2016-10-11 06:14:39 +02:00
|
|
|
from textwrap import dedent
|
|
|
|
|
|
|
|
SETUPVARS = {
|
2018-07-03 08:21:57 +02:00
|
|
|
'PIHOLE_INTERFACE': 'eth99',
|
|
|
|
'IPV4_ADDRESS': '1.1.1.1',
|
|
|
|
'IPV6_ADDRESS': 'FE80::240:D0FF:FE48:4672',
|
|
|
|
'PIHOLE_DNS_1': '4.2.2.1',
|
|
|
|
'PIHOLE_DNS_2': '4.2.2.2'
|
2016-10-11 06:14:39 +02:00
|
|
|
}
|
|
|
|
|
2018-07-03 08:35:16 +02:00
|
|
|
tick_box = "[\x1b[1;32m\xe2\x9c\x93\x1b[0m]".decode("utf-8")
|
|
|
|
cross_box = "[\x1b[1;31m\xe2\x9c\x97\x1b[0m]".decode("utf-8")
|
|
|
|
info_box = "[i]".decode("utf-8")
|
2017-06-21 13:49:05 +02:00
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2016-10-11 06:14:39 +02:00
|
|
|
def test_setupVars_are_sourced_to_global_scope(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
currently update_dialogs sources setupVars with a dot,
|
2016-11-03 05:25:13 +01:00
|
|
|
then various other functions use the variables.
|
2018-07-03 08:05:24 +02:00
|
|
|
This confirms the sourced variables are in scope between functions
|
|
|
|
'''
|
2016-10-11 06:14:39 +02:00
|
|
|
setup_var_file = 'cat <<EOF> /etc/pihole/setupVars.conf\n'
|
|
|
|
for k,v in SETUPVARS.iteritems():
|
|
|
|
setup_var_file += "{}={}\n".format(k, v)
|
|
|
|
setup_var_file += "EOF\n"
|
|
|
|
Pihole.run(setup_var_file)
|
|
|
|
|
|
|
|
script = dedent('''\
|
2016-11-03 06:02:28 +01:00
|
|
|
set -e
|
2016-10-11 06:14:39 +02:00
|
|
|
printSetupVars() {
|
|
|
|
# Currently debug test function only
|
|
|
|
echo "Outputting sourced variables"
|
2016-11-03 06:02:28 +01:00
|
|
|
echo "PIHOLE_INTERFACE=${PIHOLE_INTERFACE}"
|
|
|
|
echo "IPV4_ADDRESS=${IPV4_ADDRESS}"
|
|
|
|
echo "IPV6_ADDRESS=${IPV6_ADDRESS}"
|
|
|
|
echo "PIHOLE_DNS_1=${PIHOLE_DNS_1}"
|
|
|
|
echo "PIHOLE_DNS_2=${PIHOLE_DNS_2}"
|
2016-10-11 06:14:39 +02:00
|
|
|
}
|
|
|
|
update_dialogs() {
|
|
|
|
. /etc/pihole/setupVars.conf
|
|
|
|
}
|
|
|
|
update_dialogs
|
|
|
|
printSetupVars
|
|
|
|
''')
|
|
|
|
|
|
|
|
output = run_script(Pihole, script).stdout
|
|
|
|
|
|
|
|
for k,v in SETUPVARS.iteritems():
|
|
|
|
assert "{}={}".format(k, v) in output
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2016-10-11 06:14:39 +02:00
|
|
|
def test_setupVars_saved_to_file(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirm saved settings are written to a file for future updates to re-use
|
|
|
|
'''
|
|
|
|
# dedent works better with this and padding matching script below
|
|
|
|
set_setup_vars = '\n'
|
2016-10-11 06:14:39 +02:00
|
|
|
for k,v in SETUPVARS.iteritems():
|
|
|
|
set_setup_vars += " {}={}\n".format(k, v)
|
|
|
|
Pihole.run(set_setup_vars).stdout
|
|
|
|
|
|
|
|
script = dedent('''\
|
2016-11-03 06:02:28 +01:00
|
|
|
set -e
|
2016-10-11 06:14:39 +02:00
|
|
|
echo start
|
|
|
|
TERM=xterm
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
{}
|
2017-07-26 18:15:23 +02:00
|
|
|
mkdir -p /etc/dnsmasq.d
|
|
|
|
version_check_dnsmasq
|
2016-10-11 06:14:39 +02:00
|
|
|
finalExports
|
|
|
|
cat /etc/pihole/setupVars.conf
|
|
|
|
'''.format(set_setup_vars))
|
|
|
|
|
|
|
|
output = run_script(Pihole, script).stdout
|
|
|
|
|
|
|
|
for k,v in SETUPVARS.iteritems():
|
|
|
|
assert "{}={}".format(k, v) in output
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-01-24 03:59:48 +01:00
|
|
|
def test_configureFirewall_firewalld_running_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms firewalld rules are applied when firewallD is running
|
|
|
|
'''
|
2017-01-24 20:03:37 +01:00
|
|
|
# firewallD returns 'running' as status
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('firewall-cmd', {'*': ('running', 0)}, Pihole)
|
2017-01-24 20:03:37 +01:00
|
|
|
# Whiptail dialog returns Ok for user prompt
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('whiptail', {'*': ('', 0)}, Pihole)
|
2016-11-03 05:25:13 +01:00
|
|
|
