]> git.ipfire.org Git - people/ms/strongswan.git/blob - testing/do-tests
apidoc: Conditionally run doxygen if any header/Markdown files have changed
[people/ms/strongswan.git] / testing / do-tests
1 #!/bin/bash
2 # Automatically execute the strongSwan test cases
3 #
4 # Copyright (C) 2004 Eric Marchionni, Patrik Rayo
5 # Zuercher Hochschule Winterthur
6 #
7 # This program is free software; you can redistribute it and/or modify it
8 # under the terms of the GNU General Public License as published by the
9 # Free Software Foundation; either version 2 of the License, or (at your
10 # option) any later version. See <http://www.fsf.org/copyleft/gpl.txt>.
11 #
12 # This program is distributed in the hope that it will be useful, but
13 # WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
14 # or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License
15 # for more details.
16
17 DIR=$(dirname `readlink -f $0`)
18 . $DIR/testing.conf
19 . $DIR/scripts/function.sh
20 SSHCONF="-F $DIR/ssh_config"
21
22 [ -d $DIR/hosts ] || die "Directory 'hosts' not found"
23 [ -d $DIR/tests ] || die "Directory 'tests' not found"
24 [ -d $BUILDDIR ] ||
25 die "Directory '$BUILDDIR' does not exist, please run make-testing first"
26
27 ln -sfT $DIR $TESTDIR/testing
28
29 ##############################################################################
30 # take care of new path and file variables
31 #
32
33 [ -d $TESTRESULTSDIR ] || mkdir $TESTRESULTSDIR
34
35 TESTDATE=`date +%Y%m%d-%H%M-%S`
36
37 TODAYDIR=$TESTRESULTSDIR/$TESTDATE
38 mkdir $TODAYDIR
39 TESTRESULTSHTML=$TODAYDIR/all.html
40 INDEX=$TODAYDIR/index.html
41 DEFAULTTESTSDIR=$TESTDIR/testing/tests
42
43 SOURCEIP_ROUTING_TABLE=220
44
45 testnumber="0"
46 failed_cnt="0"
47 passed_cnt="0"
48
49
50 ##############################################################################
51 # copy default tests to $BUILDDIR
52 #
53
54 TESTSDIR=$BUILDDIR/tests
55 [ -d $TESTSDIR ] || mkdir $TESTSDIR
56
57 ##############################################################################
58 # assign IP for each host to hostname
59 #
60
61 for host in $STRONGSWANHOSTS
62 do
63 eval ipv4_${host}="`echo $HOSTNAMEIPV4 | sed -n -e "s/^.*${host},//gp" | awk -F, '{ print $1 }' | awk '{ print $1 }'`"
64 eval ipv6_${host}="`echo $HOSTNAMEIPV6 | sed -n -e "s/^.*${host},//gp" | awk -F, '{ print $1 }' | awk '{ print $1 }'`"
65
66 case $host in
67 moon)
68 eval ipv4_moon1="`echo $HOSTNAMEIPV4 | sed -n -e "s/^.*${host},//gp" | awk -F, '{ print $2 }' | awk '{ print $1 }'`"
69 eval ipv6_moon1="`echo $HOSTNAMEIPV6 | sed -n -e "s/^.*${host},//gp" | awk -F, '{ print $2 }' | awk '{ print $1 }'`"
70 ;;
71 sun)
72 eval ipv4_sun1="`echo $HOSTNAMEIPV4 | sed -n -e "s/^.*${host},//gp" | awk -F, '{ print $2 }' | awk '{ print $1 }'`"
73 eval ipv6_sun1="`echo $HOSTNAMEIPV6 | sed -n -e "s/^.*${host},//gp" | awk -F, '{ print $2 }' | awk '{ print $1 }'`"
74 ;;
75 alice)
76 eval ipv4_alice1="`echo $HOSTNAMEIPV4 | sed -n -e "s/^.*${host},//gp" | awk -F, '{ print $2 }' | awk '{ print $1 }'`"
77 eval ipv6_alice1="`echo $HOSTNAMEIPV6 | sed -n -e "s/^.*${host},//gp" | awk -F, '{ print $2 }' | awk '{ print $1 }'`"
78 ;;
79 venus)
80 ;;
81 bob)
82 ;;
83 carol)
