#! /bin/sh # $OpenLDAP$ ## This work is part of OpenLDAP Software . ## ## Copyright 1998-2022 The OpenLDAP Foundation. ## All rights reserved. ## ## Redistribution and use in source and binary forms, with or without ## modification, are permitted only as authorized by the OpenLDAP ## Public License. ## ## A copy of this license is available in the file LICENSE in the ## top-level directory of the distribution or, alternatively, at ## . echo "running defines.sh" . $SRCDIR/scripts/defines.sh OPATTRS="entryUUID creatorsName createTimestamp modifiersName modifyTimestamp" if test $SYNCPROV = syncprovno; then echo "Syncrepl provider overlay not available, test skipped" exit 0 fi mkdir -p $TESTDIR $DBDIR1 $DBDIR4 # # Test replication: # - start provider # - start consumer # - populate over ldap # - perform some modifies and deleted # - attempt to modify the consumer (referral or chain) # - retrieve database over ldap and compare against expected results # echo "Starting provider slapd on TCP/IP port $PORT1..." . $CONFFILTER $BACKEND < $SRPROVIDERCONF > $CONF1 $SLAPD -f $CONF1 -h $URI1 -d $LVL > $LOG1 2>&1 & PID=$! if test $WAIT != 0 ; then echo PID $PID read foo fi KILLPIDS="$PID" sleep 1 echo "Using ldapsearch to check that provider slapd is running..." for i in 0 1 2 3 4 5; do $LDAPSEARCH -s base -b "$MONITOR" -H $URI1 \ 'objectclass=*' > /dev/null 2>&1 RC=$? if test $RC = 0 ; then break fi echo "Waiting 5 seconds for slapd to start..." sleep 5 done if test $RC != 0 ; then echo "ldapsearch failed ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Using ldapadd to create the context prefix entry in the provider..." $LDAPADD -D "$MANAGERDN" -H $URI1 -w $PASSWD < \ $LDIFORDEREDCP > /dev/null 2>&1 RC=$? if test $RC != 0 ; then echo "ldapadd failed ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Starting consumer slapd on TCP/IP port $PORT4..." . $CONFFILTER $BACKEND < $P1SRCONSUMERCONF > $CONF4 $SLAPD -f $CONF4 -h $URI4 -d $LVL > $LOG4 2>&1 & CONSUMERPID=$! if test $WAIT != 0 ; then echo CONSUMERPID $CONSUMERPID read foo fi KILLPIDS="$KILLPIDS $CONSUMERPID" sleep 1 echo "Using ldapsearch to check that consumer slapd is running..." for i in 0 1 2 3 4 5; do $LDAPSEARCH -s base -b "$MONITOR" -H $URI4 \ 'objectclass=*' > /dev/null 2>&1 RC=$? if test $RC = 0 ; then break fi echo "Waiting 5 seconds for slapd to start..." sleep 5 done if test $RC != 0 ; then echo "ldapsearch failed ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Using ldapadd to populate the provider directory..." $LDAPADD -D "$MANAGERDN" -H $URI1 -w $PASSWD < \ $LDIFORDEREDNOCP > /dev/null 2>&1 RC=$? if test $RC != 0 ; then echo "ldapadd failed ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Waiting $SLEEP1 seconds for syncrepl to receive changes..." sleep $SLEEP1 echo "Using ldapsearch to read all the entries from the provider..." $LDAPSEARCH -S "" -b "$BASEDN" -H $URI1 \ '(objectclass=*)' '*' $OPATTRS > $PROVIDEROUT 2>&1 RC=$? if test $RC != 0 ; then echo "ldapsearch failed at provider ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Using ldapsearch to read all the entries from the consumer..." $LDAPSEARCH -S "" -b "$BASEDN" -H $URI4 \ '(objectclass=*)' '*' $OPATTRS > $CONSUMEROUT 2>&1 RC=$? if test $RC != 0 ; then echo "ldapsearch failed at consumer ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Filtering provider results..." $LDIFFILTER < $PROVIDEROUT > $PROVIDERFLT echo "Filtering consumer results..." $LDIFFILTER < $CONSUMEROUT > $CONSUMERFLT echo "Comparing