test_security_events.c 20 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710
  1. /*
  2. * Asterisk -- An open source telephony toolkit.
  3. *
  4. * Copyright (C) 2009, Digium, Inc.
  5. *
  6. * Russell Bryant <russell@digium.com>
  7. *
  8. * See http://www.asterisk.org for more information about
  9. * the Asterisk project. Please do not directly contact
  10. * any of the maintainers of this project for assistance;
  11. * the project provides a web site, mailing lists and IRC
  12. * channels for your use.
  13. *
  14. * This program is free software, distributed under the terms of
  15. * the GNU General Public License Version 2. See the LICENSE file
  16. * at the top of the source tree.
  17. */
  18. /*! \file
  19. *
  20. * \brief Test security event generation
  21. *
  22. * \author Russell Bryant <russell@digium.com>
  23. */
  24. /*** MODULEINFO
  25. <depend>TEST_FRAMEWORK</depend>
  26. <support_level>core</support_level>
  27. ***/
  28. #include "asterisk.h"
  29. ASTERISK_FILE_VERSION(__FILE__, "$Revision$")
  30. #include "asterisk/module.h"
  31. #include "asterisk/cli.h"
  32. #include "asterisk/utils.h"
  33. #include "asterisk/security_events.h"
  34. static void evt_gen_failed_acl(void);
  35. static void evt_gen_inval_acct_id(void);
  36. static void evt_gen_session_limit(void);
  37. static void evt_gen_mem_limit(void);
  38. static void evt_gen_load_avg(void);
  39. static void evt_gen_req_no_support(void);
  40. static void evt_gen_req_not_allowed(void);
  41. static void evt_gen_auth_method_not_allowed(void);
  42. static void evt_gen_req_bad_format(void);
  43. static void evt_gen_successful_auth(void);
  44. static void evt_gen_unexpected_addr(void);
  45. static void evt_gen_chal_resp_failed(void);
  46. static void evt_gen_inval_password(void);
  47. static void evt_gen_chal_sent(void);
  48. static void evt_gen_inval_transport(void);
  49. typedef void (*evt_generator)(void);
  50. static const evt_generator evt_generators[AST_SECURITY_EVENT_NUM_TYPES] = {
  51. [AST_SECURITY_EVENT_FAILED_ACL] = evt_gen_failed_acl,
  52. [AST_SECURITY_EVENT_INVAL_ACCT_ID] = evt_gen_inval_acct_id,
  53. [AST_SECURITY_EVENT_SESSION_LIMIT] = evt_gen_session_limit,
  54. [AST_SECURITY_EVENT_MEM_LIMIT] = evt_gen_mem_limit,
  55. [AST_SECURITY_EVENT_LOAD_AVG] = evt_gen_load_avg,
  56. [AST_SECURITY_EVENT_REQ_NO_SUPPORT] = evt_gen_req_no_support,
  57. [AST_SECURITY_EVENT_REQ_NOT_ALLOWED] = evt_gen_req_not_allowed,
  58. [AST_SECURITY_EVENT_AUTH_METHOD_NOT_ALLOWED] = evt_gen_auth_method_not_allowed,
  59. [AST_SECURITY_EVENT_REQ_BAD_FORMAT] = evt_gen_req_bad_format,
  60. [AST_SECURITY_EVENT_SUCCESSFUL_AUTH] = evt_gen_successful_auth,
  61. [AST_SECURITY_EVENT_UNEXPECTED_ADDR] = evt_gen_unexpected_addr,
  62. [AST_SECURITY_EVENT_CHAL_RESP_FAILED] = evt_gen_chal_resp_failed,
  63. [AST_SECURITY_EVENT_INVAL_PASSWORD] = evt_gen_inval_password,
  64. [AST_SECURITY_EVENT_CHAL_SENT] = evt_gen_chal_sent,
  65. [AST_SECURITY_EVENT_INVAL_TRANSPORT] = evt_gen_inval_transport,
  66. };
  67. static void evt_gen_failed_acl(void)
  68. {
  69. struct sockaddr_in sin_local = {
  70. .sin_family = AF_INET
  71. };
  72. struct sockaddr_in sin_remote = {
  73. .sin_family = AF_INET
  74. };
  75. struct timeval session_tv = ast_tvnow();