84 eval ipv4_carol1="`echo $HOSTNAMEIPV4 | sed -n -e "s/^.*${host},//gp" | awk -F, '{ print $2 }' | awk '{ print $1 }'`"
85 eval ipv6_carol1="`echo $HOSTNAMEIPV6 | sed -n -e "s/^.*${host},//gp" | awk -F, '{ print $2 }' | awk '{ print $1 }'`"
86 ;;
87 dave)
88 eval ipv4_dave1="`echo $HOSTNAMEIPV4 | sed -n -e "s/^.*${host},//gp" | awk -F, '{ print $2 }' | awk '{ print $1 }'`"
89 eval ipv6_dave1="`echo $HOSTNAMEIPV6 | sed -n -e "s/^.*${host},//gp" | awk -F, '{ print $2 }' | awk '{ print $1 }'`"
90 ;;
91 winnetou)
92 ;;
93 esac
94 done
95
96
97 ##############################################################################
98 # open ssh sessions
99 #
100 for host in $STRONGSWANHOSTS
101 do
102 ssh $SSHCONF -N root@`eval echo \\\$ipv4_$host` >/dev/null 2>&1 &
103 eval ssh_pid_$host="`echo $!`"
104 do_on_exit kill `eval echo \\\$ssh_pid_$host`
105 done
106
107
108 ##############################################################################
109 # create header for the results html file
110 #
111
112 ENVIRONMENT_HEADER=$(cat <<@EOF
113 <table border="0" cellspacing="2" cellpadding="2">
114 <tr valign="top">
115 <td><b>Host</b></td>
116 <td colspan="3">`uname -a`</td>
117 </tr>
118 <tr valign="top">
119 <td><b>Guest kernel</b></td>
120 <td colspan="3">$KERNELVERSION</td>
121 </tr>
122 <tr valign="top">
123 <td><b>strongSwan</b></td>
124 <td colspan="3">$SWANVERSION</td>
125 </tr>
126 <tr valign="top">
127 <td><b>Date</b></td>
128 <td colspan="3">$TESTDATE</td>
129 </tr>
130 <tr>
131 <td width="100">&nbsp;</td>
132 <td width="300">&nbsp;</td>
133 <td width=" 50">&nbsp;</td>
134 <td >&nbsp;</td>
135 </tr>
136 @EOF
137 )
138
139 cat > $INDEX <<@EOF
140 <html>
141 <head>
142 <title>strongSwan KVM Tests</title>
143 </head>
144 <body>
145 <h2>strongSwan KVM Tests</h2>
146 $ENVIRONMENT_HEADER
147 @EOF
148
149 cat > $TESTRESULTSHTML <<@EOF
150 <html>
151 <head>
152 <title>strongSwan KVM Tests - All Tests</title>
153 </head>
154 <body>
155 <div><a href="index.html">strongSwan KVM Tests</a> / All Tests</div>
156 <h2>All Tests</h2>
157 $ENVIRONMENT_HEADER
158 <tr align="left">
159 <th>Number</th>
160 <th>Test</th>
161 <th colspan="2">Result</th>
162 </tr>
163 @EOF
164
165 echo "Guest kernel : $KERNELVERSION"
166 echo "strongSwan : $SWANVERSION"
167 echo "Date : $TESTDATE"
168 echo
169
170
171 ##############################################################################
172 # enter specific test directory
173 #
174
175 if [ $# -gt 0 ]
176 then
177 TESTS=$*
178 else
179 # set internal field seperator
180 TESTS="`ls $DEFAULTTESTSDIR`"
181 fi
182
183 for SUBDIR in $TESTS
184 do
185 SUBTESTS="`basename $SUBDIR`"
186
187 if [ $SUBTESTS = $SUBDIR ]
188 then
189 SUBTESTS="`ls $DEFAULTTESTSDIR/$SUBDIR`"
190 else
191 SUBDIR="`dirname $SUBDIR`"
192 fi
193
194 if [ ! -d $TODAYDIR/$SUBDIR ]
195 then
196 mkdir $TODAYDIR/$SUBDIR
197 if [ $testnumber == 0 ]
198 then
199 FIRST="<b>Category</b>"
200 else
201 FIRST="&nbsp;"
202 fi
203 echo " <tr>" >> $INDEX
204 echo " <td>$FIRST</td>">> $INDEX
205 echo " <td><a href=\"$SUBDIR/index.html\">$SUBDIR</a></td>" >> $INDEX
206 echo " <td align=\"right\">x</td>" >> $INDEX
207 echo " <td>&nbsp;</td>" >> $INDEX
208 echo " </tr>" >> $INDEX
209 SUBTESTSINDEX=$TODAYDIR/$SUBDIR/index.html
210 cat > $SUBTESTSINDEX <<@EOF