configureFirewall = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
configureFirewall
|
2016-11-03 05:58:54 +01:00
|
|
|
''')
|
2018-03-06 19:44:57 +01:00
|
|
|
expected_stdout = 'Configuring FirewallD for httpd and pihole-FTL'
|
2016-11-03 05:25:13 +01:00
|
|
|
assert expected_stdout in configureFirewall.stdout
|
|
|
|
firewall_calls = Pihole.run('cat /var/log/firewall-cmd').stdout
|
|
|
|
assert 'firewall-cmd --state' in firewall_calls
|
2018-07-03 08:05:24 +02:00
|
|
|
assert ('firewall-cmd '
|
|
|
|
'--permanent '
|
|
|
|
'--add-service=http '
|
|
|
|
'--add-service=dns') in firewall_calls
|
2016-11-03 05:25:13 +01:00
|
|
|
assert 'firewall-cmd --reload' in firewall_calls
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-01-24 20:03:37 +01:00
|
|
|
def test_configureFirewall_firewalld_disabled_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms firewalld rules are not applied when firewallD is not running
|
|
|
|
'''
|
2017-01-24 20:03:37 +01:00
|
|
|
# firewallD returns non-running status
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('firewall-cmd', {'*': ('not running', '1')}, Pihole)
|
2017-01-24 20:03:37 +01:00
|
|
|
configureFirewall = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
configureFirewall
|
|
|
|
''')
|
2018-07-03 08:05:24 +02:00
|
|
|
expected_stdout = ('No active firewall detected.. '
|
|
|
|
'skipping firewall configuration')
|
2017-01-24 20:03:37 +01:00
|
|
|
assert expected_stdout in configureFirewall.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-01-24 20:03:37 +01:00
|
|
|
def test_configureFirewall_firewalld_enabled_declined_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms firewalld rules are not applied when firewallD is running, user
|
|
|
|
declines ruleset
|
|
|
|
'''
|
2017-01-24 20:03:37 +01:00
|
|
|
# firewallD returns running status
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('firewall-cmd', {'*': ('running', 0)}, Pihole)
|
2017-01-24 20:03:37 +01:00
|
|
|
# Whiptail dialog returns Cancel for user prompt
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('whiptail', {'*': ('', 1)}, Pihole)
|
2017-01-24 20:03:37 +01:00
|
|
|
configureFirewall = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
configureFirewall
|
|
|
|
''')
|
|
|
|
expected_stdout = 'Not installing firewall rulesets.'
|
|
|
|
assert expected_stdout in configureFirewall.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-01-24 21:04:45 +01:00
|
|
|
def test_configureFirewall_no_firewall(Pihole):
|
|
|
|
''' confirms firewall skipped no daemon is running '''
|
2017-01-24 20:58:22 +01:00
|
|
|
configureFirewall = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
configureFirewall
|
|
|
|
''')
|
2017-01-24 21:04:45 +01:00
|
|
|
expected_stdout = 'No active firewall detected'
|
2017-01-24 20:58:22 +01:00
|
|
|
assert expected_stdout in configureFirewall.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-01-24 21:09:58 +01:00
|
|
|
def test_configureFirewall_IPTables_enabled_declined_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms IPTables rules are not applied when IPTables is running, user
|
|
|
|
declines ruleset
|
|
|
|
'''
|
2017-01-24 21:09:58 +01:00
|
|
|
# iptables command exists
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('iptables', {'*': ('', '0')}, Pihole)
|
2017-01-24 21:09:58 +01:00
|
|
|
# modinfo returns always true (ip_tables module check)
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('modinfo', {'*': ('', '0')}, Pihole)
|
2017-01-24 21:09:58 +01:00
|
|
|
# Whiptail dialog returns Cancel for user prompt
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('whiptail', {'*': ('', '1')}, Pihole)
|
2017-01-24 21:09:58 +01:00
|
|
|
configureFirewall = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
configureFirewall
|
|
|
|
''')
|
|
|
|
expected_stdout = 'Not installing firewall rulesets.'