  76. struct ast_security_event_failed_acl failed_acl_event = {
  77. .common.event_type = AST_SECURITY_EVENT_FAILED_ACL,
  78. .common.version = AST_SECURITY_EVENT_FAILED_ACL_VERSION,
  79. .common.service = "TEST",
  80. .common.module = AST_MODULE,
  81. .common.account_id = "Username",
  82. .common.session_id = "Session123",
  83. .common.session_tv = &session_tv,
  84. .common.local_addr = {
  85. .sin = &sin_local,
  86. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  87. },
  88. .common.remote_addr = {
  89. .sin = &sin_remote,
  90. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  91. },
  92. .acl_name = "TEST_ACL",
  93. };
  94. inet_aton("192.168.1.1", &sin_local.sin_addr);
  95. sin_local.sin_port = htons(12121);
  96. inet_aton("192.168.1.2", &sin_remote.sin_addr);
  97. sin_remote.sin_port = htons(12345);
  98. ast_security_event_report(AST_SEC_EVT(&failed_acl_event));
  99. }
  100. static void evt_gen_inval_acct_id(void)
  101. {
  102. struct sockaddr_in sin_local = {
  103. .sin_family = AF_INET
  104. };
  105. struct sockaddr_in sin_remote = {
  106. .sin_family = AF_INET
  107. };
  108. struct timeval session_tv = ast_tvnow();
  109. struct ast_security_event_inval_acct_id inval_acct_id = {
  110. .common.event_type = AST_SECURITY_EVENT_INVAL_ACCT_ID,
  111. .common.version = AST_SECURITY_EVENT_INVAL_ACCT_ID_VERSION,
  112. .common.service = "TEST",
  113. .common.module = AST_MODULE,
  114. .common.account_id = "FakeUser",
  115. .common.session_id = "Session456",
  116. .common.session_tv = &session_tv,
  117. .common.local_addr = {
  118. .sin = &sin_local,
  119. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  120. },
  121. .common.remote_addr = {
  122. .sin = &sin_remote,
  123. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  124. },
  125. };
  126. inet_aton("10.1.2.3", &sin_local.sin_addr);
  127. sin_local.sin_port = htons(4321);
  128. inet_aton("10.1.2.4", &sin_remote.sin_addr);
  129. sin_remote.sin_port = htons(1234);
  130. ast_security_event_report(AST_SEC_EVT(&inval_acct_id));
  131. }
  132. static void evt_gen_session_limit(void)
  133. {
  134. struct sockaddr_in sin_local = {
  135. .sin_family = AF_INET
  136. };
  137. struct sockaddr_in sin_remote = {
  138. .sin_family = AF_INET
  139. };
  140. struct timeval session_tv = ast_tvnow();
  141. struct ast_security_event_session_limit session_limit = {
  142. .common.event_type = AST_SECURITY_EVENT_SESSION_LIMIT,
  143. .common.version = AST_SECURITY_EVENT_SESSION_LIMIT_VERSION,
  144. .common.service = "TEST",
  145. .common.module = AST_MODULE,
  146. .common.account_id = "Jenny",
  147. .common.session_id = "8675309",
  148. .common.session_tv = &session_tv,
  149. .common.local_addr = {
  150. .sin = &sin_local,
  151. .transport = AST_SECURITY_EVENT_TRANSPORT_TLS,
  152. },
  153. .common.remote_addr = {
  154. .sin = &sin_remote,
  155. .transport = AST_SECURITY_EVENT_TRANSPORT_TLS,
  156. },
  157. };
  158. inet_aton("10.5.4.3", &sin_local.sin_addr);
  159. sin_local.sin_port = htons(4444);
  160. inet_aton("10.5.4.2", &sin_remote.sin_addr);
  161. sin_remote.sin_port = htons(3333);
  162. ast_security_event_report(AST_SEC_EVT(&session_limit));
  163. }
  164. static void evt_gen_mem_limit(void)
  165. {
  166. struct sockaddr_in sin_local = {
  167. .sin_family = AF_INET