211 <html>
212 <head>
213 <title>strongSwan $SUBDIR Tests</title>
214 </head>
215 <body>
216 <div><a href="../index.html">strongSwan KVM Tests</a> / $SUBDIR</div>
217 <h2>strongSwan $SUBDIR Tests</h2>
218 <table border="0" cellspacing="2" cellpadding="2">
219 <tr valign="top">
220 <td><b>Guest kernel</b></td>
221 <td colspan="3">$KERNELVERSION</td>
222 </tr>
223 <tr valign="top">
224 <td><b>strongSwan</b></td>
225 <td colspan="3">$SWANVERSION</td>
226 </tr>
227 <tr valign="top">
228 <td><b>Date</b></td>
229 <td colspan="3">$TESTDATE</td>
230 </tr>
231 <tr>
232 <td width="100">&nbsp;</td>
233 <td width="300">&nbsp;</td>
234 <td width=" 50">&nbsp;</td>
235 <td >&nbsp;</td>
236 </tr>
237 <tr align="left">
238 <th>Number</th>
239 <th>Test</th>
240 <th colspan="2">Result</th>
241 </tr>
242 @EOF
243 fi
244
245 for name in $SUBTESTS
246 do
247 let "testnumber += 1"
248 testname=$SUBDIR/$name
249 log_action " $testnumber $testname:"
250
251 if [ ! -d $DEFAULTTESTSDIR/${testname} ]
252 then
253 echo "is missing..skipped"
254 continue
255 fi
256
257 if [ $SUBDIR = "ipv6" -o $name = "rw-psk-ipv6" ]
258 then
259 IPROUTE_CMD="ip -6 route list table $SOURCEIP_ROUTING_TABLE"
260 IPROUTE_DSP=$IPROUTE_CMD
261 IPTABLES_CMD="ip6tables -v -n -L"
262 IPTABLES_DSP="ip6tables -L"
263 else
264 IPROUTE_CMD="ip route list table $SOURCEIP_ROUTING_TABLE"
265 IPROUTE_DSP=$IPROUTE_CMD
266 IPTABLES_CMD="iptables -v -n -L"
267 IPTABLES_DSP="iptables -L"
268 fi
269
270 if [ $name = "net2net-ip4-in-ip6-ikev2" -o $name = "net2net-ip6-in-ip4-ikev2" ]
271 then
272 IPROUTE_CMD="ip route list table $SOURCEIP_ROUTING_TABLE; echo; ip -6 route list table $SOURCEIP_ROUTING_TABLE"
273 IPROUTE_DSP="ip (-6) route list table $SOURCEIP_ROUTING_TABLE"
274 IPTABLES_CMD="iptables -v -n -L ; echo ; ip6tables -v -n -L"
275 IPTABLES_DSP="iptables -L ; ip6tables -L"
276 fi
277
278 [ -f $DEFAULTTESTSDIR/${testname}/description.txt ] || die "!! File 'description.txt' is missing"
279 [ -f $DEFAULTTESTSDIR/${testname}/test.conf ] || die "!! File 'test.conf' is missing"
280 [ -f $DEFAULTTESTSDIR/${testname}/pretest.dat ] || die "!! File 'pretest.dat' is missing"
281 [ -f $DEFAULTTESTSDIR/${testname}/posttest.dat ] || die "!! File 'posttest.dat' is missing"
282 [ -f $DEFAULTTESTSDIR/${testname}/evaltest.dat ] || die "!! File 'evaltest.dat' is missing"
283
284 TESTRESULTDIR=$TODAYDIR/$testname
285 mkdir -p $TESTRESULTDIR
286 CONSOLE_LOG=$TESTRESULTDIR/console.log
287 touch $CONSOLE_LOG
288
289 TESTDIR=$TESTSDIR/${testname}
290 rm -rf $TESTDIR
291 mkdir -p $TESTDIR
292 cp -rfp $DEFAULTTESTSDIR/${testname}/* $TESTDIR
293
294
295 ##############################################################################
296 # replace IP wildcards with actual IPv4 and IPv6 addresses
297 #
298
299 for host in $STRONGSWANHOSTS
300 do
301 case $host in
302 moon)
303 searchandreplace PH_IP_MOON1 $ipv4_moon1 $TESTDIR
304 searchandreplace PH_IP_MOON $ipv4_moon $TESTDIR
305 searchandreplace PH_IP6_MOON1 $ipv6_moon1 $TESTDIR
306 searchandreplace PH_IP6_MOON $ipv6_moon $TESTDIR
307 ;;
308 sun)
309 searchandreplace PH_IP_SUN1 $ipv4_sun1 $TESTDIR
310 searchandreplace PH_IP_SUN $ipv4_sun $TESTDIR
311 searchandreplace PH_IP6_SUN1 $ipv6_sun1 $TESTDIR
