|
|
136e2c |
From c7ba9d153c381c244bf5ac0abfa4043f187486b8 Mon Sep 17 00:00:00 2001
|
|
|
136e2c |
From: Eric Garver <eric@garver.life>
|
|
|
136e2c |
Date: Thu, 30 May 2019 17:12:48 -0400
|
|
|
136e2c |
Subject: [PATCH 79/79] chore: tests/functions: change list macros to only
|
|
|
136e2c |
expand for backend
|
|
|
136e2c |
|
|
|
136e2c |
The macros now check for FIREWALL_BACKEND before attempting to list the
|
|
|
136e2c |
rules. This means we don't need to guard them inside the actual test
|
|
|
136e2c |
cases.
|
|
|
136e2c |
|
|
|
136e2c |
Also introduces _ALWAYS variants that always expand regardless of the
|
|
|
136e2c |
current backend under test.
|
|
|
136e2c |
|
|
|
136e2c |
(cherry picked from commit cb43b6cd99d952ae31614a7c46b2df13b670fea3)
|
|
|
136e2c |
(cherry picked from commit 7054a3d092978e165980a4c8d4e1407f01d88bd7)
|
|
|
136e2c |
---
|
|
|
136e2c |
src/tests/functions.at | 32 ++++++++++++++++++++++++++++----
|
|
|
136e2c |
1 file changed, 28 insertions(+), 4 deletions(-)
|
|
|
136e2c |
|
|
|
136e2c |
diff --git a/src/tests/functions.at b/src/tests/functions.at
|
|
|
136e2c |
index b6831f61d806..571f780a007c 100644
|
|
|
136e2c |
--- a/src/tests/functions.at
|
|
|
136e2c |
+++ b/src/tests/functions.at
|
|
|
136e2c |
@@ -237,13 +237,19 @@ m4_define([EBTABLES_LIST_RULES], [
|
|
|
136e2c |
m4_undefine([EBTABLES_LIST_RULES_NORMALIZE])
|
|
|
136e2c |
])
|
|
|
136e2c |
|
|
|
136e2c |
-m4_define([IPTABLES_LIST_RULES], [
|
|
|
136e2c |
+m4_define([IPTABLES_LIST_RULES_ALWAYS], [
|
|
|
136e2c |
m4_ifdef([TESTING_FIREWALL_OFFLINE_CMD], [], [
|
|
|
136e2c |
NS_CHECK([IPTABLES -w -n -t $1 -L $2 | TRIM_WHITESPACE | tail -n +3], [$3], [m4_strip([$4])], [m4_strip([$5])], [$6], [$7])
|
|
|
136e2c |
])
|
|
|
136e2c |
])
|
|
|
136e2c |
|
|
|
136e2c |
-m4_define([IP6TABLES_LIST_RULES], [
|
|
|
136e2c |
+m4_define([IPTABLES_LIST_RULES], [
|
|
|
136e2c |
+ m4_if(iptables, FIREWALL_BACKEND, [
|
|
|
136e2c |
+ IPTABLES_LIST_RULES_ALWAYS([$1], [$2], [$3], [$4], [$5], [$6], [$7])
|
|
|
136e2c |
+ ])
|
|
|
136e2c |
+])
|
|
|
136e2c |
+
|
|
|
136e2c |
+m4_define([IP6TABLES_LIST_RULES_ALWAYS], [
|
|
|
136e2c |
m4_ifdef([TESTING_FIREWALL_OFFLINE_CMD], [], [
|
|
|
136e2c |
m4_if(yes, HOST_SUPPORTS_IP6TABLES, [
|
|
|
136e2c |
NS_CHECK([IP6TABLES -w -n -t $1 -L $2 | TRIM_WHITESPACE | tail -n +3], [$3], [m4_strip([$4])], [m4_strip([$5])], [$6], [$7])
|
|
|
136e2c |
@@ -251,7 +257,13 @@ m4_define([IP6TABLES_LIST_RULES], [
|
|
|
136e2c |
])
|
|
|
136e2c |
])
|
|
|
136e2c |
|
|
|
136e2c |
-m4_define([NFT_LIST_RULES], [
|
|
|
136e2c |
+m4_define([IP6TABLES_LIST_RULES], [
|
|
|
136e2c |
+ m4_if(iptables, FIREWALL_BACKEND, [
|
|
|
136e2c |
+ IP6TABLES_LIST_RULES_ALWAYS([$1], [$2], [$3], [$4], [$5], [$6], [$7])
|
|
|
136e2c |
+ ])
|
|
|
136e2c |
+])
|
|
|
136e2c |
+
|
|
|
136e2c |
+m4_define([NFT_LIST_RULES_ALWAYS], [
|
|
|
136e2c |
dnl nftables commit 6dd848339444 change list output to show "meta mark"
|
|
|
136e2c |
dnl instead of just "mark".