|
|
|
|
assert expected_stdout in configureFirewall.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-01-24 21:09:58 +01:00
|
|
|
def test_configureFirewall_IPTables_enabled_rules_exist_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms IPTables rules are not applied when IPTables is running and rules
|
|
|
|
exist
|
|
|
|
'''
|
|
|
|
# iptables command exists and returns 0 on calls
|
|
|
|
# (should return 0 on iptables -C)
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('iptables', {'-S': ('-P INPUT DENY', '0')}, Pihole)
|
2017-01-24 21:09:58 +01:00
|
|
|
# modinfo returns always true (ip_tables module check)
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('modinfo', {'*': ('', '0')}, Pihole)
|
2017-01-24 21:09:58 +01:00
|
|
|
# Whiptail dialog returns Cancel for user prompt
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('whiptail', {'*': ('', '0')}, Pihole)
|
2017-01-24 21:09:58 +01:00
|
|
|
configureFirewall = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
configureFirewall
|
|
|
|
''')
|
|
|
|
expected_stdout = 'Installing new IPTables firewall rulesets'
|
|
|
|
assert expected_stdout in configureFirewall.stdout
|
|
|
|
firewall_calls = Pihole.run('cat /var/log/iptables').stdout
|
2018-07-03 08:05:24 +02:00
|
|
|
iptables_line = 'iptables -I INPUT 1 -p tcp -m tcp --dport 80 -j ACCEPT'
|
|
|
|
assert iptables_line not in firewall_calls
|
|
|
|
iptables_line = 'iptables -I INPUT 1 -p tcp -m tcp --dport 53 -j ACCEPT'
|
|
|
|
assert iptables_line not in firewall_calls
|
|
|
|
iptables_line = 'iptables -I INPUT 1 -p udp -m udp --dport 53 -j ACCEPT'
|
|
|
|
assert iptables_line not in firewall_calls
|
2017-01-24 21:09:58 +01:00
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-01-24 21:09:58 +01:00
|
|
|
def test_configureFirewall_IPTables_enabled_not_exist_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms IPTables rules are applied when IPTables is running and rules do
|
|
|
|
not exist
|
|
|
|
'''
|
2017-01-25 00:44:48 +01:00
|
|
|
# iptables command and returns 0 on calls (should return 1 on iptables -C)
|
2018-07-03 08:05:24 +02:00
|
|
|
mock_command(
|
|
|
|
'iptables',
|
|
|
|
{
|
|
|
|
'-S': (
|
|
|
|
'-P INPUT DENY',
|
|
|
|
'0'
|
|
|
|
),
|
|
|
|
'-C': (
|
|
|
|
'',
|
|
|
|
1
|
|
|
|
),
|
|
|
|
'-I': (
|
|
|
|
'',
|
|
|
|
0
|
|
|
|
)
|
|
|
|
},
|
|
|
|
Pihole
|
|
|
|
)
|
2017-01-24 21:09:58 +01:00
|
|
|
# modinfo returns always true (ip_tables module check)
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('modinfo', {'*': ('', '0')}, Pihole)
|
2017-01-24 21:09:58 +01:00
|
|
|
# Whiptail dialog returns Cancel for user prompt
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('whiptail', {'*': ('', '0')}, Pihole)
|
2017-01-24 21:09:58 +01:00
|
|
|
configureFirewall = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
configureFirewall
|
|
|
|
''')
|
|
|
|
expected_stdout = 'Installing new IPTables firewall rulesets'
|
|
|
|
assert expected_stdout in configureFirewall.stdout
|
|
|
|
firewall_calls = Pihole.run('cat /var/log/iptables').stdout
|
2018-07-03 08:05:24 +02:00
|
|
|
iptables_line = 'iptables -I INPUT 1 -p tcp -m tcp --dport 80 -j ACCEPT'
|
|
|
|
assert iptables_line in firewall_calls
|
|
|
|
iptables_line = 'iptables -I INPUT 1 -p tcp -m tcp --dport 53 -j ACCEPT'
|
|
|
|
assert iptables_line in firewall_calls
|
|
|
|
iptables_line = 'iptables -I INPUT 1 -p udp -m udp --dport 53 -j ACCEPT'
|
|
|
|
assert iptables_line in firewall_calls
|
2017-01-24 21:09:58 +01:00
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2018-06-26 08:09:30 +02:00
|
|
|
def test_selinux_enforcing_default_exit(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms installer prompts to exit when SELinux is Enforcing by default
|
|
|
|
'''
|
2018-06-26 08:09:30 +02:00
|
|
|
# getenforce returns the running state of SELinux
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('getenforce', {'*': ('Enforcing', '0')}, Pihole)
|
2018-06-26 08:09:30 +02:00
|
|
|
# Whiptail dialog returns Cancel for user prompt
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('whiptail', {'*': ('', '1')}, Pihole)
|
2018-06-26 08:09:30 +02:00
|
|
|
check_selinux = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
checkSelinux
|
|
|
|
''')
|
2018-07-03 08:05:24 +02:00
|
|
|
expected_stdout = info_box + ' SELinux mode detected: Enforcing'
|
|
|
|
assert expected_stdout in check_selinux.stdout
|
|
|
|
expected_stdout = 'SELinux Enforcing detected, exiting installer'
|
|
|
|
assert expected_stdout in check_selinux.stdout
|
2018-06-26 08:09:30 +02:00
|
|
|
assert check_selinux.rc == 1