312 searchandreplace PH_IP6_SUN $ipv6_sun $TESTDIR
313 ;;
314 alice)
315 searchandreplace PH_IP_ALICE1 $ipv4_alice1 $TESTDIR
316 searchandreplace PH_IP_ALICE $ipv4_alice $TESTDIR
317 searchandreplace PH_IP6_ALICE1 $ipv6_alice1 $TESTDIR
318 searchandreplace PH_IP6_ALICE $ipv6_alice $TESTDIR
319 ;;
320 venus)
321 searchandreplace PH_IP_VENUS $ipv4_venus $TESTDIR
322 searchandreplace PH_IP6_VENUS $ipv6_venus $TESTDIR
323 ;;
324 bob)
325 searchandreplace PH_IP_BOB $ipv4_bob $TESTDIR
326 searchandreplace PH_IPV6_BOB $ipv6_bob $TESTDIR
327 ;;
328 carol)
329 searchandreplace PH_IP_CAROL1 $ipv4_carol1 $TESTDIR
330 searchandreplace PH_IP_CAROL $ipv4_carol $TESTDIR
331 searchandreplace PH_IP6_CAROL1 $ipv6_carol1 $TESTDIR
332 searchandreplace PH_IP6_CAROL $ipv6_carol $TESTDIR
333 ;;
334 dave)
335 searchandreplace PH_IP_DAVE1 $ipv4_dave1 $TESTDIR
336 searchandreplace PH_IP_DAVE $ipv4_dave $TESTDIR
337 searchandreplace PH_IP6_DAVE1 $ipv6_dave1 $TESTDIR
338 searchandreplace PH_IP6_DAVE $ipv6_dave $TESTDIR
339 ;;
340 winnetou)
341 searchandreplace PH_IP_WINNETOU $ipv4_winnetou $TESTDIR
342 searchandreplace PH_IP6_WINNETOU $ipv6_winnetou $TESTDIR
343 ;;
344 esac
345 done
346
347
348 ##########################################################################
349 # copy test specific configurations to uml hosts and clear auth.log files
350 #
351
352 $DIR/scripts/load-testconfig $testname
353 unset RADIUSHOSTS
354 source $TESTDIR/test.conf
355
356
357 ##########################################################################
358 # run tcpdump in the background
359 #
360
361 if [ "$TCPDUMPHOSTS" != "" ]
362 then
363 echo -e "TCPDUMP\n" >> $CONSOLE_LOG 2>&1
364
365 for host_iface in $TCPDUMPHOSTS
366 do
367 host=`echo $host_iface | awk -F ":" '{print $1}'`
368 iface=`echo $host_iface | awk -F ":" '{if ($2 != "") { print $2 } else { printf("eth0") }}'`
369 tcpdump_cmd="tcpdump -i $iface not port ssh and not port domain > /tmp/tcpdump.log 2>&1 &"
370 echo "${host}# $tcpdump_cmd" >> $CONSOLE_LOG
371 ssh $SSHCONF root@`eval echo \\\$ipv4_$host '$tcpdump_cmd'`
372 eval TDUP_${host}="true"
373 done
374 fi
375
376 ##########################################################################
377 # flush conntrack table on all hosts
378 #
379
380 for host in $STRONGSWANHOSTS
381 do
382 ssh $SSHCONF root@`eval echo \\\$ipv4_$host` 'conntrack -F' >/dev/null 2>&1
383 done
384
385
386 ##########################################################################
387 # execute pre-test commands
388 #
389
390 echo -n "pre.."
391 echo -e "\nPRE-TEST\n" >> $CONSOLE_LOG 2>&1
392
393 eval `awk -F "::" '{
394 if ($2 != "")
395 {
396 printf("echo \"%s# %s\"; ", $1, $2)
397 printf("ssh \044SSHCONF root@\044ipv4_%s \"%s\"; ", $1, $2)
398 printf("echo;\n")
399 }
400 }' $TESTDIR/pretest.dat` >> $CONSOLE_LOG 2>&1
401
402
403 ##########################################################################
404 # stop tcpdump
405 #
406
407 function stop_tcpdump {
408 echo "${1}# killall tcpdump" >> $CONSOLE_LOG
409 eval ssh $SSHCONF root@\$ipv4_${1} killall tcpdump
410 eval TDUP_${1}="false"
411 echo ""
412 }
413
414
415 ##########################################################################
416 # get and evaluate test results
417 #
418
419 echo -n "test.."
