimit_nofile_2, tc)
    349      1.1    jruoho {
    350      1.1    jruoho 	static const rlim_t lim = 12;
    351      1.1    jruoho 	struct rlimit res;
    352      1.1    jruoho 	int fd, i, rv, sta;
    353      1.1    jruoho 	pid_t pid;
    354      1.1    jruoho 
    355      1.1    jruoho 	/*
    356      1.1    jruoho 	 * See that an arbitrary limit on
    357      1.1    jruoho 	 * open files is being enforced.
    358      1.1    jruoho 	 */
    359      1.1    jruoho 	res.rlim_cur = lim;
    360      1.1    jruoho 	res.rlim_max = lim;
    361      1.1    jruoho 
    362      1.1    jruoho 	pid = fork();
    363      1.1    jruoho 	ATF_REQUIRE(pid >= 0);
    364      1.1    jruoho 
    365      1.1    jruoho 	if (pid == 0) {
    366      1.1    jruoho 
    367      1.1    jruoho 		for (i = 0; i < 1024; i++)
    368      1.1    jruoho 			(void)close(i);
    369      1.1    jruoho 
    370      1.1    jruoho 		rv = setrlimit(RLIMIT_NOFILE, &res);
    371      1.1    jruoho 
    372      1.1    jruoho 		if (rv != 0)
    373      1.1    jruoho 			_exit(EXIT_FAILURE);
    374      1.1    jruoho 
    375      1.1    jruoho 		for (i = 0; i < (int)lim; i++) {
    376      1.1    jruoho 
    377      1.1    jruoho 			fd = open("/etc/passwd", O_RDONLY);
    378      1.1    jruoho 
    379      1.1    jruoho 			if (fd < 0)
    380      1.1    jruoho 				_exit(EXIT_FAILURE);
    381      1.1    jruoho 		}
    382      1.1    jruoho 
    383      1.1    jruoho 		/*
    384      1.1    jruoho 		 * After the limit has been reached,
    385      1.1    jruoho 		 * EMFILE should again follow.
    386      1.1    jruoho 		 */
    387      1.1    jruoho 		fd = open("/etc/passwd", O_RDONLY);
    388      1.1    jruoho 
    389      1.1    jruoho 		if (fd >= 0 || errno != EMFILE)
    390      1.1    jruoho 			_exit(EXIT_FAILURE);
    391      1.1    jruoho 
    392      1.1    jruoho 		_exit(EXIT_SUCCESS);
    393      1.1    jruoho 	}
    394      1.1    jruoho 
    395      1.1    jruoho 	(void)wait(&sta);
    396      1.1    jruoho 
    397      1.1    jruoho 	if (WIFEXITED(sta) == 0 || WEXITSTATUS(sta) != EXIT_SUCCESS)
    398      1.1    jruoho 		atf_tc_fail("RLIMIT_NOFILE not enforced");
    399      1.1    jruoho }
    400      1.1    jruoho 
    401      1.1    jruoho ATF_TC(setrlimit_nproc);
    402      1.1    jruoho ATF_TC_HEAD(setrlimit_nproc, tc)
    403      1.1    jruoho {
    404      1.1    jruoho 	atf_tc_set_md_var(tc, "descr", "Test setrlimit(2), RLIMIT_NPROC");
    405      1.1    jruoho 	atf_tc_set_md_var(tc, "require.user", "unprivileged");
    406      1.1    jruoho }
    407      1.1    jruoho 
    408      1.1    jruoho ATF_TC_BODY(setrlimit_nproc, tc)
    409      1.1    jruoho {
    410      1.1    jruoho 	struct rlimit res;
    411      1.1    jruoho 	pid_t pid, cpid;
    412      1.1    jruoho 	int sta;
    413      1.1    jruoho 
    414      1.1    jruoho 	pid = fork();
    415      1.1    jruoho 	ATF_REQUIRE(pid >= 0);
    416      1.1    jruoho 
    417      1.1    jruoho 	if (pid == 0) {
    418      1.1    jruoho 
    419      1.1    jruoho 		/*
    420      1.1    jruoho 		 * Set RLIMIT_NPROC to zero and try to fork.