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2018-06-26 08:09:30 +02:00
|
|
|
def test_selinux_enforcing_continue(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms installer prompts to continue with custom policy warning
|
|
|
|
'''
|
2018-06-26 08:09:30 +02:00
|
|
|
# getenforce returns the running state of SELinux
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('getenforce', {'*': ('Enforcing', '0')}, Pihole)
|
2018-06-26 08:09:30 +02:00
|
|
|
# Whiptail dialog returns Cancel for user prompt
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('whiptail', {'*': ('', '0')}, Pihole)
|
2018-06-26 08:09:30 +02:00
|
|
|
check_selinux = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
checkSelinux
|
|
|
|
''')
|
2018-07-03 08:05:24 +02:00
|
|
|
expected_stdout = info_box + ' SELinux mode detected: Enforcing'
|
|
|
|
assert expected_stdout in check_selinux.stdout
|
|
|
|
expected_stdout = info_box + (' Continuing installation with SELinux '
|
|
|
|
'Enforcing')
|
|
|
|
assert expected_stdout in check_selinux.stdout
|
|
|
|
expected_stdout = info_box + (' Please refer to official SELinux '
|
|
|
|
'documentation to create a custom policy')
|
|
|
|
assert expected_stdout in check_selinux.stdout
|
2018-06-26 08:09:30 +02:00
|
|
|
assert check_selinux.rc == 0
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2018-06-26 08:09:30 +02:00
|
|
|
def test_selinux_permissive(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms installer continues when SELinux is Permissive
|
|
|
|
'''
|
2018-06-26 08:09:30 +02:00
|
|
|
# getenforce returns the running state of SELinux
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('getenforce', {'*': ('Permissive', '0')}, Pihole)
|
2018-06-26 08:09:30 +02:00
|
|
|
check_selinux = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
checkSelinux
|
|
|
|
''')
|
2018-07-03 08:05:24 +02:00
|
|
|
expected_stdout = info_box + ' SELinux mode detected: Permissive'
|
|
|
|
assert expected_stdout in check_selinux.stdout
|
2018-06-26 08:09:30 +02:00
|
|
|
assert check_selinux.rc == 0
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2018-06-26 08:09:30 +02:00
|
|
|
def test_selinux_disabled(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms installer continues when SELinux is Disabled
|
|
|
|
'''
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('getenforce', {'*': ('Disabled', '0')}, Pihole)
|
2018-06-26 08:09:30 +02:00
|
|
|
check_selinux = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
checkSelinux
|
|
|
|
''')
|
2018-07-03 08:05:24 +02:00
|
|
|
expected_stdout = info_box + ' SELinux mode detected: Disabled'
|
|
|
|
assert expected_stdout in check_selinux.stdout
|
2018-06-26 08:09:30 +02:00
|
|
|
assert check_selinux.rc == 0
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-01-28 05:24:20 +01:00
|
|
|
def test_installPiholeWeb_fresh_install_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms all web page assets from Core repo are installed on a fresh build
|
|
|
|
'''
|
2017-01-28 05:24:20 +01:00
|
|
|
installWeb = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
installPiholeWeb
|
|
|
|
''')
|
2018-07-03 08:05:24 +02:00
|
|
|
expected_stdout = info_box + ' Installing blocking page...'
|
|
|
|
assert expected_stdout in installWeb.stdout
|
|
|
|
expected_stdout = tick_box + (' Creating directory for blocking page, '
|
|
|
|
'and copying files')
|
|
|
|
assert expected_stdout in installWeb.stdout
|
|
|
|
expected_stdout = cross_box + ' Backing up index.lighttpd.html'
|
|
|
|
assert expected_stdout in installWeb.stdout
|
|
|
|
expected_stdout = ('No default index.lighttpd.html file found... '
|
|
|
|
'not backing up')
|
|
|
|
assert expected_stdout in installWeb.stdout
|
|
|
|
expected_stdout = tick_box + ' Installing sudoer file'
|
|
|
|
assert expected_stdout in installWeb.stdout
|
2017-01-28 05:24:20 +01:00
|
|
|
web_directory = Pihole.run('ls -r /var/www/html/pihole').stdout
|
2017-01-28 05:28:03 +01:00
|
|
|
assert 'index.php' in web_directory
|
|
|
|
assert 'blockingpage.css' in web_directory
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-01-29 00:44:31 +01:00
|
|
|
def test_update_package_cache_success_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms package cache was updated without any errors
|
|
|
|
'''
|
2017-01-29 00:44:31 +01:00
|
|
|
updateCache = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
2017-01-29 01:08:43 +01:00
|
|
|
distro_check
|
2017-01-29 00:44:31 +01:00
|
|
|
update_package_cache
|
|
|
|
''')
|
2018-07-03 08:05:24 +02:00
|
|
|
expected_stdout = tick_box + ' Update local cache of available packages'
