libnftnl  1.1.2
nft-expr_nat-test.c
1 /*
2  * (C) 2013 by Ana Rey Botello <anarey@gmail.com>
3  *
4  * This program is free software; you can redistribute it and/or modify it
5  * under the terms of the GNU General Public License as published by
6  * the Free Software Foundation; either version 2 of the License, or
7  * (at your option) any later version.
8  *
9  */
10 
11 #include <stdio.h>
12 #include <stdlib.h>
13 #include <string.h>
14 
15 #include <netinet/in.h>
16 #include <netinet/ip.h>
17 #include <linux/netfilter/nf_tables.h>
18 #include <linux/netfilter/xt_iprange.h>
19 #include <libmnl/libmnl.h>
20 #include <libnftnl/rule.h>
21 #include <libnftnl/expr.h>
22 
23 static int test_ok = 1;
24 
25 static void print_err(const char *msg)
26 {
27  test_ok = 0;
28  printf("\033[31mERROR:\e[0m %s\n", msg);
29 }
30 
31 static void cmp_nftnl_expr(struct nftnl_expr *rule_a,
32  struct nftnl_expr *rule_b)
33 {
34  if (nftnl_expr_get_u32(rule_a, NFTNL_EXPR_NAT_TYPE) !=
35  nftnl_expr_get_u32(rule_b, NFTNL_EXPR_NAT_TYPE))
36  print_err("Expr NFTNL_EXPR_NAT_TYPE mismatches");
37  if (nftnl_expr_get_u32(rule_a, NFTNL_EXPR_NAT_FAMILY) !=
38  nftnl_expr_get_u32(rule_b, NFTNL_EXPR_NAT_FAMILY))
39  print_err("Expr NFTNL_EXPR_NAT_FAMILY mismatches");
40  if (nftnl_expr_get_u32(rule_a, NFTNL_EXPR_NAT_REG_ADDR_MIN) !=
41  nftnl_expr_get_u32(rule_b, NFTNL_EXPR_NAT_REG_ADDR_MIN))
42  print_err("Expr NFTNL_EXPR_NAT_REG_ADDR_MIN mismatches");
43  if (nftnl_expr_get_u32(rule_a, NFTNL_EXPR_NAT_REG_ADDR_MAX) !=
44  nftnl_expr_get_u32(rule_b, NFTNL_EXPR_NAT_REG_ADDR_MAX))
45  print_err("Expr NFTNL_EXPR_NAT_REG_ADDR_MAX mismatches");
46  if (nftnl_expr_get_u32(rule_a, NFTNL_EXPR_NAT_REG_PROTO_MIN) !=
47  nftnl_expr_get_u32(rule_b, NFTNL_EXPR_NAT_REG_PROTO_MIN))
48  print_err("Expr NFTNL_EXPR_NAT_REG_PROTO_MIN mismatches");
49  if (nftnl_expr_get_u32(rule_a, NFTNL_EXPR_NAT_REG_PROTO_MAX) !=
50  nftnl_expr_get_u32(rule_b, NFTNL_EXPR_NAT_REG_PROTO_MAX))
51  print_err("Expr NFTNL_EXPR_NAT_REG_PROTO_MAX mismatches");
52  if (nftnl_expr_get_u32(rule_a, NFTNL_EXPR_NAT_FLAGS) !=
53  nftnl_expr_get_u32(rule_b, NFTNL_EXPR_NAT_FLAGS))
54  print_err("Expr NFTNL_EXPR_NAT_FLAGS mismatches");
55 }
56 
57 int main(int argc, char *argv[])
58 {
59  struct nftnl_rule *a, *b;
60  struct nftnl_expr *ex;
61  struct nlmsghdr *nlh;
62  char buf[4096];
63  struct nftnl_expr_iter *iter_a, *iter_b;
64  struct nftnl_expr *rule_a, *rule_b;
65 
66  a = nftnl_rule_alloc();
67  b = nftnl_rule_alloc();
68  if (a == NULL || b == NULL)
69  print_err("OOM");
70  ex = nftnl_expr_alloc("nat");
71  if (ex == NULL)
72  print_err("OOM");
73 
74  nftnl_expr_set_u32(ex, NFTNL_EXPR_NAT_TYPE, 0x1234568);
75  nftnl_expr_set_u32(ex, NFTNL_EXPR_NAT_FAMILY, 0x3456721);
76  nftnl_expr_set_u32(ex, NFTNL_EXPR_NAT_REG_ADDR_MIN, 0x1452638);
77  nftnl_expr_set_u32(ex, NFTNL_EXPR_NAT_REG_ADDR_MAX, 0x5134682);
78  nftnl_expr_set_u32(ex, NFTNL_EXPR_NAT_REG_PROTO_MIN, 0x6124385);
79  nftnl_expr_set_u32(ex, NFTNL_EXPR_NAT_REG_PROTO_MAX, 0x2153846);
80  nftnl_expr_set_u32(ex, NFTNL_EXPR_NAT_FLAGS, 0x4213683);
81 
82  nftnl_rule_add_expr(a, ex);
83 
84  nlh = nftnl_rule_nlmsg_build_hdr(buf, NFT_MSG_NEWRULE, AF_INET, 0, 1234);
85  nftnl_rule_nlmsg_build_payload(nlh, a);
86 
87  if (nftnl_rule_nlmsg_parse(nlh, b) < 0)
88  print_err("parsing problems");
89 
90  iter_a = nftnl_expr_iter_create(a);
91  iter_b = nftnl_expr_iter_create(b);
92  if (iter_a == NULL || iter_b == NULL)
93  print_err("OOM");
94 
95  rule_a = nftnl_expr_iter_next(iter_a);
96  rule_b = nftnl_expr_iter_next(iter_b);
97  if (rule_a == NULL || rule_b == NULL)
98  print_err("OOM");
99 
100  cmp_nftnl_expr(rule_a, rule_b);
101 
102  if (nftnl_expr_iter_next(iter_a) != NULL ||
103  nftnl_expr_iter_next(iter_b) != NULL)
104  print_err("More 1 expr.");
105 
106  nftnl_expr_iter_destroy(iter_a);
107  nftnl_expr_iter_destroy(iter_b);
108  nftnl_rule_free(a);
109  nftnl_rule_free(b);
110 
111  if (!test_ok)
112  exit(EXIT_FAILURE);
113 
114  printf("%s: \033[32mOK\e[0m\n", argv[0]);
115  return EXIT_SUCCESS;
116 }