    421      1.1    jruoho 		 */
    422      1.1    jruoho 		res.rlim_cur = 0;
    423      1.1    jruoho 		res.rlim_max = 0;
    424      1.1    jruoho 
    425      1.1    jruoho 		if (setrlimit(RLIMIT_NPROC, &res) != 0)
    426      1.1    jruoho 			_exit(EXIT_FAILURE);
    427      1.1    jruoho 
    428      1.1    jruoho 		cpid = fork();
    429      1.1    jruoho 
    430      1.1    jruoho 		if (cpid < 0)
    431      1.1    jruoho 			_exit(EXIT_SUCCESS);
    432      1.1    jruoho 
    433      1.1    jruoho 		_exit(EXIT_FAILURE);
    434      1.1    jruoho 	}
    435      1.1    jruoho 
    436      1.1    jruoho 	(void)waitpid(pid, &sta, 0);
    437      1.1    jruoho 
    438      1.1    jruoho 	if (WIFEXITED(sta) == 0 || WEXITSTATUS(sta) != EXIT_SUCCESS)
    439      1.1    jruoho 		atf_tc_fail("RLIMIT_NPROC not enforced");
    440      1.1    jruoho }
    441      1.1    jruoho 
    442      1.4  christos ATF_TC(setrlimit_nthr);
    443      1.4  christos ATF_TC_HEAD(setrlimit_nthr, tc)
    444      1.4  christos {
    445      1.4  christos 	atf_tc_set_md_var(tc, "descr", "Test setrlimit(2), RLIMIT_NTHR");
    446      1.4  christos 	atf_tc_set_md_var(tc, "require.user", "unprivileged");
    447      1.4  christos }
    448      1.4  christos 
    449      1.4  christos static void
    450      1.4  christos func(lwpid_t *id)
    451      1.4  christos {
    452      1.4  christos 	printf("thread %d\n", *id);
    453      1.4  christos 	fflush(stdout);
    454      1.4  christos 	_lwp_exit();
    455      1.4  christos }
    456      1.4  christos 
    457      1.4  christos ATF_TC_BODY(setrlimit_nthr, tc)
    458      1.4  christos {
    459      1.4  christos 	struct rlimit res;
    460      1.4  christos 	lwpid_t lwpid;
    461      1.4  christos 	ucontext_t c;
    462      1.4  christos 
    463      1.4  christos 	/*
    464      1.4  christos 	 * Set RLIMIT_NTHR to zero and try to create a thread.
    465      1.4  christos 	 */
    466      1.4  christos 	res.rlim_cur = 0;
    467      1.4  christos 	res.rlim_max = 0;
    468      1.4  christos 	ATF_REQUIRE(setrlimit(RLIMIT_NTHR, &res) == 0);
    469      1.4  christos 	ATF_REQUIRE(getcontext(&c) == 0);
    470      1.4  christos 	c.uc_link = NULL;
    471      1.4  christos 	sigemptyset(&c.uc_sigmask);
    472      1.4  christos 	c.uc_stack.ss_flags = 0;
    473      1.4  christos 	c.uc_stack.ss_size = 4096;
    474      1.4  christos 	ATF_REQUIRE((c.uc_stack.ss_sp = malloc(c.uc_stack.ss_size)) != NULL);
    475      1.4  christos 	makecontext(&c, func, 1, &lwpid);
    476      1.4  christos 	ATF_CHECK_ERRNO(EAGAIN, _lwp_create(&c, 0, &lwpid) == -1);
    477      1.4  christos }
    478      1.4  christos 
    479      1.1    jruoho ATF_TC(setrlimit_perm);
    480      1.1    jruoho ATF_TC_HEAD(setrlimit_perm, tc)
    481      1.1    jruoho {
    482      1.1    jruoho 	atf_tc_set_md_var(tc, "descr", "Test setrlimit(2) for EPERM");
    483      1.1    jruoho 	atf_tc_set_md_var(tc, "require.user", "unprivileged");
    484      1.1    jruoho }
    485      1.1    jruoho 
    486      1.1    jruoho ATF_TC_BODY(setrlimit_perm, tc)
    487      1.1    jruoho {
    488      1.1    jruoho 	struct rlimit res;
    489      1.1    jruoho 	size_t i;
    490      1.1    jruoho 
    491      1.1    jruoho 	/*
    492      1.1    jruoho 	 * Try to raise the maximum limits as an user.