|
|
|
|
assert expected_stdout in updateCache.stdout
|
2017-06-21 13:49:05 +02:00
|
|
|
assert 'Error: Unable to update package cache.' not in updateCache.stdout
|
2017-01-29 00:44:31 +01:00
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-01-29 00:49:28 +01:00
|
|
|
def test_update_package_cache_failure_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms package cache was not updated
|
|
|
|
'''
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('apt-get', {'update': ('', '1')}, Pihole)
|
2017-01-29 00:49:28 +01:00
|
|
|
updateCache = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
2017-01-29 01:08:43 +01:00
|
|
|
distro_check
|
2017-01-29 00:49:28 +01:00
|
|
|
update_package_cache
|
|
|
|
''')
|
2018-07-03 08:05:24 +02:00
|
|
|
expected_stdout = cross_box + ' Update local cache of available packages'
|
|
|
|
assert expected_stdout in updateCache.stdout
|
2017-06-21 13:49:05 +02:00
|
|
|
assert 'Error: Unable to update package cache.' in updateCache.stdout
|
2017-01-29 00:49:28 +01:00
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-02-20 13:44:31 +01:00
|
|
|
def test_FTL_detect_aarch64_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms only aarch64 package is downloaded for FTL engine
|
|
|
|
'''
|
2017-02-20 06:38:02 +01:00
|
|
|
# mock uname to return aarch64 platform
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('uname', {'-m': ('aarch64', '0')}, Pihole)
|
2017-02-20 13:44:31 +01:00
|
|
|
# mock ldd to respond with aarch64 shared library
|
2018-07-03 08:05:24 +02:00
|
|
|
mock_command(
|
|
|
|
'ldd',
|
|
|
|
{
|
|
|
|
'/bin/ls': (
|
|
|
|
'/lib/ld-linux-aarch64.so.1',
|
|
|
|
'0'
|
|
|
|
)
|
|
|
|
},
|
|
|
|
Pihole
|
|
|
|
)
|
2017-02-20 06:38:02 +01:00
|
|
|
detectPlatform = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
2017-02-20 17:24:19 +01:00
|
|
|
FTLdetect
|
2017-02-20 06:38:02 +01:00
|
|
|
''')
|
2017-07-12 23:52:03 +02:00
|
|
|
expected_stdout = info_box + ' FTL Checks...'
|
2017-06-21 13:49:05 +02:00
|
|
|
assert expected_stdout in detectPlatform.stdout
|
|
|
|
expected_stdout = tick_box + ' Detected ARM-aarch64 architecture'
|
|
|
|
assert expected_stdout in detectPlatform.stdout
|
2017-07-12 23:52:03 +02:00
|
|
|
expected_stdout = tick_box + ' Downloading and Installing FTL'
|
2017-02-20 06:38:02 +01:00
|
|
|
assert expected_stdout in detectPlatform.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-02-20 13:44:31 +01:00
|
|
|
def test_FTL_detect_armv6l_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms only armv6l package is downloaded for FTL engine
|
|
|
|
'''
|
2017-02-20 13:44:31 +01:00
|
|
|
# mock uname to return armv6l platform
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('uname', {'-m': ('armv6l', '0')}, Pihole)
|
2017-02-20 13:44:31 +01:00
|
|
|
# mock ldd to respond with aarch64 shared library
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('ldd', {'/bin/ls': ('/lib/ld-linux-armhf.so.3', '0')}, Pihole)
|
2017-02-20 13:44:31 +01:00
|
|
|
detectPlatform = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
2017-02-20 17:24:19 +01:00
|
|
|
FTLdetect
|
2017-02-20 13:44:31 +01:00
|
|
|
''')
|
2017-07-12 23:52:03 +02:00
|
|
|
expected_stdout = info_box + ' FTL Checks...'
|
2017-06-21 13:49:05 +02:00
|
|
|
assert expected_stdout in detectPlatform.stdout
|
2018-07-03 08:05:24 +02:00
|
|
|
expected_stdout = tick_box + (' Detected ARM-hf architecture '
|
|
|
|
'(armv6 or lower)')
|
2017-06-21 13:49:05 +02:00
|
|
|
assert expected_stdout in detectPlatform.stdout
|
2017-07-12 23:52:03 +02:00
|
|
|
expected_stdout = tick_box + ' Downloading and Installing FTL'
|
2017-02-20 13:44:31 +01:00
|
|
|
assert expected_stdout in detectPlatform.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-02-20 13:44:31 +01:00
|
|
|
def test_FTL_detect_armv7l_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms only armv7l package is downloaded for FTL engine
|
|
|
|
'''
|
2017-02-20 13:44:31 +01:00
|
|
|
# mock uname to return armv7l platform
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('uname', {'-m': ('armv7l', '0')}, Pihole)
|
2017-02-20 13:44:31 +01:00
|
|
|
# mock ldd to respond with aarch64 shared library
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('ldd', {'/bin/ls': ('/lib/ld-linux-armhf.so.3', '0')}, Pihole)
|
2017-02-20 13:44:31 +01:00
|
|
|
detectPlatform = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
2017-02-20 17:24:19 +01:00
|
|
|
FTLdetect
|
2017-02-20 13:44:31 +01:00
|
|
|
''')
|
2017-07-12 23:52:03 +02:00
|
|
|
expected_stdout = info_box + ' FTL Checks...'