  168. };
  169. struct sockaddr_in sin_remote = {
  170. .sin_family = AF_INET
  171. };
  172. struct timeval session_tv = ast_tvnow();
  173. struct ast_security_event_mem_limit mem_limit = {
  174. .common.event_type = AST_SECURITY_EVENT_MEM_LIMIT,
  175. .common.version = AST_SECURITY_EVENT_MEM_LIMIT_VERSION,
  176. .common.service = "TEST",
  177. .common.module = AST_MODULE,
  178. .common.account_id = "Felix",
  179. .common.session_id = "Session2604",
  180. .common.session_tv = &session_tv,
  181. .common.local_addr = {
  182. .sin = &sin_local,
  183. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  184. },
  185. .common.remote_addr = {
  186. .sin = &sin_remote,
  187. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  188. },
  189. };
  190. inet_aton("10.10.10.10", &sin_local.sin_addr);
  191. sin_local.sin_port = htons(555);
  192. inet_aton("10.10.10.12", &sin_remote.sin_addr);
  193. sin_remote.sin_port = htons(5656);
  194. ast_security_event_report(AST_SEC_EVT(&mem_limit));
  195. }
  196. static void evt_gen_load_avg(void)
  197. {
  198. struct sockaddr_in sin_local = {
  199. .sin_family = AF_INET
  200. };
  201. struct sockaddr_in sin_remote = {
  202. .sin_family = AF_INET
  203. };
  204. struct timeval session_tv = ast_tvnow();
  205. struct ast_security_event_load_avg load_avg = {
  206. .common.event_type = AST_SECURITY_EVENT_LOAD_AVG,
  207. .common.version = AST_SECURITY_EVENT_LOAD_AVG_VERSION,
  208. .common.service = "TEST",
  209. .common.module = AST_MODULE,
  210. .common.account_id = "GuestAccount",
  211. .common.session_id = "XYZ123",
  212. .common.session_tv = &session_tv,
  213. .common.local_addr = {
  214. .sin = &sin_local,
  215. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  216. },
  217. .common.remote_addr = {
  218. .sin = &sin_remote,
  219. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  220. },
  221. };
  222. inet_aton("10.11.12.13", &sin_local.sin_addr);
  223. sin_local.sin_port = htons(9876);
  224. inet_aton("10.12.11.10", &sin_remote.sin_addr);
  225. sin_remote.sin_port = htons(9825);
  226. ast_security_event_report(AST_SEC_EVT(&load_avg));
  227. }
  228. static void evt_gen_req_no_support(void)
  229. {
  230. struct sockaddr_in sin_local = {
  231. .sin_family = AF_INET
  232. };
  233. struct sockaddr_in sin_remote = {
  234. .sin_family = AF_INET
  235. };
  236. struct timeval session_tv = ast_tvnow();
  237. struct ast_security_event_req_no_support req_no_support = {
  238. .common.event_type = AST_SECURITY_EVENT_REQ_NO_SUPPORT,
  239. .common.version = AST_SECURITY_EVENT_REQ_NO_SUPPORT_VERSION,
  240. .common.service = "TEST",
  241. .common.module = AST_MODULE,
  242. .common.account_id = "George",
  243. .common.session_id = "asdkl23478289lasdkf",
  244. .common.session_tv = &session_tv,
  245. .common.local_addr = {
  246. .sin = &sin_local,
  247. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  248. },
  249. .common.remote_addr = {
  250. .sin = &sin_remote,
  251. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  252. },
  253. .request_type = "MakeMeDinner",
  254. };
  255. inet_aton("10.110.120.130", &sin_local.sin_addr);
  256. sin_local.sin_port = htons(9888);
  257. inet_aton("10.120.110.100", &sin_remote.sin_addr);
  258. sin_remote.sin_port = htons(9777);
