1: %%% eturnal STUN/TURN server. 2: %%% 3: %%% Copyright (c) 2020-2023 Holger Weiss <holger@zedat.fu-berlin.de>. 4: %%% Copyright (c) 2020-2023 ProcessOne, SARL. 5: %%% All rights reserved. 6: %%% 7: %%% Licensed under the Apache License, Version 2.0 (the "License"); 8: %%% you may not use this file except in compliance with the License. 9: %%% You may obtain a copy of the License at 10: %%% 11: %%% http://www.apache.org/licenses/LICENSE-2.0 12: %%% 13: %%% Unless required by applicable law or agreed to in writing, software 14: %%% distributed under the License is distributed on an "AS IS" BASIS, 15: %%% WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 16: %%% See the License for the specific language governing permissions and 17: %%% limitations under the License. 18: 19: -module(eturnal_SUITE). 20: -compile(export_all). 21: -include_lib("common_test/include/ct.hrl"). 22: 23: -type info() :: ct_suite:ct_info(). 24: -type config() :: ct_suite:ct_config(). 25: -type test_def() :: ct_suite:ct_test_def(). 26: -type test_name() :: ct_suite:ct_testname(). 27: -type group_def() :: ct_suite:ct_group_def(). 28: -type group_name() :: ct_suite:ct_groupname(). 29: 30: %% API. 31: 32: -spec suite() -> [info()]. 33: suite() -> 34: [{require, {server, [address, udp_port, tcp_port, tls_port, auto_port]}}, 35: {timetrap, {seconds, 120}}]. 36: 37: -spec init_per_suite(config()) -> config(). 38: init_per_suite(Config) -> 39: Server = ct:get_config(server), 40: Address = proplists:get_value(address, Server), 41: UdpPort = proplists:get_value(udp_port, Server), 42: TcpPort = proplists:get_value(tcp_port, Server), 43: TlsPort = proplists:get_value(tls_port, Server), 44: AutoPort = proplists:get_value(auto_port, Server), 45: [{address, Address}, 46: {udp_port, UdpPort}, 47: {tcp_port, TcpPort}, 48: {tls_port, TlsPort}, 49: {auto_port, AutoPort} | Config]. 50: 51: -spec end_per_suite(config()) -> ok. 52: end_per_suite(_Config) -> 53: ok. 54: 55: -spec init_per_group(group_name(), config()) -> config(). 56: init_per_group(_GroupName, Config) -> 57: Config. 58: 59: -spec end_per_group(group_name(), config()) -> ok. 60: end_per_group(_GroupName, _Config) -> 61: ok. 62: 63: -spec init_per_testcase(test_name(), config()) -> config(). 64: -ifdef(old_inet_backend). 65: init_per_testcase(start_eturnal, Config) -> 66: set_eturnal_env("eturnal-old-otp.yml", Config); 67: init_per_testcase(stun_tcp_auto, _Config) -> 68: {skip, otp_version_unsupported}; 69: init_per_testcase(stun_tls_auto, _Config) -> 70: {skip, otp_version_unsupported}; 71: init_per_testcase(_TestCase, Config) -> 72: Config. 73: -else. 74: init_per_testcase(start_eturnal, Config) -> 75: set_eturnal_env("eturnal-new-otp.yml", Config); 76: init_per_testcase(_TestCase, Config) -> 77: Config. 78: -endif. 79: 80: -spec end_per_testcase(test_name(), config()) -> ok. 81: end_per_testcase(_TestCase, _Config) -> 82: ok. 83: 84: -spec groups() -> [group_def()]. 85: groups() -> 86: []. 87: 88: -spec all() -> [test_def()] | {skip, term()}. 89: all() -> 90: [start_eturnal, 91: check_status, 92: check_info, 93: check_all_sessions, 94: check_user_sessions, 95: check_disconnect, 96: check_credentials, 97: check_loglevel, 98: check_version, 99: reload, 100: connect_tcp, 101: connect_tls, 102: turn_udp, 103: stun_udp, 104: stun_tcp, 105: stun_tls, 106: stun_tcp_auto, 107: stun_tls_auto, 108: stop_eturnal]. 109: 110: -spec start_eturnal(config()) -> any(). 111: start_eturnal(_Config) -> 112: ct:pal("Starting up eturnal"), 113: ok = eturnal:start(). 114: 115: -spec check_status(config()) -> any(). 116: check_status(_Config) -> 117: ct:pal("Checking eturnal status"), 118: {ok, Status} = eturnal_ctl:get_status(), 119: ct:pal("Got eturnal status: ~p", [Status]), 120: true = is_list(Status). 121: 122: -spec check_info(config()) -> any(). 