420 echo -e "\nTEST\n" >> $CONSOLE_LOG 2>&1
421
422 STATUS="passed"
423
424 eval `awk -F "::" '{
425 host=$1
426 command=$2
427 pattern=$3
428 hit=$4
429 if (command != "")
430 {
431 if (command == "tcpdump")
432 {
433 printf("if [ \044TDUP_%s == \"true\" ]; then stop_tcpdump %s; fi; \n", host, host)
434 printf("echo \"%s# cat /tmp/tcpdump.log | grep \047%s\047 [%s]\"; ", host, pattern, hit)
435 printf("ssh \044SSHCONF root@\044ipv4_%s cat /tmp/tcpdump.log | grep \"%s\"; ", host, pattern)
436 }
437 else
438 {
439 printf("echo \"%s# %s | grep \047%s\047 [%s]\"; ", host, command, pattern, hit)
440 printf("ssh \044SSHCONF root@\044ipv4_%s %s | grep \"%s\"; ", host, command, pattern)
441 }
442 printf("cmd_exit=\044?; ")
443 printf("echo; ")
444 printf("if [ \044cmd_exit -eq 0 -a \"%s\" = \"NO\" ] ", hit)
445 printf("|| [ \044cmd_exit -ne 0 -a \"%s\" = \"YES\" ] ", hit)
446 printf("; then STATUS=\"failed\"; fi; \n")
447 }
448 }' $TESTDIR/evaltest.dat` >> $CONSOLE_LOG 2>&1
449
450
451 ##########################################################################
452 # set counters
453 #
454
455 if [ $STATUS = "failed" ]
456 then
457 let "failed_cnt += 1"
458 else
459 let "passed_cnt += 1"
460 fi
461
462
463 ##########################################################################
464 # log statusall and listall output
465 # get copies of ipsec.conf, ipsec.secrets
466 # create index.html for the given test case
467
468 cat > $TESTRESULTDIR/index.html <<@EOF
469 <html>
470 <head>
471 <title>Test $testname</title>
472 </head>
473 <body>
474 <table border="0" cellpadding="0" cellspacing="0" width="600">
475 <tr><td>
476 <div><a href="../../index.html">strongSwan KVM Tests</a> / <a href="../index.html">$SUBDIR</a> / $name</div>
477 <h2>Test $testname</h2>
478 <h3>Description</h3>
479 @EOF
480
481 cat $TESTDIR/description.txt >> $TESTRESULTDIR/index.html
482
483 cat >> $TESTRESULTDIR/index.html <<@EOF
484 <ul>
485 <li><a href="console.log">console.log</a></li>
486 </ul>
487 <img src="../../images/$DIAGRAM" alt="$VIRTHOSTS">
488 @EOF
489
490 for host in $IPSECHOSTS
491 do
492 eval HOSTLOGIN=root@\$ipv4_${host}
493
494 scp $SSHCONF $HOSTLOGIN:/etc/strongswan.conf \
495 $TESTRESULTDIR/${host}.strongswan.conf > /dev/null 2>&1
496
497 if [ $SUBDIR = "swanctl" ]
498 then
499 scp $SSHCONF $HOSTLOGIN:/etc/swanctl/swanctl.conf \
500 $TESTRESULTDIR/${host}.swanctl.conf > /dev/null 2>&1
501
502 ssh $SSHCONF $HOSTLOGIN swanctl --list-conns \
503 > $TESTRESULTDIR/${host}.swanctl.conns 2>/dev/null
504
505 ssh $SSHCONF $HOSTLOGIN swanctl --list-certs \
506 > $TESTRESULTDIR/${host}.swanctl.certs 2>/dev/null
507
508 ssh $SSHCONF $HOSTLOGIN swanctl --list-pools \
509 > $TESTRESULTDIR/${host}.swanctl.pools 2>/dev/null
510
511 ssh $SSHCONF $HOSTLOGIN swanctl --list-sas \
512 > $TESTRESULTDIR/${host}.swanctl.sas 2>/dev/null
513
514 ssh $SSHCONF $HOSTLOGIN swanctl --list-pols \
515 > $TESTRESULTDIR/${host}.swanctl.pols 2>/dev/null
516
517 ssh $SSHCONF $HOSTLOGIN swanctl --stats \
518 > $TESTRESULTDIR/${host}.swanctl.stats 2>/dev/null
519 else
520 for file in ipsec.conf ipsec.secrets
521 do
522 scp $SSHCONF $HOSTLOGIN:/etc/$file \
523 $TESTRESULTDIR/${host}.$file > /dev/null 2>&1