  259. ast_security_event_report(AST_SEC_EVT(&req_no_support));
  260. }
  261. static void evt_gen_req_not_allowed(void)
  262. {
  263. struct sockaddr_in sin_local = {
  264. .sin_family = AF_INET
  265. };
  266. struct sockaddr_in sin_remote = {
  267. .sin_family = AF_INET
  268. };
  269. struct timeval session_tv = ast_tvnow();
  270. struct ast_security_event_req_not_allowed req_not_allowed = {
  271. .common.event_type = AST_SECURITY_EVENT_REQ_NOT_ALLOWED,
  272. .common.version = AST_SECURITY_EVENT_REQ_NOT_ALLOWED_VERSION,
  273. .common.service = "TEST",
  274. .common.module = AST_MODULE,
  275. .common.account_id = "George",
  276. .common.session_id = "alksdjf023423h4lka0df",
  277. .common.session_tv = &session_tv,
  278. .common.local_addr = {
  279. .sin = &sin_local,
  280. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  281. },
  282. .common.remote_addr = {
  283. .sin = &sin_remote,
  284. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  285. },
  286. .request_type = "MakeMeBreakfast",
  287. .request_params = "BACONNNN!",
  288. };
  289. inet_aton("10.110.120.130", &sin_local.sin_addr);
  290. sin_local.sin_port = htons(9888);
  291. inet_aton("10.120.110.100", &sin_remote.sin_addr);
  292. sin_remote.sin_port = htons(9777);
  293. ast_security_event_report(AST_SEC_EVT(&req_not_allowed));
  294. }
  295. static void evt_gen_auth_method_not_allowed(void)
  296. {
  297. struct sockaddr_in sin_local = {
  298. .sin_family = AF_INET
  299. };
  300. struct sockaddr_in sin_remote = {
  301. .sin_family = AF_INET
  302. };
  303. struct timeval session_tv = ast_tvnow();
  304. struct ast_security_event_auth_method_not_allowed auth_method_not_allowed = {
  305. .common.event_type = AST_SECURITY_EVENT_AUTH_METHOD_NOT_ALLOWED,
  306. .common.version = AST_SECURITY_EVENT_AUTH_METHOD_NOT_ALLOWED_VERSION,
  307. .common.service = "TEST",
  308. .common.module = AST_MODULE,
  309. .common.account_id = "Bob",
  310. .common.session_id = "010101010101",
  311. .common.session_tv = &session_tv,
  312. .common.local_addr = {
  313. .sin = &sin_local,
  314. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  315. },
  316. .common.remote_addr = {
  317. .sin = &sin_remote,
  318. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  319. },
  320. .auth_method = "PlainText"
  321. };
  322. inet_aton("10.110.120.135", &sin_local.sin_addr);
  323. sin_local.sin_port = htons(8754);
  324. inet_aton("10.120.110.105", &sin_remote.sin_addr);
  325. sin_remote.sin_port = htons(8745);
  326. ast_security_event_report(AST_SEC_EVT(&auth_method_not_allowed));
  327. }
  328. static void evt_gen_req_bad_format(void)
  329. {
  330. struct sockaddr_in sin_local = {
  331. .sin_family = AF_INET
  332. };
  333. struct sockaddr_in sin_remote = {
  334. .sin_family = AF_INET
  335. };
  336. struct timeval session_tv = ast_tvnow();
  337. struct ast_security_event_req_bad_format req_bad_format = {
  338. .common.event_type = AST_SECURITY_EVENT_REQ_BAD_FORMAT,
  339. .common.version = AST_SECURITY_EVENT_REQ_BAD_FORMAT_VERSION,
  340. .common.service = "TEST",
  341. .common.module = AST_MODULE,
  342. .common.account_id = "Larry",
  343. .common.session_id = "838383fhfhf83hf8h3f8h",
  344. .common.session_tv = &session_tv,
  345. .common.local_addr = {
  346. .sin = &sin_local,