123: check_info(_Config) -> 124: ct:pal("Checking eturnal statistics"), 125: {ok, Info} = eturnal_ctl:get_info(), 126: ct:pal("Got eturnal statistics: ~p", [Info]), 127: true = is_list(Info). 128: 129: -spec check_all_sessions(config()) -> any(). 130: check_all_sessions(_Config) -> 131: ct:pal("Checking active TURN sessions"), 132: {ok, Sessions} = eturnal_ctl:get_sessions(), 133: ct:pal("Got active TURN sessions: ~p", [Sessions]), 134: true = is_list(Sessions). 135: 136: -spec check_user_sessions(config()) -> any(). 137: check_user_sessions(_Config) -> 138: ct:pal("Checking active TURN sessions of user"), 139: {ok, Sessions} = eturnal_ctl:get_sessions("alice"), 140: ct:pal("Got active TURN sessions of user: ~p", [Sessions]), 141: true = is_list(Sessions), 142: ct:pal("Checking active TURN sessions of invalid user"), 143: {error, Reason} = eturnal_ctl:disconnect(alice), 144: ct:pal("Got an error, as expected: ~p", [Reason]). 145: 146: -spec check_disconnect(config()) -> any(). 147: check_disconnect(_Config) -> 148: ct:pal("Checking disconnection of TURN user"), 149: {ok, Msg} = eturnal_ctl:disconnect("alice"), 150: ct:pal("Got result for disconnecting TURN user: ~p", [Msg]), 151: true = is_list(Msg), 152: ct:pal("Checking disconnection of invalid TURN user"), 153: {error, Reason} = eturnal_ctl:disconnect(alice), 154: ct:pal("Got an error, as expected: ~p", [Reason]). 155: 156: -spec check_credentials(config()) -> any(). 157: check_credentials(_Config) -> 158: Timestamp = "2009-10-30 11:00:00Z", 159: Username = 1256900400, 160: Password = "uEKlpcME7MNMMVRV8rUFPCTIFEs=", 161: ct:pal("Checking credentials valid until ~s", [Timestamp]), 162: {ok, Credentials} = eturnal_ctl:get_credentials(Timestamp, []), 163: {ok, [Username, Password], []} = 164: io_lib:fread("Username: ~u~~nPassword: ~s", Credentials), 165: lists:foreach( 166: fun(Lifetime) -> 167: ct:pal("Checking credentials valid for ~s", [Lifetime]), 168: {ok, Creds} = eturnal_ctl:get_credentials(Lifetime, "alice"), 169: {ok, [Time, Pass], []} = 170: io_lib:fread("Username: ~u:alice~~nPassword: ~s", Creds), 171: {ok, Pass} = 172: eturnal_ctl:get_password(integer_to_list(Time) ++ ":alice"), 173: true = erlang:system_time(second) + 86400 - Time < 5 174: end, ["86400", "86400s", "1440m", "24h", "1d"]), 175: ct:pal("Checking invalid expiry"), 176: lists:foreach( 177: fun(Invalid) -> 178: {error, _Reason1} = eturnal_ctl:get_password(Invalid), 179: {error, _Reason2} = eturnal_ctl:get_credentials(Invalid, []) 180: end, ["Invalid", invalid, [invalid]]), 181: ct:pal("Checking invalid suffix"), 182: {error, _Reason} = eturnal_ctl:get_credentials(Username, invalid), 183: ct:pal("Checking static credentials"), 184: {ok, "l0vesBob"} = eturnal_ctl:get_password("alice"). 185: 186: -spec check_loglevel(config()) -> any(). 187: check_loglevel(_Config) -> 188: Level = "debug", 189: ct:pal("Setting log level to ~s", [Level]), 190: ok = eturnal_ctl:set_loglevel(list_to_atom(Level)), 191: ct:pal("Checking whether log level is set to ~s", [Level]), 192: {ok, Level} = eturnal_ctl:get_loglevel(), 193: ct:pal("Setting invalid log level"), 194: {error, _Reason} = eturnal_ctl:set_loglevel(invalid), 195: ct:pal("Checking whether log level is still set to ~s", [Level]), 196: {ok, Level} = eturnal_ctl:get_loglevel(). 197: 198: -spec check_version(config()) -> any(). 199: check_version(_Config) -> 200: ct:pal("Checking eturnal version"), 201: {ok, Version} = eturnal_ctl:get_version(), 202: ct:pal("Got eturnal version: ~p", [Version]), 203: match = re:run(Version, "^[0-9]+\\.[0-9]+\\.[0-9](\\+[0-9]+)?", 204: [{capture, none}]). 205: 206: -spec reload(config()) -> any(). 207: reload(_Config) -> 208: CertFile = <<"run/cert.pem">>, 209: ct:pal("Deleting TLS certificate"), 210: ok = file:delete(CertFile), 211: ct:pal("Reloading eturnal"), 212: ok = eturnal_ctl:reload(), 213: ct:pal("Checking whether new TLS certificate was created"), 214: {ok, _} = file:read_file_info(CertFile), 215: ct:pal("Reloading eturnal without changes"), 216: ok = eturnal_ctl:reload(). 