524 done
525
526 for command in statusall listall
527 do
528 ssh $SSHCONF $HOSTLOGIN ipsec $command \
529 > $TESTRESULTDIR/${host}.$command 2>/dev/null
530 done
531
532 scp $SSHCONF $HOSTLOGIN:/etc/ipsec.d/ipsec.sql \
533 $TESTRESULTDIR/${host}.ipsec.sql > /dev/null 2>&1
534 fi
535
536 ssh $SSHCONF $HOSTLOGIN ip -s xfrm policy \
537 > $TESTRESULTDIR/${host}.ip.policy 2>/dev/null
538 ssh $SSHCONF $HOSTLOGIN ip -s xfrm state \
539 > $TESTRESULTDIR/${host}.ip.state 2>/dev/null
540 ssh $SSHCONF $HOSTLOGIN $IPROUTE_CMD \
541 > $TESTRESULTDIR/${host}.ip.route 2>/dev/null
542 ssh $SSHCONF $HOSTLOGIN $IPTABLES_CMD \
543 > $TESTRESULTDIR/${host}.iptables 2>/dev/null
544 chmod a+r $TESTRESULTDIR/*
545
546 if [ $SUBDIR = "swanctl" ]
547 then
548 cat >> $TESTRESULTDIR/index.html <<@EOF
549 <h3>$host</h3>
550 <table border="0" cellspacing="0" width="600">
551 <tr>
552 <td valign="top">
553 <ul>
554 <li><a href="$host.swanctl.conf">swanctl.conf</a></li>
555 <li><a href="$host.swanctl.conns">swanctl --list-conns</a></li>
556 <li><a href="$host.swanctl.certs">swanctl --list-certs</a></li>
557 <li><a href="$host.swanctl.pools">swanctl --list-pools</a></li>
558 <li><a href="$host.strongswan.conf">strongswan.conf</a></li>
559 </ul>
560 </td>
561 <td valign="top">
562 <ul>
563 <li><a href="$host.swanctl.sas">swanctl --list-sas</a></li>
564 <li><a href="$host.swanctl.pols">swanctl --list-pols</a></li>
565 <li><a href="$host.swanctl.stats">swanctl --stats</a></li>
566 <li><a href="$host.auth.log">auth.log</a></li>
567 <li><a href="$host.daemon.log">daemon.log</a></li>
568 </ul>
569 </td>
570 <td valign="top">
571 <ul>
572 <li><a href="$host.ip.policy">ip -s xfrm policy</a></li>
573 <li><a href="$host.ip.state">ip -s xfrm state</a></li>
574 <li><a href="$host.ip.route">$IPROUTE_DSP</a></li>
575 <li><a href="$host.iptables">$IPTABLES_DSP</a></li>
576 </ul>
577 &nbsp;
578 </td>
579 </tr>
580 </table>
581 @EOF
582
583 else
584 cat >> $TESTRESULTDIR/index.html <<@EOF
585 <h3>$host</h3>
586 <table border="0" cellspacing="0" width="600">
587 <tr>
588 <td valign="top">
589 <ul>
590 <li><a href="$host.ipsec.conf">ipsec.conf</a></li>
591 <li><a href="$host.ipsec.secrets">ipsec.secrets</a></li>
592 <li><a href="$host.ipsec.sql">ipsec.sql</a></li>
593 <li><a href="$host.strongswan.conf">strongswan.conf</a></li>
594 </ul>
595 </td>
596 <td valign="top">
597 <ul>
598 <li><a href="$host.statusall">ipsec statusall</a></li>
599 <li><a href="$host.listall">ipsec listall</a></li>
600 <li><a href="$host.auth.log">auth.log</a></li>
601 <li><a href="$host.daemon.log">daemon.log</a></li>
602 </ul>
603 </td>
604 <td valign="top">
605 <ul>
606 <li><a href="$host.ip.policy">ip -s xfrm policy</a></li>
607 <li><a href="$host.ip.state">ip -s xfrm state</a></li>
608 <li><a href="$host.ip.route">$IPROUTE_DSP</a></li>
609 <li><a href="$host.iptables">$IPTABLES_DSP</a></li>
610 </ul>
611 </td>
612 </tr>
613 </table>
614 @EOF
615 fi
616 done
617
618 for host in $RADIUSHOSTS
619 do
620 eval HOSTLOGIN=root@\$ipv4_${host}
621
622 for file in clients.conf eap.conf radiusd.conf proxy.conf users
623 do
624 scp $SSHCONF $HOSTLOGIN:/etc/freeradius/$file \
625 $TESTRESULTDIR/${host}.$file > /dev/null 2>&1