  347. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  348. },
  349. .common.remote_addr = {
  350. .sin = &sin_remote,
  351. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  352. },
  353. .request_type = "CheeseBurger",
  354. .request_params = "Onions,Swiss,MotorOil",
  355. };
  356. inet_aton("10.110.220.230", &sin_local.sin_addr);
  357. sin_local.sin_port = htons(1212);
  358. inet_aton("10.120.210.200", &sin_remote.sin_addr);
  359. sin_remote.sin_port = htons(2121);
  360. ast_security_event_report(AST_SEC_EVT(&req_bad_format));
  361. }
  362. static void evt_gen_successful_auth(void)
  363. {
  364. struct sockaddr_in sin_local = {
  365. .sin_family = AF_INET
  366. };
  367. struct sockaddr_in sin_remote = {
  368. .sin_family = AF_INET
  369. };
  370. struct timeval session_tv = ast_tvnow();
  371. struct ast_security_event_successful_auth successful_auth = {
  372. .common.event_type = AST_SECURITY_EVENT_SUCCESSFUL_AUTH,
  373. .common.version = AST_SECURITY_EVENT_SUCCESSFUL_AUTH_VERSION,
  374. .common.service = "TEST",
  375. .common.module = AST_MODULE,
  376. .common.account_id = "ValidUser",
  377. .common.session_id = "Session456",
  378. .common.session_tv = &session_tv,
  379. .common.local_addr = {
  380. .sin = &sin_local,
  381. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  382. },
  383. .common.remote_addr = {
  384. .sin = &sin_remote,
  385. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  386. },
  387. };
  388. inet_aton("10.1.2.3", &sin_local.sin_addr);
  389. sin_local.sin_port = htons(4321);
  390. inet_aton("10.1.2.4", &sin_remote.sin_addr);
  391. sin_remote.sin_port = htons(1234);
  392. ast_security_event_report(AST_SEC_EVT(&successful_auth));
  393. }
  394. static void evt_gen_unexpected_addr(void)
  395. {
  396. struct sockaddr_in sin_local = {
  397. .sin_family = AF_INET
  398. };
  399. struct sockaddr_in sin_remote = {
  400. .sin_family = AF_INET
  401. };
  402. struct sockaddr_in sin_expected = {
  403. .sin_family = AF_INET
  404. };
  405. struct timeval session_tv = ast_tvnow();
  406. struct ast_security_event_unexpected_addr unexpected_addr = {
  407. .common.event_type = AST_SECURITY_EVENT_UNEXPECTED_ADDR,
  408. .common.version = AST_SECURITY_EVENT_UNEXPECTED_ADDR_VERSION,
  409. .common.service = "TEST",
  410. .common.module = AST_MODULE,
  411. .common.account_id = "CoolUser",
  412. .common.session_id = "Session789",
  413. .common.session_tv = &session_tv,
  414. .common.local_addr = {
  415. .sin = &sin_local,
  416. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  417. },
  418. .common.remote_addr = {
  419. .sin = &sin_remote,
  420. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  421. },
  422. .expected_addr = {
  423. .sin = &sin_expected,
  424. .transport = AST_SECURITY_EVENT_TRANSPORT_UDP,
  425. },
  426. };
  427. inet_aton("10.1.2.3", &sin_local.sin_addr);
  428. sin_local.sin_port = htons(4321);
  429. inet_aton("10.1.2.4", &sin_remote.sin_addr);
  430. sin_remote.sin_port = htons(1234);
  431. inet_aton("10.1.2.5", &sin_expected.sin_addr);
  432. sin_expected.sin_port = htons(2343);
  433. ast_security_event_report(AST_SEC_EVT(&unexpected_addr));
  434. }
  435. static void evt_gen_chal_resp_failed(void)
  436. {
  437. struct sockaddr_in sin_local = {
