1 /*
2 * Copyright (c) 2022-2023 Huawei Device Co., Ltd.
3 * Licensed under the Apache License, Version 2.0 (the "License");
4 * you may not use this file except in compliance with the License.
5 * You may obtain a copy of the License at
6 *
7 * http://www.apache.org/licenses/LICENSE-2.0
8 *
9 * Unless required by applicable law or agreed to in writing, software
10 * distributed under the License is distributed on an "AS IS" BASIS,
11 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12 * See the License for the specific language governing permissions and
13 * limitations under the License.
14 */
15
16 #include <gtest/gtest.h>
17 #include <thread>
18
19 #define private public
20 #define protected public
21 #include "firewall_rule.h"
22 #undef private
23 #undef protected
24 #include "net_mgr_log_wrapper.h"
25 #include "net_policy_inner_define.h"
26
27 namespace OHOS {
28 namespace NetManagerStandard {
29 namespace {
30 using namespace testing::ext;
31 } // namespace
32
33 class UtFirewallRule : public testing::Test {
34 public:
35 static void SetUpTestCase();
36 static void TearDownTestCase();
37 void SetUp();
38 void TearDown();
39 };
40
SetUpTestCase()41 void UtFirewallRule::SetUpTestCase() {}
42
TearDownTestCase()43 void UtFirewallRule::TearDownTestCase() {}
44
SetUp()45 void UtFirewallRule::SetUp() {}
46
TearDown()47 void UtFirewallRule::TearDown() {}
48
49 /**
50 * @tc.name: CreateFirewallRule
51 * @tc.desc: Test FirewallRule CreateFirewallRule.
52 * @tc.type: FUNC
53 */
54 HWTEST_F(UtFirewallRule, CreateFirewallRule, TestSize.Level1)
55 {
56 auto rulePtr = FirewallRule::CreateFirewallRule(FIREWALL_CHAIN_DEVICE_IDLE);
57 EXPECT_NE(rulePtr, nullptr);
58 rulePtr = FirewallRule::CreateFirewallRule(FIREWALL_CHAIN_NONE);
59 EXPECT_EQ(rulePtr, nullptr);
60 }
61
62 /**
63 * @tc.name: GetPolicyByUid001
64 * @tc.desc: Test FirewallRule FirewallRuleCon.
65 * @tc.type: FUNC
66 */
67 HWTEST_F(UtFirewallRule, FirewallRuleCon, TestSize.Level1)
68 {
69 FirewallRule rule(FIREWALL_CHAIN_DEVICE_IDLE);
70 EXPECT_EQ(rule.chainType_, FIREWALL_CHAIN_DEVICE_IDLE);
71 EXPECT_NE(rule.netsys_, nullptr);
72 uint32_t uid = 1;
73 rule.SetUidFirewallRule(uid, false);
74 rule.SetUidFirewallRule(uid, true);
75 rule.EnableFirewall(true);
76 }
77
78 /**
79 * @tc.name: SetAllowedList
80 * @tc.desc: Test FirewallRule SetAllowedList.
81 * @tc.type: FUNC
82 */
83 HWTEST_F(UtFirewallRule, SetAllowedList, TestSize.Level1)
84 {
85 NETMGR_LOG_E("SetAllowedList enter");
86 FirewallRule rule(FIREWALL_CHAIN_DEVICE_IDLE);
87 rule.ClearAllowedList();
88 EXPECT_EQ(rule.GetAllowedList().size(), static_cast<uint32_t>(0));
89 uint32_t uid = 1;
90 std::vector<uint32_t> uidsVec;
91 uidsVec.push_back(uid);
92 rule.SetAllowedList(uidsVec, FIREWALL_RULE_ALLOW);
93 EXPECT_EQ(rule.GetAllowedList().size(), static_cast<uint32_t>(1));
94 EXPECT_EQ(rule.GetAllowedList()[0], uid);
95 uint32_t uidCount = 5;
96 std::set<uint32_t> uids;
97 for (size_t i = 0; i < uidCount; i++) {
98 uids.insert(i);
99 }
100 rule.SetAllowedList(uids);
101 EXPECT_EQ(rule.GetAllowedList().size(), uidCount);
102 rule.SetAllowedList(uidsVec, FIREWALL_RULE_DENY);
103 uint32_t expectCount = uidCount - 1;
104 EXPECT_EQ(rule.GetAllowedList().size(), expectCount);
105 uid = 5;
106 rule.SetAllowedList(uidsVec, FIREWALL_RULE_DENY);
107 EXPECT_EQ(rule.GetAllowedList().size(), expectCount);
108 uid = 2;
109 rule.RemoveFromAllowedList(uid);
110 EXPECT_EQ(rule.GetAllowedList().size(), --expectCount);
111 uid = 0;
112 rule.RemoveFromAllowedList(uid);
113 EXPECT_EQ(rule.GetAllowedList().size(), --expectCount);
114 }
115
116 /**
117 * @tc.name: SetDeniedList
118 * @tc.desc: Test FirewallRule SetDeniedList.
119 * @tc.type: FUNC
120 */
121 HWTEST_F(UtFirewallRule, SetDeniedList, TestSize.Level1)
122 {
123 FirewallRule rule(FIREWALL_CHAIN_DEVICE_IDLE);
124 rule.ClearDeniedList();
125 EXPECT_EQ(rule.GetDeniedList().size(), static_cast<uint32_t>(0));
126 uint32_t uid = 1;
127 rule.SetDeniedList(uid, FIREWALL_RULE_DENY);
128 EXPECT_EQ(rule.GetDeniedList().size(), static_cast<uint32_t>(1));
129 EXPECT_EQ(rule.GetDeniedList()[0], uid);
130 rule.ClearDeniedList();
131 uint32_t uidCount = 5;
132 std::vector<uint32_t> uids;
133 for (size_t i = 0; i < uidCount; i++) {
134 uids.emplace_back(i);
135 }
136 rule.ClearDeniedList();
137 rule.SetDeniedList(uids);
138 EXPECT_EQ(rule.GetDeniedList().size(), uidCount);
139 rule.SetDeniedList(uid, FIREWALL_RULE_ALLOW);
140 uint32_t expectCount = uidCount - 1;
141 EXPECT_EQ(rule.GetDeniedList().size(), expectCount);
142 uid = 5;
143 rule.SetDeniedList(uid, FIREWALL_RULE_ALLOW);
144 EXPECT_EQ(rule.GetDeniedList().size(), expectCount);
145 uid = 2;
146 rule.RemoveFromDeniedList(uid);
147 EXPECT_EQ(rule.GetDeniedList().size(), --expectCount);
148 uid = 0;
149 rule.RemoveFromDeniedList(uid);
150 EXPECT_EQ(rule.GetDeniedList().size(), --expectCount);
151 }
152 } // namespace NetManagerStandard
153 } // namespace OHOS