|
2017-06-21 13:49:05 +02:00
|
|
|
assert expected_stdout in detectPlatform.stdout
|
|
|
|
expected_stdout = tick_box + ' Detected ARM-hf architecture (armv7+)'
|
|
|
|
assert expected_stdout in detectPlatform.stdout
|
2017-07-12 23:52:03 +02:00
|
|
|
expected_stdout = tick_box + ' Downloading and Installing FTL'
|
2017-02-20 13:44:31 +01:00
|
|
|
assert expected_stdout in detectPlatform.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-02-20 13:44:31 +01:00
|
|
|
def test_FTL_detect_x86_64_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms only x86_64 package is downloaded for FTL engine
|
|
|
|
'''
|
2017-02-20 13:44:31 +01:00
|
|
|
detectPlatform = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
2017-02-20 17:24:19 +01:00
|
|
|
FTLdetect
|
2017-02-20 13:44:31 +01:00
|
|
|
''')
|
2017-07-12 23:52:03 +02:00
|
|
|
expected_stdout = info_box + ' FTL Checks...'
|
2017-06-21 13:49:05 +02:00
|
|
|
assert expected_stdout in detectPlatform.stdout
|
|
|
|
expected_stdout = tick_box + ' Detected x86_64 architecture'
|
|
|
|
assert expected_stdout in detectPlatform.stdout
|
2017-07-12 23:52:03 +02:00
|
|
|
expected_stdout = tick_box + ' Downloading and Installing FTL'
|
2017-02-20 13:44:31 +01:00
|
|
|
assert expected_stdout in detectPlatform.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-02-20 13:44:31 +01:00
|
|
|
def test_FTL_detect_unknown_no_errors(Pihole):
|
|
|
|
''' confirms only generic package is downloaded for FTL engine '''
|
|
|
|
# mock uname to return generic platform
|
2018-07-02 23:25:51 +02:00
|
|
|
mock_command('uname', {'-m': ('mips', '0')}, Pihole)
|
2017-02-20 06:38:02 +01:00
|
|
|
detectPlatform = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
2017-02-20 17:24:19 +01:00
|
|
|
FTLdetect
|
2017-02-20 06:38:02 +01:00
|
|
|
''')
|
2017-02-20 13:44:31 +01:00
|
|
|
expected_stdout = 'Not able to detect architecture (unknown: mips)'
|
2017-02-20 06:38:02 +01:00
|
|
|
assert expected_stdout in detectPlatform.stdout
|
2017-02-20 18:36:24 +01:00
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-02-20 18:36:24 +01:00
|
|
|
def test_FTL_download_aarch64_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms only aarch64 package is downloaded for FTL engine
|
|
|
|
'''
|
2017-02-20 18:36:24 +01:00
|
|
|
# mock uname to return generic platform
|
|
|
|
download_binary = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
FTLinstall pihole-FTL-aarch64-linux-gnu
|
|
|
|
''')
|
2017-07-12 23:52:03 +02:00
|
|
|
expected_stdout = tick_box + ' Downloading and Installing FTL'
|
2017-02-20 18:36:24 +01:00
|
|
|
assert expected_stdout in download_binary.stdout
|
2017-06-21 13:49:05 +02:00
|
|
|
error = 'Error: Download of binary from Github failed'
|
|
|
|
assert error not in download_binary.stdout
|
|
|
|
error = 'Error: URL not found'
|
|
|
|
assert error not in download_binary.stdout
|
2017-02-20 18:36:24 +01:00
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-02-20 18:36:24 +01:00
|
|
|
def test_FTL_download_unknown_fails_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms unknown binary is not downloaded for FTL engine
|
|
|
|
'''
|
2017-02-20 18:36:24 +01:00
|
|
|
# mock uname to return generic platform
|
|
|
|
download_binary = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
FTLinstall pihole-FTL-mips
|
|
|
|
''')
|
2017-07-12 23:52:03 +02:00
|
|
|
expected_stdout = cross_box + ' Downloading and Installing FTL'
|
2017-02-20 18:36:24 +01:00
|
|
|
assert expected_stdout in download_binary.stdout
|
2017-06-21 13:49:05 +02:00
|
|
|
error = 'Error: URL not found'
|
|
|
|
assert error in download_binary.stdout
|
2017-02-20 18:36:24 +01:00
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-02-21 02:15:04 +01:00
|
|
|
def test_FTL_binary_installed_and_responsive_no_errors(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms FTL binary is copied and functional in installed location