  438. .sin_family = AF_INET
  439. };
  440. struct sockaddr_in sin_remote = {
  441. .sin_family = AF_INET
  442. };
  443. struct timeval session_tv = ast_tvnow();
  444. struct ast_security_event_chal_resp_failed chal_resp_failed = {
  445. .common.event_type = AST_SECURITY_EVENT_CHAL_RESP_FAILED,
  446. .common.version = AST_SECURITY_EVENT_CHAL_RESP_FAILED_VERSION,
  447. .common.service = "TEST",
  448. .common.module = AST_MODULE,
  449. .common.account_id = "SuperDuperUser",
  450. .common.session_id = "Session1231231231",
  451. .common.session_tv = &session_tv,
  452. .common.local_addr = {
  453. .sin = &sin_local,
  454. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  455. },
  456. .common.remote_addr = {
  457. .sin = &sin_remote,
  458. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  459. },
  460. .challenge = "8adf8a9sd8fas9df23ljk4",
  461. .response = "9u3jlaksdjflakjsdfoi23",
  462. .expected_response = "oiafaljhadf9834luahk3k",
  463. };
  464. inet_aton("10.1.2.3", &sin_local.sin_addr);
  465. sin_local.sin_port = htons(4321);
  466. inet_aton("10.1.2.4", &sin_remote.sin_addr);
  467. sin_remote.sin_port = htons(1234);
  468. ast_security_event_report(AST_SEC_EVT(&chal_resp_failed));
  469. }
  470. static void evt_gen_inval_password(void)
  471. {
  472. struct sockaddr_in sin_local = {
  473. .sin_family = AF_INET
  474. };
  475. struct sockaddr_in sin_remote = {
  476. .sin_family = AF_INET
  477. };
  478. struct timeval session_tv = ast_tvnow();
  479. struct ast_security_event_inval_password inval_password = {
  480. .common.event_type = AST_SECURITY_EVENT_INVAL_PASSWORD,
  481. .common.version = AST_SECURITY_EVENT_INVAL_PASSWORD_VERSION,
  482. .common.service = "TEST",
  483. .common.module = AST_MODULE,
  484. .common.account_id = "AccountIDGoesHere",
  485. .common.session_id = "SessionIDGoesHere",
  486. .common.session_tv = &session_tv,
  487. .common.local_addr = {
  488. .sin = &sin_local,
  489. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  490. },
  491. .common.remote_addr = {
  492. .sin = &sin_remote,
  493. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  494. },
  495. .challenge = "GoOdChAlLeNgE",
  496. .received_challenge = "BaDcHaLlEnGe",
  497. .received_hash = "3ad9023adf309",
  498. };
  499. inet_aton("10.200.100.30", &sin_local.sin_addr);
  500. sin_local.sin_port = htons(4321);
  501. inet_aton("10.200.100.40", &sin_remote.sin_addr);
  502. sin_remote.sin_port = htons(1234);
  503. ast_security_event_report(AST_SEC_EVT(&inval_password));
  504. }
  505. static void evt_gen_chal_sent(void)
  506. {
  507. struct sockaddr_in sin_local = {
  508. .sin_family = AF_INET
  509. };
  510. struct sockaddr_in sin_remote = {
  511. .sin_family = AF_INET
  512. };
  513. struct timeval session_tv = ast_tvnow();
  514. struct ast_security_event_chal_sent chal_sent = {
  515. .common.event_type = AST_SECURITY_EVENT_CHAL_SENT,
  516. .common.version = AST_SECURITY_EVENT_CHAL_SENT_VERSION,
  517. .common.service = "TEST",
  518. .common.module = AST_MODULE,
  519. .common.account_id = "AccountIDGoesHere",
  520. .common.session_id = "SessionIDGoesHere",
  521. .common.session_tv = &session_tv,
  522. .common.local_addr = {
  523. .sin = &sin_local,
  524. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  525. },
