aboutsummaryrefslogtreecommitdiffstats
path: root/test/filters/seccomp-su.exp
blob: 3ff75b3b699795176864d0c926d02938462a4860 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
#!/usr/bin/expect -f
# This file is part of Firejail project
# Copyright (C) 2014-2019 Firejail Authors
# License GPL v2

set timeout 10
spawn $env(SHELL)
match_max 100000

send --  "firejail --noprofile --seccomp\r"
expect {
	timeout {puts "TESTING ERROR 0\n";exit}
	"Child process initialized"
}
sleep 2

send -- "sudo su -\r"
expect {
	timeout {puts "TESTING ERROR 1\n";exit}
	"effective uid is not 0" {puts "OK\n"}
	"Bad system call" {puts "OK\n"}
}

send -- "sudo ls\r"
expect {
	timeout {puts "TESTING ERROR 2\n";exit}
	"effective uid is not 0" {puts "OK\n"}
	"Bad system call" {puts "OK\n"}
}

send -- "ping google.com\r"
expect {
	timeout {puts "TESTING ERROR 3\n";exit}
	"Operation not permitted" {puts "OK\n"}
	"unknown host" {puts "OK\n"}
}

send -- "exit\r"
after 100
puts "all done\n"