217: 218: -spec connect_tcp(config()) -> any(). 219: connect_tcp(Config) -> 220: Addr = ?config(address, Config), 221: Port = ?config(tcp_port, Config), 222: ct:pal("Connecting to 127.0.0.1:~B (TCP)", [Port]), 223: {ok, Sock} = gen_tcp:connect(Addr, Port, []), 224: ok = gen_tcp:close(Sock). 225: 226: -spec connect_tls(config()) -> any(). 227: connect_tls(Config) -> 228: Addr = ?config(address, Config), 229: Port = ?config(tls_port, Config), 230: ct:pal("Connecting to 127.0.0.1:~B (TLS)", [Port]), 231: {ok, TCPSock} = gen_tcp:connect(Addr, Port, []), 232: {ok, TLSSock} = fast_tls:tcp_to_tls(TCPSock, [connect]), 233: ok = fast_tls:close(TLSSock). 234: 235: -spec turn_udp(config()) -> any(). 236: turn_udp(Config) -> 237: Addr = ?config(address, Config), 238: Port = ?config(udp_port, Config), 239: Username1 = <<"alice">>, 240: Password1 = <<"l0vesBob">>, 241: Username2 = <<"2145913200">>, 242: Password2 = <<"cLwpKS2/9bWHf+agUImD47PIXNE=">>, 243: Realm = <<"eturnal.net">>, 244: ct:pal("Allocating TURN relay on 127.0.0.1:~B (UDP)", [Port]), 245: ok = stun_test:allocate_udp(Addr, Port, Username1, Realm, Password1), 246: ok = stun_test:allocate_udp(Addr, Port, Username2, Realm, Password2). 247: 248: -spec stun_udp(config()) -> any(). 249: stun_udp(Config) -> 250: Addr = ?config(address, Config), 251: Port = ?config(udp_port, Config), 252: ct:pal("Performing STUN query against 127.0.0.1:~B (UDP)", [Port]), 253: Result = stun_test:bind_udp(Addr, Port), 254: ct:pal("Got query result: ~p", [Result]), 255: true = is_tuple(Result), 256: true = element(1, Result) =:= stun. 257: 258: -spec stun_tcp(config()) -> any(). 259: stun_tcp(Config) -> 260: Addr = ?config(address, Config), 261: Port = ?config(tcp_port, Config), 262: ct:pal("Performing STUN query against 127.0.0.1:~B (TCP)", [Port]), 263: Result = stun_test:bind_tcp(Addr, Port), 264: ct:pal("Got query result: ~p", [Result]), 265: true = is_tuple(Result), 266: true = element(1, Result) =:= stun. 267: 268: -spec stun_tls(config()) -> any(). 269: stun_tls(Config) -> 270: Addr = ?config(address, Config), 271: Port = ?config(tls_port, Config), 272: ct:pal("Performing STUN query against 127.0.0.1:~B (TLS)", [Port]), 273: Result = stun_test:bind_tls(Addr, Port), 274: ct:pal("Got query result: ~p", [Result]), 275: true = is_tuple(Result), 276: true = element(1, Result) =:= stun. 277: 278: -spec stun_tcp_auto(config()) -> any(). 279: stun_tcp_auto(Config) -> 280: Addr = ?config(address, Config), 281: Port = ?config(auto_port, Config), 282: ct:pal("Performing STUN query against 127.0.0.1:~B (TCP)", [Port]), 283: Result = stun_test:bind_tcp(Addr, Port), 284: ct:pal("Got query result: ~p", [Result]), 285: true = is_tuple(Result), 286: true = element(1, Result) =:= stun. 287: 288: -spec stun_tls_auto(config()) -> any(). 289: stun_tls_auto(Config) -> 290: Addr = ?config(address, Config), 291: Port = ?config(auto_port, Config), 292: ct:pal("Performing STUN query against 127.0.0.1:~B (TLS)", [Port]), 293: Result = stun_test:bind_tls(Addr, Port), 294: ct:pal("Got query result: ~p", [Result]), 295: true = is_tuple(Result), 296: true = element(1, Result) =:= stun. 297: 298: -spec stop_eturnal(config()) -> any(). 299: stop_eturnal(_Config) -> 300: ct:pal("Stopping eturnal"), 301: ok = eturnal:stop(). 302: 303: %% Internal functions. 304: 305: -spec set_eturnal_env(file:filename_all(), config()) -> config(). 306: set_eturnal_env(ConfName, Config) -> 307: DataDir = ?config(data_dir, Config), 308: ConfFile = filename:join(DataDir, ConfName), 309: ok = application:set_env(conf, file, ConfFile), 310: ok = application:set_env(conf, on_fail, stop), 311: ok = application:set_env(eturnal, on_fail, exit), 312: Config.