retrieved entries from provider and consumer..." $CMP $PROVIDERFLT $CONSUMERFLT > $CMPOUT if test $? != 0 ; then echo "test failed - provider and consumer databases differ" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit 1 fi echo "Stopping the provider, sleeping 10 seconds and restarting it..." kill -HUP "$PID" wait $PID sleep 10 echo "RESTART" >> $LOG1 $SLAPD -f $CONF1 -h $URI1 -d $LVL >> $LOG1 2>&1 & PID=$! if test $WAIT != 0 ; then echo PID $PID read foo fi KILLPIDS="$PID $CONSUMERPID" sleep 1 echo "Using ldapsearch to check that provider slapd is running..." for i in 0 1 2 3 4 5; do $LDAPSEARCH -s base -b "$MONITOR" -H $URI1 \ 'objectclass=*' > /dev/null 2>&1 RC=$? if test $RC = 0 ; then break fi echo "Waiting 5 seconds for slapd to start..." sleep 5 done echo "Waiting $SLEEP1 seconds for consumer to reconnect..." sleep $SLEEP1 if test $RC != 0 ; then echo "ldapsearch failed ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Using ldapmodify to modify provider directory..." # # Do some modifications # $LDAPMODIFY -v -D "$MANAGERDN" -H $URI1 -w $PASSWD > \ $TESTOUT 2>&1 << EOMODS dn: cn=James A Jones 1, ou=Alumni Association, ou=People, dc=example,dc=com changetype: modify add: drink drink: Orange Juice - delete: sn sn: Jones - add: sn sn: Jones dn: cn=Bjorn Jensen, ou=Information Technology Division, ou=People, dc=example,dc=com changetype: modify replace: drink drink: Iced Tea dn: cn=ITD Staff,ou=Groups,dc=example,dc=com changetype: modify delete: uniquemember uniquemember: cn=James A Jones 2, ou=Information Technology Division, ou=People, dc=example,dc=com uniquemember: cn=Bjorn Jensen, ou=Information Technology Division, ou=People, dc=example,dc=com - add: uniquemember uniquemember: cn=Dorothy Stevens, ou=Alumni Association, ou=People, dc=example,dc=com uniquemember: cn=James A Jones 1, ou=Alumni Association, ou=People, dc=example,dc=com dn: cn=All Staff,ou=Groups,dc=example,dc=com changetype: modify delete: description dn: cn=Gern Jensen, ou=Information Technology Division, ou=People, dc=example,dc=com changetype: add objectclass: OpenLDAPperson cn: Gern Jensen sn: Jensen uid: gjensen title: Chief Investigator, ITD postaladdress: ITD $ 535 W. William St $ Ann Arbor, MI 48103 seealso: cn=All Staff, ou=Groups, dc=example,dc=com drink: Coffee homepostaladdress: 844 Brown St. Apt. 4 $ Ann Arbor, MI 48104 description: Very odd facsimiletelephonenumber: +1 313 555 7557 facsimiletelephonenumber: +1 313 555 9998 facsimiletelephonenumber: +1 313 555 9999 telephonenumber: +1 313 555 8343 mail: gjensen@mailgw.example.com homephone: +1 313 555 8844 # modify attribute with no matching rule (ITS#6458) dn: cn=Gern Jensen, ou=Information Technology Division, ou=People, dc=example,dc=com changetype: modify replace: facsimiletelephonenumber facsimiletelephonenumber: +1 313 555 9998 facsimiletelephonenumber: +1 313 555 9999 dn: cn=Gern Jensen, ou=Information Technology Division, ou=People, dc=example,dc=com changetype: modify replace: facsimiletelephonenumber facsimiletelephonenumber: +1 313 555 9998 facsimiletelephonenumber: +1 313 555 9999 facsimiletelephonenumber: +1 313 555 7557 dn: cn=Gern Jensen, ou=Information Technology Division, ou=People, dc=example,dc=com changetype: modify replace: facsimiletelephonenumber facsimiletelephonenumber: +1 313 555 9998 facsimiletelephonenumber: +1 313 555 9999 dn: ou=Retired, ou=People, dc=example,dc=com changetype: add objectclass: organizationalUnit ou: Retired dn: cn=Rosco P. Coltrane, ou=Information