]> git.ipfire.org Git - thirdparty/systemd.git/blob - test/TEST-02-CRYPTSETUP/test.sh
Merge pull request #12217 from keszybz/unlocked-operations
[thirdparty/systemd.git] / test / TEST-02-CRYPTSETUP / test.sh
1 #!/bin/bash
2 set -e
3 TEST_DESCRIPTION="cryptsetup systemd setup"
4 TEST_NO_NSPAWN=1
5
6 . $TEST_BASE_DIR/test-functions
7
8 check_result_qemu() {
9 ret=1
10 mkdir -p $TESTDIR/root
11 mount ${LOOPDEV}p1 $TESTDIR/root
12 [[ -e $TESTDIR/root/testok ]] && ret=0
13 [[ -f $TESTDIR/root/failed ]] && cp -a $TESTDIR/root/failed $TESTDIR
14 cryptsetup luksOpen ${LOOPDEV}p2 varcrypt <$TESTDIR/keyfile
15 mount /dev/mapper/varcrypt $TESTDIR/root/var
16 cp -a $TESTDIR/root/var/log/journal $TESTDIR
17 umount $TESTDIR/root/var
18 umount $TESTDIR/root
19 cryptsetup luksClose /dev/mapper/varcrypt
20 [[ -f $TESTDIR/failed ]] && cat $TESTDIR/failed
21 ls -l $TESTDIR/journal/*/*.journal
22 test -s $TESTDIR/failed && ret=$(($ret+1))
23 return $ret
24 }
25
26
27 test_setup() {
28 create_empty_image
29 echo -n test >$TESTDIR/keyfile
30 cryptsetup -q luksFormat --pbkdf pbkdf2 --pbkdf-force-iterations 1000 ${LOOPDEV}p2 $TESTDIR/keyfile
31 cryptsetup luksOpen ${LOOPDEV}p2 varcrypt <$TESTDIR/keyfile
32 mkfs.ext4 -L var /dev/mapper/varcrypt
33 mkdir -p $TESTDIR/root
34 mount ${LOOPDEV}p1 $TESTDIR/root
35 mkdir -p $TESTDIR/root/var
36 mount /dev/mapper/varcrypt $TESTDIR/root/var
37
38 # Create what will eventually be our root filesystem onto an overlay
39 (
40 LOG_LEVEL=5
41 eval $(udevadm info --export --query=env --name=/dev/mapper/varcrypt)
42 eval $(udevadm info --export --query=env --name=${LOOPDEV}p2)
43
44 setup_basic_environment
45
46 # mask some services that we do not want to run in these tests
47 ln -fs /dev/null $initdir/etc/systemd/system/systemd-hwdb-update.service
48 ln -fs /dev/null $initdir/etc/systemd/system/systemd-journal-catalog-update.service
49 ln -fs /dev/null $initdir/etc/systemd/system/systemd-networkd.service
50 ln -fs /dev/null $initdir/etc/systemd/system/systemd-networkd.socket
51 ln -fs /dev/null $initdir/etc/systemd/system/systemd-resolved.service
52 ln -fs /dev/null $initdir/etc/systemd/system/systemd-machined.service
53
54 # setup the testsuite service
55 cat >$initdir/etc/systemd/system/testsuite.service <<EOF
56 [Unit]
57 Description=Testsuite service
58 After=multi-user.target
59
60 [Service]
61 ExecStart=/bin/sh -x -c 'systemctl --state=failed --no-legend --no-pager > /failed ; echo OK > /testok'
62 Type=oneshot
63 EOF
64
65 setup_testsuite
66
67 install_dmevent
68 generate_module_dependencies
69 cat >$initdir/etc/crypttab <<EOF
70 $DM_NAME UUID=$ID_FS_UUID /etc/varkey
71 EOF
72 echo -n test > $initdir/etc/varkey
73 cat $initdir/etc/crypttab | ddebug
74
75 cat >>$initdir/etc/fstab <<EOF
76 /dev/mapper/varcrypt /var ext4 defaults 0 1
77 EOF
78 ) || return 1
79
80 ddebug "umount $TESTDIR/root/var"
81 umount $TESTDIR/root/var
82 cryptsetup luksClose /dev/mapper/varcrypt
83 ddebug "umount $TESTDIR/root"
84 umount $TESTDIR/root
85 }
86
87 test_cleanup() {
88 [ -d $TESTDIR/root/var ] && mountpoint $TESTDIR/root/var && umount $TESTDIR/root/var
89 [[ -b /dev/mapper/varcrypt ]] && cryptsetup luksClose /dev/mapper/varcrypt
90 umount $TESTDIR/root 2>/dev/null || true
91 [[ $LOOPDEV ]] && losetup -d $LOOPDEV
92 return 0
93 }
94
95 do_test "$@"