|
|
|
136e2c |
m4_define([NFT_LIST_RULES_NORMALIZE], [dnl
|
|
|
136e2c |
@@ -267,6 +279,12 @@ m4_define([NFT_LIST_RULES], [
|
|
|
136e2c |
m4_undefine([NFT_LIST_RULES_NORMALIZE])
|
|
|
136e2c |
])
|
|
|
136e2c |
|
|
|
136e2c |
+m4_define([NFT_LIST_RULES], [
|
|
|
136e2c |
+ m4_if(nftables, FIREWALL_BACKEND, [
|
|
|
136e2c |
+ NFT_LIST_RULES_ALWAYS([$1], [$2], [$3], [$4], [$5], [$6], [$7])
|
|
|
136e2c |
+ ])
|
|
|
136e2c |
+])
|
|
|
136e2c |
+
|
|
|
136e2c |
m4_define([IPSET_LIST_SET], [
|
|
|
136e2c |
m4_ifdef([TESTING_FIREWALL_OFFLINE_CMD], [], [
|
|
|
136e2c |
NS_CHECK([ipset list $1 | TRIM_WHITESPACE |dnl
|
|
|
136e2c |
@@ -276,12 +294,18 @@ m4_define([IPSET_LIST_SET], [
|
|
|
136e2c |
])
|
|
|
136e2c |
])
|
|
|
136e2c |
|
|
|
136e2c |
-m4_define([NFT_LIST_SET], [
|
|
|
136e2c |
+m4_define([NFT_LIST_SET_ALWAYS], [
|
|
|
136e2c |
m4_ifdef([TESTING_FIREWALL_OFFLINE_CMD], [], [
|
|
|
136e2c |
NS_CHECK([nft NFT_NUMERIC_ARGS list set inet firewalld $1 | TRIM_WHITESPACE], [$2], [m4_strip([$3])], [m4_strip([$4])], [$5], [$6])
|
|
|
136e2c |
])
|
|
|
136e2c |
])
|
|
|
136e2c |
|
|
|
136e2c |
+m4_define([NFT_LIST_SET], [
|
|
|
136e2c |
+ m4_if(nftables, FIREWALL_BACKEND, [
|
|
|
136e2c |
+ NFT_LIST_SET_ALWAYS([$1], [$2], [$3], [$4], [$5], [$6])
|
|
|
136e2c |
+ ])
|
|
|
136e2c |
+])
|
|
|
136e2c |
+
|
|
|
136e2c |
m4_define([DBUS_CHECK], [
|
|
|
136e2c |
NS_CHECK([dbus-send --system --print-reply --dest=org.fedoraproject.FirewallD1 dnl
|
|
|
136e2c |
/org/fedoraproject/FirewallD1/$1 org.fedoraproject.FirewallD1.$2 $3],
|
|
|
136e2c |
--
|
|
|
136e2c |
2.20.1
|
|
|
136e2c |
|