Technology Division, ou=People, dc=example,dc=com changetype: add objectclass: OpenLDAPperson cn: Rosco P. Coltrane sn: Coltrane uid: rosco description: Fat tycoon dn: cn=Rosco P. Coltrane, ou=Information Technology Division, ou=People, dc=example,dc=com changetype: modrdn newrdn: cn=Rosco P. Coltrane deleteoldrdn: 1 newsuperior: ou=Retired, ou=People, dc=example,dc=com dn: cn=James A Jones 2, ou=Information Technology Division, ou=People, dc=example,dc=com changetype: delete dn: dc=testdomain1,dc=example,dc=com changetype: modrdn newrdn: dc=itsdomain1 deleteoldrdn: 1 dn: dc=itsdomain1,dc=example,dc=com changetype: modify replace: description description: Example, Inc. ITS test domain dn: dc=testdomain2,dc=example,dc=com changetype: modrdn newrdn: dc=itsdomain2 deleteoldrdn: 1 EOMODS RC=$? if test $RC != 0 ; then echo "ldapmodify failed ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Using ldappasswd to change some passwords..." $LDAPPASSWD -D "$MANAGERDN" -H $URI1 -w $PASSWD \ 'cn=Bjorn Jensen,ou=Information Technology Division,ou=People,dc=example,dc=com' \ > $TESTOUT 2>&1 RC=$? if test $RC != 0 ; then echo "ldapmodify failed ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Waiting $SLEEP1 seconds for syncrepl to receive changes..." sleep $SLEEP1 echo "Using ldapsearch to read all the entries from the provider..." $LDAPSEARCH -S "" -b "$BASEDN" -H $URI1 \ '(objectclass=*)' '*' $OPATTRS > $PROVIDEROUT 2>&1 RC=$? if test $RC != 0 ; then echo "ldapsearch failed at provider ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Using ldapsearch to read all the entries from the consumer..." $LDAPSEARCH -S "" -b "$BASEDN" -H $URI4 \ '(objectclass=*)' '*' $OPATTRS > $CONSUMEROUT 2>&1 RC=$? if test $RC != 0 ; then echo "ldapsearch failed at consumer ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Filtering provider results..." $LDIFFILTER < $PROVIDEROUT > $PROVIDERFLT echo "Filtering consumer results..." $LDIFFILTER < $CONSUMEROUT > $CONSUMERFLT echo "Comparing retrieved entries from provider and consumer..." $CMP $PROVIDERFLT $CONSUMERFLT > $CMPOUT if test $? != 0 ; then echo "test failed - provider and consumer databases differ" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit 1 fi echo "Stopping consumer to test recovery..." kill -HUP $CONSUMERPID wait $CONSUMERPID echo "Modifying more entries on the provider..." $LDAPMODIFY -v -D "$MANAGERDN" -H $URI1 -w $PASSWD >> \ $TESTOUT 2>&1 << EOMODS dn: cn=Rosco P. Coltrane, ou=Retired, ou=People, dc=example,dc=com changetype: delete dn: cn=Bjorn Jensen, ou=Information Technology Division, ou=People, dc=example,dc=com changetype: modify add: drink drink: Mad Dog 20/20 dn: cn=Rosco P. Coltrane, ou=Retired, ou=People, dc=example,dc=com changetype: add objectclass: OpenLDAPperson sn: Coltrane uid: rosco cn: Rosco P. Coltrane dn: dc=itsdomain2,dc=example,dc=com changetype: modify replace: description description: Example, Inc. itsdomain2 test domain # rename with a newly added newSuperior while the consumer is down (ITS#6472) dn: ou=New Branch,dc=example,dc=com changetype: add objectClass: organizationalUnit ou: New Branch dn: cn=Dorothy Stevens, ou=Alumni Association, ou=People, dc=example,dc=com changetype: modrdn newrdn: cn=Dorothy Stevens deleteoldrdn: 0 newsuperior: ou=New Branch,dc=example,dc=com EOMODS RC=$? if test $RC != 0 ; then echo "ldapmodify failed ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Restarting consumer..." echo "RESTART" >> $LOG4 $SLAPD -f $CONF4 -h $URI4 -d $LVL >> $LOG4 2>&1 & CONSUMERPID=$! if test $WAIT != 0 ; then echo CONSUMERPID $CONSUMERPID read foo fi KILLPIDS="$PID $CONSUMERPID" echo "Waiting $SLEEP1 seconds for syncrepl to receive changes..." sleep $SLEEP1 echo "Using ldapsearch to read all the entries from the provider..." $LDAPSEARCH -S "" -b "$BASEDN" -H $URI1 \ '(objectclass=*)' '*' $OPATTRS > $PROVIDEROUT 2>&1 RC=$? if test $RC != 0 ; then echo "ldapsearch failed at provider ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Using ldapsearch to read all the entries from the consumer..." $LDAPSEARCH -S "" -b "$BASEDN" -H $URI4 \ '(objectclass=*)' '*' $OPATTRS > $CONSUMEROUT 2>&1 RC=$? if test $RC != 0 ; then echo "ldapsearch failed at consumer ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Filtering provider results..." $LDIFFILTER < $PROVIDEROUT > $PROVIDERFLT echo "Filtering consumer results..." $LDIFFILTER < $CONSUMEROUT > $CONSUMERFLT echo "Comparing retrieved entries from provider and consumer..." $CMP $PROVIDERFLT $CONSUMERFLT > $CMPOUT if test $? != 0 ; then echo "test failed - provider and consumer databases differ" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit 1 fi if test ! $BACKLDAP = "ldapno" ; then echo "Try updating the consumer slapd..." $LDAPMODIFY -v -D "$MANAGERDN" -H $URI4 -w $PASSWD > \ $TESTOUT 2>&1 << EOMODS dn: cn=James A Jones 1, ou=Alumni Association, ou=People, dc=example, dc=com changetype: modify add: description description: This write must fail because directed to a shadow context, description: unless the chain overlay is configured appropriately ;) EOMODS RC=$? if test $RC != 0 ; then echo "ldapmodify failed ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi # ITS#4964 echo "Trying to change some passwords on the consumer..." $LDAPPASSWD -D "$MANAGERDN" -H $URI4 -w $PASSWD \ 'cn=Barbara Jensen,ou=Information Technology Division,ou=People,dc=example,dc=com' \ > $TESTOUT 2>&1 RC=$? if test $RC != 0 ; then echo "ldapmodify failed ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Waiting $SLEEP1 seconds for syncrepl to receive changes..." sleep $SLEEP1 fi # Testing a cancel exop (should go in its own testcase) $LDAPSEARCH -D "$MANAGERDN" -H $URI1 -w $PASSWD \ -e '!cancel' \ '(objectclass=*)' '*' $OPATTRS > $TESTOUT 2>&1 RC=$? # cancelled operation returns -1, so no point of checking return code, either # it's cancelled or we get stuck forever echo "Using ldapsearch to read all the entries from the provider..." $LDAPSEARCH -S "" -b "$BASEDN" -H $URI1 \ '(objectclass=*)' '*' $OPATTRS > $PROVIDEROUT 2>&1 RC=$? if test $RC != 0 ; then echo "ldapsearch failed at provider ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Using ldapsearch to read all the entries from the consumer..." $LDAPSEARCH -S "" -b "$BASEDN" -H $URI4 \ '(objectclass=*)' '*' $OPATTRS > $CONSUMEROUT 2>&1 RC=$? if test $RC != 0 ; then echo "ldapsearch failed at consumer ($RC)!" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit $RC fi echo "Filtering provider results..." $LDIFFILTER < $PROVIDEROUT > $PROVIDERFLT echo "Filtering consumer results..." $LDIFFILTER < $CONSUMEROUT > $CONSUMERFLT echo "Comparing retrieved entries from provider and consumer..." $CMP $PROVIDERFLT $CONSUMERFLT > $CMPOUT if test $? != 0 ; then echo "test failed - provider and consumer databases differ" test $KILLSERVERS != no && kill -HUP $KILLPIDS exit 1 fi test $KILLSERVERS != no && kill -HUP $KILLPIDS echo ">>>>> Test succeeded" test $KILLSERVERS != no && wait exit 0