|
|
|
|
'''
|
2017-02-21 02:15:04 +01:00
|
|
|
installed_binary = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
FTLdetect
|
|
|
|
pihole-FTL version
|
|
|
|
''')
|
|
|
|
expected_stdout = 'v'
|
|
|
|
assert expected_stdout in installed_binary.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-02-21 11:25:18 +01:00
|
|
|
# def test_FTL_support_files_installed(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
# '''
|
|
|
|
# confirms FTL support files are installed
|
|
|
|
# '''
|
2017-02-21 11:25:18 +01:00
|
|
|
# support_files = Pihole.run('''
|
|
|
|
# source /opt/pihole/basic-install.sh
|
|
|
|
# FTLdetect
|
|
|
|
# stat -c '%a %n' /var/log/pihole-FTL.log
|
|
|
|
# stat -c '%a %n' /run/pihole-FTL.port
|
|
|
|
# stat -c '%a %n' /run/pihole-FTL.pid
|
|
|
|
# ls -lac /run
|
|
|
|
# ''')
|
|
|
|
# assert '644 /run/pihole-FTL.port' in support_files.stdout
|
|
|
|
# assert '644 /run/pihole-FTL.pid' in support_files.stdout
|
|
|
|
# assert '644 /var/log/pihole-FTL.log' in support_files.stdout
|
2017-02-21 02:28:38 +01:00
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-06-02 23:01:48 +02:00
|
|
|
def test_IPv6_only_link_local(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms IPv6 blocking is disabled for Link-local address
|
|
|
|
'''
|
2017-06-02 23:01:48 +02:00
|
|
|
# mock ip -6 address to return Link-local address
|
2018-07-03 08:05:24 +02:00
|
|
|
mock_command_2(
|
|
|
|
'ip',
|
|
|
|
{
|
|
|
|
'-6 address': (
|
|
|
|
'inet6 fe80::d210:52fa:fe00:7ad7/64 scope link',
|
|
|
|
'0'
|
|
|
|
)
|
|
|
|
},
|
|
|
|
Pihole
|
|
|
|
)
|
2017-06-02 23:01:48 +02:00
|
|
|
detectPlatform = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
useIPv6dialog
|
|
|
|
''')
|
2018-07-03 08:05:24 +02:00
|
|
|
expected_stdout = ('Unable to find IPv6 ULA/GUA address, '
|
|
|
|
'IPv6 adblocking will not be enabled')
|
2017-06-02 23:01:48 +02:00
|
|
|
assert expected_stdout in detectPlatform.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-06-02 23:01:48 +02:00
|
|
|
def test_IPv6_only_ULA(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms IPv6 blocking is enabled for ULA addresses
|
|
|
|
'''
|
2017-06-02 23:01:48 +02:00
|
|
|
# mock ip -6 address to return ULA address
|
2018-07-03 08:05:24 +02:00
|
|
|
mock_command_2(
|
|
|
|
'ip',
|
|
|
|
{
|
|
|
|
'-6 address': (
|
|
|
|
'inet6 fda2:2001:5555:0:d210:52fa:fe00:7ad7/64 scope global',
|
|
|
|
'0'
|
|
|
|
)
|
|
|
|
},
|
|
|
|
Pihole
|
|
|
|
)
|
2017-06-02 23:01:48 +02:00
|
|
|
detectPlatform = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
useIPv6dialog
|
|
|
|
''')
|
|
|
|
expected_stdout = 'Found IPv6 ULA address, using it for blocking IPv6 ads'
|
|
|
|
assert expected_stdout in detectPlatform.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-06-02 23:01:48 +02:00
|
|
|
def test_IPv6_only_GUA(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms IPv6 blocking is enabled for GUA addresses
|
|
|
|
'''
|
2017-06-02 23:01:48 +02:00
|
|
|
# mock ip -6 address to return GUA address
|
2018-07-03 08:05:24 +02:00
|
|
|
mock_command_2(
|
|
|
|
'ip',
|
|
|
|
{
|
|
|
|
'-6 address': (
|
|
|
|
'inet6 2003:12:1e43:301:d210:52fa:fe00:7ad7/64 scope global',
|
|
|
|
'0'
|
|
|
|
)
|
|
|
|
},
|
|
|
|
Pihole
|
|
|
|
)
|
2017-06-02 23:01:48 +02:00
|
|
|
detectPlatform = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
useIPv6dialog
|
|
|
|
''')
|
|
|
|
expected_stdout = 'Found IPv6 GUA address, using it for blocking IPv6 ads'
|
|
|
|
assert expected_stdout in detectPlatform.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-06-02 23:01:48 +02:00
|
|
|
def test_IPv6_GUA_ULA_test(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms IPv6 blocking is enabled for GUA and ULA addresses
|
|
|
|
'''
|
2017-06-02 23:01:48 +02:00
|
|
|
# mock ip -6 address to return GUA and ULA addresses
|
2018-07-03 08:05:24 +02:00
|
|
|
mock_command_2(
|
|
|