    493      1.1    jruoho 	 */
    494      1.1    jruoho 	for (i = 0; i < __arraycount(rlimit); i++) {
    495      1.1    jruoho 
    496      1.1    jruoho 		ATF_REQUIRE(getrlimit(rlimit[i], &res) == 0);
    497      1.1    jruoho 
    498      1.1    jruoho 		if (res.rlim_max == UINT64_MAX) /* Overflow. */
    499      1.1    jruoho 			continue;
    500      1.1    jruoho 
    501      1.1    jruoho 		errno = 0;
    502      1.1    jruoho 		res.rlim_max = res.rlim_max + 1;
    503      1.1    jruoho 
    504      1.3     njoly 		ATF_CHECK_ERRNO(EPERM, setrlimit(rlimit[i], &res) != 0);
    505      1.1    jruoho 	}
    506      1.1    jruoho }
    507      1.1    jruoho 
    508      1.5     njoly ATF_TC(setrlimit_stack);
    509      1.5     njoly ATF_TC_HEAD(setrlimit_stack, tc)
    510      1.5     njoly {
    511      1.5     njoly 	atf_tc_set_md_var(tc, "descr", "Test setrlimit(2), RLIMIT_STACK");
    512      1.5     njoly 	atf_tc_set_md_var(tc, "require.user", "unprivileged");
    513      1.5     njoly }
    514      1.5     njoly 
    515      1.5     njoly ATF_TC_BODY(setrlimit_stack, tc)
    516      1.5     njoly {
    517      1.5     njoly 	struct rlimit res;
    518      1.5     njoly 
    519      1.5     njoly 	/* Ensure soft limit is not bigger than hard limit */
    520      1.5     njoly 	res.rlim_cur = res.rlim_max = 4192256;
    521      1.5     njoly 	ATF_REQUIRE(setrlimit(RLIMIT_STACK, &res) == 0);
    522      1.5     njoly 	ATF_REQUIRE(getrlimit(RLIMIT_STACK, &res) == 0);
    523      1.5     njoly 	ATF_CHECK(res.rlim_cur <= res.rlim_max);
    524      1.5     njoly 
    525      1.5     njoly }
    526      1.5     njoly 
    527      1.1    jruoho ATF_TP_ADD_TCS(tp)
    528      1.1    jruoho {
    529      1.1    jruoho 
    530      1.1    jruoho 	ATF_TP_ADD_TC(tp, setrlimit_basic);
    531      1.1    jruoho 	ATF_TP_ADD_TC(tp, setrlimit_current);
    532      1.1    jruoho 	ATF_TP_ADD_TC(tp, setrlimit_err);
    533      1.1    jruoho 	ATF_TP_ADD_TC(tp, setrlimit_fsize);
    534      1.1    jruoho 	ATF_TP_ADD_TC(tp, setrlimit_memlock);
    535      1.1    jruoho 	ATF_TP_ADD_TC(tp, setrlimit_nofile_1);
    536      1.1    jruoho 	ATF_TP_ADD_TC(tp, setrlimit_nofile_2);
    537      1.1    jruoho 	ATF_TP_ADD_TC(tp, setrlimit_nproc);
    538      1.1    jruoho 	ATF_TP_ADD_TC(tp, setrlimit_perm);
    539      1.4  christos 	ATF_TP_ADD_TC(tp, setrlimit_nthr);
    540      1.5     njoly 	ATF_TP_ADD_TC(tp, setrlimit_stack);
    541      1.1    jruoho 
    542      1.1    jruoho 	return atf_no_error();
    543      1.1    jruoho }
    544