From c45c51fe97193898f3909dcf5e4c0e117ab239a2 Mon Sep 17 00:00:00 2001 From: Giuseppe Scrivano Date: Fri, 1 May 2009 23:50:11 +0200 Subject: chroot: accept new options --userspec=U:G and --groups=G1,G2,G3 * NEWS: Note chroot's new options. * doc/coreutils.texi: Document them. * src/chroot.c (main): Add support for --userspec and --groups. * tests/Makefile.am (root-tests): Add chroot/credentials. * tests/chroot/credentials: New file. * tests/test-lib.sh: Define NON_ROOT_GROUP to a default value. --- tests/Makefile.am | 1 + tests/chroot/credentials | 43 +++++++++++++++++++++++++++++++++++++++++++ tests/test-lib.sh | 1 + 3 files changed, 45 insertions(+) create mode 100755 tests/chroot/credentials (limited to 'tests') diff --git a/tests/Makefile.am b/tests/Makefile.am index 7fe74c0c3..a0ed986ea 100644 --- a/tests/Makefile.am +++ b/tests/Makefile.am @@ -24,6 +24,7 @@ root_tests = \ cp/preserve-gid \ cp/special-bits \ cp/cp-mv-enotsup-xattr \ + chroot/credentials \ dd/skip-seek-past-dev \ install/install-C-root \ ls/capability \ diff --git a/tests/chroot/credentials b/tests/chroot/credentials new file mode 100755 index 000000000..23d66bd62 --- /dev/null +++ b/tests/chroot/credentials @@ -0,0 +1,43 @@ +#!/bin/sh +# Verify that the credentials are changed correctly. + +# Copyright (C) 2009 Free Software Foundation, Inc. + +# This program is free software: you can redistribute it and/or modify +# it under the terms of the GNU General Public License as published by +# the Free Software Foundation, either version 3 of the License, or +# (at your option) any later version. + +# This program is distributed in the hope that it will be useful, +# but WITHOUT ANY WARRANTY; without even the implied warranty of +# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the +# GNU General Public License for more details. + +# You should have received a copy of the GNU General Public License +# along with this program. If not, see . + + +if test "$VERBOSE" = yes; then + set -x + chroot --version +fi + +. $srcdir/test-lib.sh + +require_root_ + +fail=0 + +# Verify that root credentials are kept. +test $(chroot / whoami) = root || fail=1 +test "$(groups)" = "$(chroot / groups)" || fail=1 + +# Verify that credentials are changed correctly. +test "$(chroot --userspec=$NON_ROOT_USERNAME:$NON_ROOT_GROUP / whoami)" != root \ + || fail=1 + +# Verify that there are no additional groups. +test "$(chroot --userspec=$NON_ROOT_USERNAME:$NON_ROOT_GROUP --groups= / id -nG)"\ + = $NON_ROOT_GROUP || fail=1 + +Exit $fail diff --git a/tests/test-lib.sh b/tests/test-lib.sh index 17a35389b..a765bd626 100644 --- a/tests/test-lib.sh +++ b/tests/test-lib.sh @@ -204,6 +204,7 @@ require_root_() { uid_is_privileged_ || skip_test_ "must be run as root" NON_ROOT_USERNAME=${NON_ROOT_USERNAME=nobody} + NON_ROOT_GROUP=${NON_ROOT_GROUP=nogroup} } skip_if_root_() { uid_is_privileged_ && skip_test_ "must be run as non-root"; } -- cgit v1.2.3-70-g09d2