File: test_netfilter_root.off

package info (click to toggle)
python-netfilter 0.6.4-4
  • links: PTS, VCS
  • area: main
  • in suites: forky, sid, trixie
  • size: 208 kB
  • sloc: python: 801; makefile: 3
file content (108 lines) | stat: -rw-r--r-- 4,115 bytes parent folder | download | duplicates (3)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
# -*- coding: utf-8 -*-
#
# python-netfilter - Python modules for manipulating netfilter rules
# Copyright (C) 2007-2012 Bolloré Telecom
# Copyright (C) 2013-2016 Jeremy Lainé
#
# This program is free software: you can redistribute it and/or modify
# it under the terms of the GNU General Public License as published by
# the Free Software Foundation, either version 3 of the License, or
# (at your option) any later version.
#
# This program is distributed in the hope that it will be useful,
# but WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
# GNU General Public License for more details.
#
# You should have received a copy of the GNU General Public License
# along with this program.  If not, see <http://www.gnu.org/licenses/>.
#

import unittest

import netfilter.table
import netfilter.rule

# THESE TESTS NEED TO BE RUN AS ROOT, RUN WITH CARE

class TableManipulationTestCase(unittest.TestCase):
    def setUp(self, auto_commit = True):
        self.table = netfilter.table.Table('filter', auto_commit)
        self.chain = 'netfilter_test'
        self.table.create_chain(self.chain)
        self.table.flush_chain(self.chain)
    
    def tearDown(self):
        self.table.flush_chain(self.chain)
        self.table.delete_chain(self.chain)
    
class BasicTableTestCase(TableManipulationTestCase):
    def testCreateFindDeleteChain(self):
        # check the chain has 0 rules
        rules = self.table.list_rules(self.chain)
        self.assertEqual(len(rules), 0)
        
        # append a rule and check the chain has 1 rule
        rule = netfilter.rule.Rule(source='192.168.1.2', destination='192.168.1.3',
            jump='ACCEPT')
        self.table.append_rule(self.chain, rule)
        rules = self.table.list_rules(self.chain)
        self.assertEqual(len(rules), 1)
        
        # lookup the rule we added
        rule2 = rule.find(rules)
        self.assertEqual(rule2.source, '192.168.1.2')
        self.assertEqual(rule2.destination, '192.168.1.3')
        self.assertEqual(rule2.jump, netfilter.rule.Target('ACCEPT'))
    
        # delete the rule and check the chain has 0 rules
        self.table.delete_rule(self.chain, rule)
        rules = self.table.list_rules(self.chain)
        self.assertEqual(len(rules), 0)

    def testCreateFlushChain(self):
        # check the chain has 0 rules
        rules = self.table.list_rules(self.chain)
        self.assertEqual(len(rules), 0)
        
        # append a rule and check the chain has 1 rule
        rule = netfilter.rule.Rule(source='192.168.1.2', destination='192.168.1.3',
            jump='ACCEPT')
        self.table.append_rule(self.chain, rule)
        rules = self.table.list_rules(self.chain)
        self.assertEqual(len(rules), 1)
        
        # empty the chain and check the chain has 0 rules
        self.table.flush_chain(self.chain)
        rules = self.table.list_rules(self.chain)
        self.assertEqual(len(rules), 0)

    def testRenameChain(self):
        new_chain = self.chain + '_new'
        
        # append a rule and check the chain has 1 rule
        rule = netfilter.rule.Rule(source='192.168.1.2', destination='192.168.1.3',
            jump='ACCEPT')
        self.table.append_rule(self.chain, rule)
        rules = self.table.list_rules(self.chain)
        self.assertEqual(len(rules), 1)
        
        # rename chain
        self.table.rename_chain(self.chain, new_chain)
        rules = self.table.list_rules(new_chain)
        self.assertEqual(len(rules), 1)

        # rename chain back
        self.table.rename_chain(new_chain, self.chain)
        rules = self.table.list_rules(self.chain)
        self.assertEqual(len(rules), 1)

class BufferTestCase(TableManipulationTestCase):
    def setUp(self):
        TableManipulationTestCase.setUp(self, False)
        
    def testfoo(self):
        self.assertEqual(self.table.get_buffer(), [['iptables', '-t', 'filter', '-N', 'netfilter_test'], ['iptables', '-t', 'filter', '-F', 'netfilter_test']])

if __name__ == '__main__':
    unittest.main()