|
'ip',
|
|
|
|
{
|
|
|
|
'-6 address': (
|
|
|
|
'inet6 2003:12:1e43:301:d210:52fa:fe00:7ad7/64 scope global\n'
|
|
|
|
'inet6 fda2:2001:5555:0:d210:52fa:fe00:7ad7/64 scope global',
|
|
|
|
'0'
|
|
|
|
)
|
|
|
|
},
|
|
|
|
Pihole
|
|
|
|
)
|
2017-06-02 23:01:48 +02:00
|
|
|
detectPlatform = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
useIPv6dialog
|
|
|
|
''')
|
|
|
|
expected_stdout = 'Found IPv6 ULA address, using it for blocking IPv6 ads'
|
|
|
|
assert expected_stdout in detectPlatform.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-06-02 23:01:48 +02:00
|
|
|
def test_IPv6_ULA_GUA_test(Pihole):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
confirms IPv6 blocking is enabled for GUA and ULA addresses
|
|
|
|
'''
|
2017-06-02 23:01:48 +02:00
|
|
|
# mock ip -6 address to return ULA and GUA addresses
|
2018-07-03 08:05:24 +02:00
|
|
|
mock_command_2(
|
|
|
|
'ip',
|
|
|
|
{
|
|
|
|
'-6 address': (
|
|
|
|
'inet6 fda2:2001:5555:0:d210:52fa:fe00:7ad7/64 scope global\n'
|
|
|
|
'inet6 2003:12:1e43:301:d210:52fa:fe00:7ad7/64 scope global',
|
|
|
|
'0'
|
|
|
|
)
|
|
|
|
},
|
|
|
|
Pihole
|
|
|
|
)
|
2017-06-02 23:01:48 +02:00
|
|
|
detectPlatform = Pihole.run('''
|
|
|
|
source /opt/pihole/basic-install.sh
|
|
|
|
useIPv6dialog
|
|
|
|
''')
|
|
|
|
expected_stdout = 'Found IPv6 ULA address, using it for blocking IPv6 ads'
|
|
|
|
assert expected_stdout in detectPlatform.stdout
|
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2016-11-03 05:25:13 +01:00
|
|
|
# Helper functions
|
2017-01-25 00:44:48 +01:00
|
|
|
def mock_command(script, args, container):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
Allows for setup of commands we don't really want to have to run for real
|
|
|
|
in unit tests
|
|
|
|
'''
|
2016-11-03 05:25:13 +01:00
|
|
|
full_script_path = '/usr/local/bin/{}'.format(script)
|
|
|
|
mock_script = dedent('''\
|
|
|
|
#!/bin/bash -e
|
|
|
|
echo "\$0 \$@" >> /var/log/{script}
|
2017-01-25 00:44:48 +01:00
|
|
|
case "\$1" in'''.format(script=script))
|
|
|
|
for k, v in args.iteritems():
|
|
|
|
case = dedent('''
|
|
|
|
{arg})
|
|
|
|
echo {res}
|
|
|
|
exit {retcode}
|
|
|
|
;;'''.format(arg=k, res=v[0], retcode=v[1]))
|
|
|
|
mock_script += case
|
|
|
|
mock_script += dedent('''
|
|
|
|
esac''')
|
2017-01-24 03:21:50 +01:00
|
|
|
container.run('''
|
|
|
|
cat <<EOF> {script}\n{content}\nEOF
|
|
|
|
chmod +x {script}
|
2018-07-03 08:05:24 +02:00
|
|
|
rm -f /var/log/{scriptlog}'''.format(script=full_script_path,
|
|
|
|
content=mock_script,
|
|
|
|
scriptlog=script))
|
2016-11-03 05:25:13 +01:00
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2017-06-02 23:01:48 +02:00
|
|
|
def mock_command_2(script, args, container):
|
2018-07-03 08:05:24 +02:00
|
|
|
'''
|
|
|
|
Allows for setup of commands we don't really want to have to run for real
|
|
|
|
in unit tests
|
|
|
|
'''
|
2017-06-02 23:01:48 +02:00
|
|
|
full_script_path = '/usr/local/bin/{}'.format(script)
|
|
|
|
mock_script = dedent('''\
|
|
|
|
#!/bin/bash -e
|
|
|
|
echo "\$0 \$@" >> /var/log/{script}
|
|
|
|
case "\$1 \$2" in'''.format(script=script))
|
|
|
|
for k, v in args.iteritems():
|
|
|
|
case = dedent('''
|
|
|
|
\"{arg}\")
|
|
|
|
echo \"{res}\"
|
|
|
|
exit {retcode}
|
|
|
|
;;'''.format(arg=k, res=v[0], retcode=v[1]))
|
|
|
|
mock_script += case
|
|
|
|
mock_script += dedent('''
|
|
|
|
esac''')
|
|
|
|
container.run('''
|
|
|
|
cat <<EOF> {script}\n{content}\nEOF
|
|
|
|
chmod +x {script}
|
2018-07-03 08:05:24 +02:00
|
|
|
rm -f /var/log/{scriptlog}'''.format(script=full_script_path,
|
|
|
|
content=mock_script,
|
|
|
|
scriptlog=script))
|
2017-06-02 23:01:48 +02:00
|
|
|
|
2018-07-02 22:54:19 +02:00
|
|
|
|
2016-11-03 06:02:28 +01:00
|
|
|
def run_script(Pihole, script):
|
|
|
|
result = Pihole.run(script)
|
2016-10-11 06:14:39 +02:00
|
|
|
assert result.rc == 0
|
|
|
|
return result
|