tests.sh revision da5d53fb1401f5e17a77373af32d865489aa04a8
1c9346029903ed214a211087ef9e24996565a9b1Bruno Lavit# Copyright (C) 2012 Internet Systems Consortium, Inc. ("ISC")
1c9346029903ed214a211087ef9e24996565a9b1Bruno Lavit#
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel# Permission to use, copy, modify, and/or distribute this software for any
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel# purpose with or without fee is hereby granted, provided that the above
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel# copyright notice and this permission notice appear in all copies.
2ecc9886f22ebb2f511c3127138a2231cdfee199jenkins#
b8c253f7ac1c80ef2f1009906d54e359d5493e89Bruno Lavit# THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH
26a6ec53bb06b3fb881e2a0cf5855c300513cad6Jake Feasel# REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
40cf8018f65835fdf706efcbf62e9a3a06cb3179Jake Feasel# AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT,
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel# INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel# LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel# OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel# PERFORMANCE OF THIS SOFTWARE.
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel# $Id$
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake FeaselSYSTEMTESTTOP=..
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel. $SYSTEMTESTTOP/conf.sh
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feaselfailed () {
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel cat verify.out.$n | sed 's/^/D:/';
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel echo "I:failed";
dadbd1526fb5719f37831afdc3f18a8677f89c00Jake Feasel status=1;
}
n=0
status=0
for file in zones/*.good
do
n=`expr $n + 1`
zone=`expr "$file" : 'zones/\(.*\).good'`
echo "I:checking supposedly good zone: $zone ($n)"
ret=0
case $zone in
zsk-only.*) only=-z;;
ksk-only.*) only=-z;;
*) only=;;
esac
$VERIFY ${only} -o $zone $file > verify.out.$n 2>&1 || ret=1
[ $ret = 0 ] || failed
done
for file in zones/*.bad
do
n=`expr $n + 1`
zone=`expr "$file" : 'zones/\(.*\).bad'`
echo "I:checking supposedly bad zone: $zone ($n)"
ret=0
dumpit=0
case $zone in
zsk-only.*) only=-z;;
ksk-only.*) only=-z;;
*) only=;;
esac
expect1= expect2=
case $zone in
*.dnskeyonly)
expect1="DNSKEY is not signed"
;;
*.expired)
expect1="signature has expired"
expect2="No self-signed .*DNSKEY found"
;;
*.ksk-expired)
expect1="signature has expired"
expect2="No self-signed .*DNSKEY found"
;;
*.out-of-zone-nsec|*.below-bottom-of-zone-nsec)
expect1="unexpected NSEC RRset at"
;;
*.nsec.broken-chain)
expect1="Bad record NSEC record for.*, next name mismatch"
;;
*.bad-bitmap)
expect1="bit map mismatch"
;;
*.missing-empty)
expect1="Missing NSEC3 record for";
;;
unsigned)
expect1="Zone contains no DNSSEC keys"
;;
*.extra-nsec3)
expect1="Expected and found NSEC3 chains not equal";
;;
*)
dumpit=1
;;
esac
$VERIFY ${only} -o $zone $file > verify.out.$n 2>&1 && ret=1
grep "${expect1:-.}" verify.out.$n > /dev/null || ret=1
grep "${expect2:-.}" verify.out.$n > /dev/null || ret=1
[ $ret = 0 ] || failed
[ $dumpit = 1 ] && cat verify.out.$n
done
exit $status