1 /*
2 * Copyright (C) 2020 The Android Open Source Project
3 *
4 * Permission is hereby granted, free of charge, to any person
5 * obtaining a copy of this software and associated documentation
6 * files (the "Software"), to deal in the Software without
7 * restriction, including without limitation the rights to use, copy,
8 * modify, merge, publish, distribute, sublicense, and/or sell copies
9 * of the Software, and to permit persons to whom the Software is
10 * furnished to do so, subject to the following conditions:
11 *
12 * The above copyright notice and this permission notice shall be
13 * included in all copies or substantial portions of the Software.
14 *
15 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
16 * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
17 * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
18 * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS
19 * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN
20 * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN
21 * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
22 * SOFTWARE.
23 */
24
25 #include <gtest/gtest.h>
26
27 #include <libavb_aftl/libavb_aftl.h>
28
29 #include "avb_unittest_util.h"
30 #include "fake_avb_ops.h"
31 #include "libavb_aftl/avb_aftl_types.h"
32 #include "libavb_aftl/avb_aftl_util.h"
33 #include "libavb_aftl/avb_aftl_validate.h"
34 #include "libavb_aftl/avb_aftl_verify.h"
35
36 namespace {
37
38 /* Log transparency key */
39 const char kAftlTestKey[] = "test/data/aftl_log_key_bytes.bin";
40 /* Regular VBMeta structure without AFTL-specific data */
41 const char kVbmetaBin[] = "test/data/aftl_verify_vbmeta.bin";
42 /* Full vbmeta partition which contains the VBMeta above followed by its
43 * associated AftlDescriptor */
44 const char kVbmetaWithAftlDescBin[] = "test/data/aftl_verify_full.img";
45
46 } /* namespace */
47
48 namespace avb {
49
50 /* Extend BaseAvbToolTest to take advantage of common checks and tooling. */
51 class AvbAftlVerifyTest : public BaseAvbToolTest,
52 public FakeAvbOpsDelegateWithDefaults {
53 public:
AvbAftlVerifyTest()54 AvbAftlVerifyTest() {}
~AvbAftlVerifyTest()55 ~AvbAftlVerifyTest() {}
SetUp()56 void SetUp() override {
57 BaseAvbToolTest::SetUp();
58 ops_.set_delegate(this);
59 ops_.set_partition_dir(base::FilePath("test/data"));
60 asv_test_data_ = NULL;
61
62 /* Read in the test data. */
63 base::GetFileSize(base::FilePath(kAftlTestKey), &key_size_);
64 key_bytes_ = (uint8_t*)avb_malloc(key_size_);
65 ASSERT_TRUE(key_bytes_ != NULL);
66 base::ReadFile(base::FilePath(kAftlTestKey), (char*)key_bytes_, key_size_);
67
68 base::GetFileSize(base::FilePath(kVbmetaBin), &vbmeta_blob_size_);
69 vbmeta_blob_ = (uint8_t*)avb_malloc(vbmeta_blob_size_);
70 ASSERT_TRUE(vbmeta_blob_ != NULL);
71 base::ReadFile(
72 base::FilePath(kVbmetaBin), (char*)vbmeta_blob_, vbmeta_blob_size_);
73
74 base::GetFileSize(base::FilePath(kVbmetaWithAftlDescBin),
75 &vbmeta_full_blob_size_);
76 vbmeta_full_blob_ = (uint8_t*)avb_malloc(vbmeta_full_blob_size_);
77 ASSERT_TRUE(vbmeta_full_blob_ != NULL);
78 base::ReadFile(base::FilePath(kVbmetaWithAftlDescBin),
79 (char*)vbmeta_full_blob_,
80 vbmeta_full_blob_size_);
81
82 /* Set up required parts of asv_test_data */
83 asv_test_data_ = (AvbSlotVerifyData*)avb_calloc(sizeof(AvbSlotVerifyData));
84 ASSERT_TRUE(asv_test_data_ != NULL);
85 asv_test_data_->ab_suffix = (char*)"";
86 asv_test_data_->num_vbmeta_images = 1;
87 asv_test_data_->vbmeta_images =
88 (AvbVBMetaData*)avb_calloc(sizeof(AvbVBMetaData));
89 ASSERT_TRUE(asv_test_data_->vbmeta_images != NULL);
90 asv_test_data_->vbmeta_images[0].vbmeta_size = vbmeta_blob_size_;
91 asv_test_data_->vbmeta_images[0].vbmeta_data =
92 (uint8_t*)avb_calloc(vbmeta_blob_size_);
93 ASSERT_TRUE(asv_test_data_->vbmeta_images[0].vbmeta_data != NULL);
94 memcpy(asv_test_data_->vbmeta_images[0].vbmeta_data,
95 vbmeta_blob_,
96 vbmeta_blob_size_);
97 asv_test_data_->vbmeta_images[0].partition_name = (char*)"aftl_verify_full";
98 }
99
TearDown()100 void TearDown() override {
101 if (key_bytes_ != NULL) avb_free(key_bytes_);
102 if (vbmeta_blob_ != NULL) avb_free(vbmeta_blob_);
103 if (vbmeta_full_blob_ != NULL) avb_free(vbmeta_full_blob_);
104 if (asv_test_data_ != NULL) {
105 if (asv_test_data_->vbmeta_images != NULL) {
106 if (asv_test_data_->vbmeta_images[0].vbmeta_data != NULL) {
107 avb_free(asv_test_data_->vbmeta_images[0].vbmeta_data);
108 }
109 avb_free(asv_test_data_->vbmeta_images);
110 }
111 avb_free(asv_test_data_);
112 }
113 BaseAvbToolTest::TearDown();
114 }
115
116 protected:
117 AvbSlotVerifyData* asv_test_data_;
118 uint8_t* key_bytes_;
119 int64_t key_size_;
120
121 uint8_t* vbmeta_blob_;
122 int64_t vbmeta_blob_size_;
123 uint8_t* vbmeta_full_blob_;
124 int64_t vbmeta_full_blob_size_;
125 };
126
TEST_F(AvbAftlVerifyTest,Basic)127 TEST_F(AvbAftlVerifyTest, Basic) {
128 AvbSlotVerifyResult result =
129 aftl_slot_verify(ops_.avb_ops(), asv_test_data_, key_bytes_, key_size_);
130 EXPECT_EQ(result, AVB_SLOT_VERIFY_RESULT_OK);
131 }
132
TEST_F(AvbAftlVerifyTest,MissingAFTLDescriptor)133 TEST_F(AvbAftlVerifyTest, MissingAFTLDescriptor) {
134 asv_test_data_->vbmeta_images[0].partition_name = (char*)"do-no-exist";
135 AvbSlotVerifyResult result =
136 aftl_slot_verify(ops_.avb_ops(), asv_test_data_, key_bytes_, key_size_);
137 EXPECT_EQ(result, AVB_SLOT_VERIFY_RESULT_ERROR_INVALID_METADATA);
138 }
139
TEST_F(AvbAftlVerifyTest,NonMatchingVBMeta)140 TEST_F(AvbAftlVerifyTest, NonMatchingVBMeta) {
141 asv_test_data_->vbmeta_images[0].vbmeta_data[0] = 'X';
142 AvbSlotVerifyResult result =
143 aftl_slot_verify(ops_.avb_ops(), asv_test_data_, key_bytes_, key_size_);
144 EXPECT_EQ(result, AVB_SLOT_VERIFY_RESULT_ERROR_VERIFICATION);
145 }
146
147 } /* namespace avb */
148