626 done
627
628 scp $SSHCONF $HOSTLOGIN:/etc/strongswan.conf \
629 $TESTRESULTDIR/${host}.strongswan.conf > /dev/null 2>&1
630
631 scp $SSHCONF $HOSTLOGIN:/var/log/freeradius/radius.log \
632 $TESTRESULTDIR/${host}.radius.log > /dev/null 2>&1
633
634 ssh $SSHCONF $HOSTLOGIN grep imcv /var/log/daemon.log \
635 >> $TESTRESULTDIR/${host}.daemon.log 2>/dev/null
636
637 chmod a+r $TESTRESULTDIR/*
638 cat >> $TESTRESULTDIR/index.html <<@EOF
639 <h3>$host</h3>
640 <table border="0" cellspacing="0" width="600">
641 <tr>
642 <td valign="top">
643 <ul>
644 <li><a href="$host.clients.conf">clients.conf</a></li>
645 <li><a href="$host.radiusd.conf">radiusd.conf</a></li>
646 <li><a href="$host.strongswan.conf">strongswan.conf</a></li>
647 </ul>
648 </td>
649 <td valign="top">
650 <ul>
651 <li><a href="$host.eap.conf">eap.conf</a></li>
652 <li><a href="$host.radius.log">radius.log</a></li>
653 <li><a href="$host.daemon.log">daemon.log</a></li>
654 </ul>
655 </td>
656 <td valign="top">
657 <ul>
658 <li><a href="$host.proxy.conf">proxy.conf</a></li>
659 <li><a href="$host.users">users</a></li>
660 </ul>
661 </td>
662 </tr>
663 </table>
664 @EOF
665
666 done
667
668 cat >> $TESTRESULTDIR/index.html <<@EOF
669 <h3>tcpdump</h3>
670 <ul>
671 @EOF
672
673 for host in $TCPDUMPHOSTS
674 do
675 eval HOSTLOGIN=root@\$ipv4_${host}
676
677 scp $SSHCONF $HOSTLOGIN:/tmp/tcpdump.log \
678 $TESTRESULTDIR/${host}.tcpdump.log > /dev/null 2>&1
679
680 cat >> $TESTRESULTDIR/index.html <<@EOF
681 <li><a href="$host.tcpdump.log">$host tcpdump.log</a></li>
682 @EOF
683
684 done
685
686 cat >> $TESTRESULTDIR/index.html <<@EOF
687 </ul>
688 @EOF
689
690 cat >> $TESTRESULTDIR/index.html <<@EOF
691 </td></tr>
692 </table>
693 </body>
694 </html>
695 @EOF
696
697
698 ##########################################################################
699 # execute post-test commands
700 #
701
702 echo -n "post"
703 echo -e "\nPOST-TEST\n" >> $CONSOLE_LOG 2>&1
704
705 eval `awk -F "::" '{
706 if ($2 != "")
707 {
708 printf("echo \"%s# %s\"; ", $1, $2)
709 printf("ssh \044SSHCONF root@\044ipv4_%s \"%s\"; ", $1, $2)
710 printf("echo;\n")
711 }
712 }' $TESTDIR/posttest.dat` >> $CONSOLE_LOG 2>&1
713
714
715 ##########################################################################
716 # get a copy of /var/log/auth.log
717 #
718
719 for host in $IPSECHOSTS
720 do
721 eval HOSTLOGIN=root@\$ipv4_${host}
722 ssh $SSHCONF $HOSTLOGIN "grep -E 'charon|last message repeated|imcv|pt-tls-client' \
723 /var/log/auth.log" >> $TESTRESULTDIR/${host}.auth.log
724 done
725
726
727 ##########################################################################
728 # get a copy of /var/log/daemon.log
729 #
730
731 for host in $IPSECHOSTS
732 do
733 eval HOSTLOGIN=root@\$ipv4_${host}
734 ssh $SSHCONF $HOSTLOGIN "grep -E 'charon|last message repeated|imcv' \
735 /var/log/daemon.log" >> $TESTRESULTDIR/${host}.daemon.log
736 done
737
738
739 ##########################################################################
740 # stop tcpdump if necessary
741 #
742
743 for host in $TCPDUMPHOSTS
744 do
745 if [ "`eval echo \\\$TDUP_${host}`" = "true" ]
746 then
747 echo "${host}# killall tcpdump" >> $CONSOLE_LOG
