09-acl-access-variants.py 4.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108
  1. #!/usr/bin/env python3
  2. # Check access
  3. from mosq_test_helper import *
  4. def write_config(filename, port, per_listener):
  5. with open(filename, 'w') as f:
  6. f.write("per_listener_settings %s\n" % (per_listener))
  7. f.write("port %d\n" % (port))
  8. f.write("allow_anonymous true\n")
  9. f.write("acl_file %s\n" % (filename.replace('.conf', '.acl')))
  10. def write_acl(filename, global_en, user_en, pattern_en):
  11. with open(filename, 'w') as f:
  12. if global_en:
  13. f.write('topic readwrite topic/global/#\n')
  14. f.write('topic deny topic/global/except\n')
  15. if user_en:
  16. f.write('user username\n')
  17. f.write('topic readwrite topic/username/#\n')
  18. f.write('topic deny topic/username/except\n')
  19. if pattern_en:
  20. f.write('pattern readwrite pattern/%u/#\n')
  21. f.write('pattern deny pattern/%u/except\n')
  22. def single_test(port, per_listener, username, topic, expect_deny):
  23. rc = 1
  24. conf_file = os.path.basename(__file__).replace('.py', '.conf')
  25. write_config(conf_file, port, per_listener)
  26. broker = mosq_test.start_broker(filename=os.path.basename(__file__), use_conf=True, port=port)
  27. try:
  28. keepalive = 60
  29. connect_packet = mosq_test.gen_connect("acl-check", keepalive=keepalive, username=username)
  30. connack_packet = mosq_test.gen_connack(rc=0)
  31. mid = 1
  32. subscribe_packet = mosq_test.gen_subscribe(mid=mid, topic=topic, qos=1)
  33. suback_packet = mosq_test.gen_suback(mid=mid, qos=1)
  34. mid = 2
  35. publish1s_packet = mosq_test.gen_publish(topic=topic, mid=mid, qos=1, payload="message")
  36. puback1s_packet = mosq_test.gen_puback(mid)
  37. mid=1
  38. publish1r_packet = mosq_test.gen_publish(topic=topic, mid=mid, qos=1, payload="message")
  39. sock = mosq_test.do_client_connect(connect_packet, connack_packet, port=port)
  40. mosq_test.do_send_receive(sock, subscribe_packet, suback_packet, "suback")
  41. sock.send(publish1s_packet)
  42. if expect_deny:
  43. mosq_test.expect_packet(sock, "puback", puback1s_packet)
  44. mosq_test.do_ping(sock)
  45. else:
  46. mosq_test.receive_unordered(sock, puback1s_packet, publish1r_packet, "puback / publish1r")
  47. sock.close()
  48. rc = 0
  49. except mosq_test.TestError:
  50. pass
  51. finally:
  52. os.remove(conf_file)
  53. broker.terminate()
  54. broker.wait()
  55. (stdo, stde) = broker.communicate()
  56. if rc:
  57. print(stde.decode('utf-8'))
  58. exit(rc)
  59. def acl_test(port, per_listener, global_en, user_en, pattern_en):
  60. acl_file = os.path.basename(__file__).replace('.py', '.acl')
  61. write_acl(acl_file, global_en=global_en, user_en=user_en, pattern_en=pattern_en)
  62. if global_en:
  63. single_test(port, per_listener, username=None, topic="topic/global", expect_deny=False)
  64. single_test(port, per_listener, username="username", topic="topic/global", expect_deny=True)
  65. single_test(port, per_listener, username=None, topic="topic/global/except", expect_deny=True)
  66. if user_en:
  67. single_test(port, per_listener, username=None, topic="topic/username", expect_deny=True)
  68. single_test(port, per_listener, username="username", topic="topic/username", expect_deny=False)
  69. single_test(port, per_listener, username="username", topic="topic/username/except", expect_deny=True)
  70. if pattern_en:
  71. single_test(port, per_listener, username=None, topic="pattern/username", expect_deny=True)
  72. single_test(port, per_listener, username="username", topic="pattern/username", expect_deny=False)
  73. single_test(port, per_listener, username="username", topic="pattern/username/except", expect_deny=True)
  74. def do_test(port, per_listener):
  75. try:
  76. acl_test(port, per_listener, global_en=False, user_en=False, pattern_en=True)
  77. acl_test(port, per_listener, global_en=False, user_en=True, pattern_en=False)
  78. acl_test(port, per_listener, global_en=True, user_en=False, pattern_en=False)
  79. acl_test(port, per_listener, global_en=False, user_en=True, pattern_en=True)
  80. acl_test(port, per_listener, global_en=True, user_en=False, pattern_en=True)
  81. acl_test(port, per_listener, global_en=True, user_en=True, pattern_en=True)
  82. finally:
  83. acl_file = os.path.basename(__file__).replace('.py', '.acl')
  84. os.remove(acl_file)
  85. port = mosq_test.get_port()
  86. do_test(port, "true")
  87. do_test(port, "false")