  526. .common.remote_addr = {
  527. .sin = &sin_remote,
  528. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  529. },
  530. .challenge = "IcHaLlEnGeYoU",
  531. };
  532. inet_aton("10.200.10.30", &sin_local.sin_addr);
  533. sin_local.sin_port = htons(5392);
  534. inet_aton("10.200.10.31", &sin_remote.sin_addr);
  535. sin_remote.sin_port = htons(1443);
  536. ast_security_event_report(AST_SEC_EVT(&chal_sent));
  537. }
  538. static void evt_gen_inval_transport(void)
  539. {
  540. struct sockaddr_in sin_local = {
  541. .sin_family = AF_INET
  542. };
  543. struct sockaddr_in sin_remote = {
  544. .sin_family = AF_INET
  545. };
  546. struct timeval session_tv = ast_tvnow();
  547. struct ast_security_event_inval_transport inval_transport = {
  548. .common.event_type = AST_SECURITY_EVENT_INVAL_TRANSPORT,
  549. .common.version = AST_SECURITY_EVENT_INVAL_TRANSPORT_VERSION,
  550. .common.service = "TEST",
  551. .common.module = AST_MODULE,
  552. .common.account_id = "AccountIDGoesHere",
  553. .common.session_id = "SessionIDGoesHere",
  554. .common.session_tv = &session_tv,
  555. .common.local_addr = {
  556. .sin = &sin_local,
  557. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  558. },
  559. .common.remote_addr = {
  560. .sin = &sin_remote,
  561. .transport = AST_SECURITY_EVENT_TRANSPORT_TCP,
  562. },
  563. .transport = "UDP",
  564. };
  565. inet_aton("10.200.103.45", &sin_local.sin_addr);
  566. sin_local.sin_port = htons(8223);
  567. inet_aton("10.200.103.44", &sin_remote.sin_addr);
  568. sin_remote.sin_port = htons(1039);
  569. ast_security_event_report(AST_SEC_EVT(&inval_transport));
  570. }
  571. static void gen_events(struct ast_cli_args *a)
  572. {
  573. unsigned int i;
  574. ast_cli(a->fd, "Generating some security events ...\n");
  575. for (i = 0; i < ARRAY_LEN(evt_generators); i++) {
  576. const char *event_type = ast_security_event_get_name(i);
  577. if (!evt_generators[i]) {
  578. ast_cli(a->fd, "*** No event generator for event type '%s' ***\n",
  579. event_type);
  580. continue;
  581. }
  582. ast_cli(a->fd, "Generating a '%s' security event ...\n", event_type);
  583. evt_generators[i]();
  584. }
  585. ast_cli(a->fd, "Security event generation complete.\n");
  586. }
  587. static char *handle_cli_sec_evt_test(struct ast_cli_entry *e, int cmd, struct ast_cli_args *a)
  588. {
  589. switch (cmd) {
  590. case CLI_INIT:
  591. e->command = "securityevents test generation";
  592. e->usage = ""
  593. "Usage: securityevents test generation"
  594. "";
  595. return NULL;
  596. case CLI_GENERATE:
  597. return NULL;
  598. case CLI_HANDLER:
  599. gen_events(a);
  600. return CLI_SUCCESS;
  601. }
  602. return CLI_FAILURE;
  603. }
  604. static struct ast_cli_entry cli_sec_evt[] = {
  605. AST_CLI_DEFINE(handle_cli_sec_evt_test, "Test security event generation"),
  606. };
  607. static int unload_module(void)
  608. {
  609. return ast_cli_unregister_multiple(cli_sec_evt, ARRAY_LEN(cli_sec_evt));
  610. }
  611. static int load_module(void)
  612. {
  613. int res;
  614. res = ast_cli_register_multiple(cli_sec_evt, ARRAY_LEN(cli_sec_evt));
  615. return res ? AST_MODULE_LOAD_DECLINE : AST_MODULE_LOAD_SUCCESS;
  616. }
  617. AST_MODULE_INFO_STANDARD(ASTERISK_GPL_KEY, "Test Security Event Generation");