748 eval ssh $SSHCONF root@\$ipv4_$host killall tcpdump
749 eval TDUP_${host}="false"
750 fi
751 done
752
753
754 ##########################################################################
755 # copy default host config back if necessary
756 #
757
758 $DIR/scripts/restore-defaults $testname
759
760
761 ##########################################################################
762 # write test status to html file
763 #
764
765 if [ $STATUS = "passed" ]
766 then
767 COLOR="green"
768 log_status 0
769 else
770 COLOR="red"
771 log_status 1
772 fi
773
774 cat >> $TESTRESULTSHTML << @EOF
775 <tr>
776 <td>$testnumber</td>
777 <td><a href="$testname/index.html">$testname</a></td>
778 <td><a href="$testname/console.log"><font color="$COLOR">$STATUS</font></a></td>
779 <td>&nbsp;</td>
780 </tr>
781 @EOF
782 cat >> $SUBTESTSINDEX << @EOF
783 <tr>
784 <td>$testnumber</td>
785 <td><a href="$name/index.html">$name</a></td>
786 <td><a href="$name/console.log"><font color="$COLOR">$STATUS</font></a></td>
787 <td>&nbsp;</td>
788 </tr>
789 @EOF
790
791
792 ##########################################################################
793 # remove any charon.pid files that still may exist
794 #
795
796 for host in $IPSECHOSTS
797 do
798 eval HOSTLOGIN=root@\$ipv4_${host}
799 ssh $SSHCONF $HOSTLOGIN 'if [ -f /var/run/charon.pid ]; then rm /var/run/charon.pid; echo " removed charon.pid on `hostname`"; fi'
800 done
801
802 done
803
804 done
805
806
807 ##############################################################################
808 # finish the results html file
809 #
810
811 cat >> $TESTRESULTSHTML << @EOF
812 <tr>
813 <td>&nbsp;</td><td>&nbsp;</td><td>&nbsp;</td><td>&nbsp;</td>
814 </tr>
815 <tr>
816 <td><b>Passed</b></td><td><b><font color="green">$passed_cnt</font></b></td><td>&nbsp;</td><td>&nbsp;</td>
817 </tr>
818 <tr>
819 <td><b>Failed</b></td><td><b><font color="red">$failed_cnt</font></b></td><td>&nbsp;</td><td>&nbsp;</td>
820 </tr>
821 </table>
822 </body>
823 </html>
824 @EOF
825
826 let "all_cnt = $passed_cnt + $failed_cnt"
827
828 cat >> $INDEX << @EOF
829 <tr>
830 <td>&nbsp;</td>
831 <td><a href="all.html"><b>all</b></a></td>
832 <td align="right"><b>$all_cnt</b></td>
833 <td>&nbsp;</td>
834 </tr>
835 <tr>
836 <td><b>Failed</b></td>
837 <td>&nbsp;</td>
838 <td align="right"><b><font color="red">$failed_cnt</font></b></td>
839 <td>&nbsp;</td>
840 </tr>
841 </table>
842 </body>
843 </html>
844 @EOF
845
846 echo
847 echo_ok "Passed : $passed_cnt"
848 echo_failed "Failed : $failed_cnt"
849 echo
850
851
852 ##############################################################################
853 # copy the test results to the apache server
854 #
855
856 HTDOCS="/var/www"
857
858 ssh $SSHCONF root@${ipv4_winnetou} mkdir -p $HTDOCS/testresults > /dev/null 2>&1
859 scp $SSHCONF -r $TODAYDIR root@${ipv4_winnetou}:$HTDOCS/testresults > /dev/null 2>&1
860 ssh $SSHCONF root@${ipv4_winnetou} ln -s $HTDOCS/images $HTDOCS/testresults/$TESTDATE/images > /dev/null 2>&1
861 echo
862 echo "The results are available in $TODAYDIR"
863 echo "or via the link http://$ipv4_winnetou/testresults/$TESTDATE"
864
865 ENDDATE=`date +%Y%m%d-%H%M`
866 echo
867 echo "Finished : $ENDDATE"