grpc_authz.cc
Go to the documentation of this file.
1 // Copyright 2021 gRPC authors.
2 //
3 // Licensed under the Apache License, Version 2.0 (the "License");
4 // you may not use this file except in compliance with the License.
5 // You may obtain a copy of the License at
6 //
7 // http://www.apache.org/licenses/LICENSE-2.0
8 //
9 // Unless required by applicable law or agreed to in writing, software
10 // distributed under the License is distributed on an "AS IS" BASIS,
11 // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12 // See the License for the specific language governing permissions and
13 // limitations under the License.
14 
15 #include <stdio.h>
16 #include <string.h>
17 
18 #include <grpc/byte_buffer.h>
19 #include <grpc/grpc_security.h>
20 #include <grpc/support/alloc.h>
21 #include <grpc/support/log.h>
22 #include <grpc/support/time.h>
23 
31 
32 static void* tag(intptr_t t) { return reinterpret_cast<void*>(t); }
33 
35  const char* test_name,
36  grpc_channel_args* client_args,
37  grpc_channel_args* server_args) {
39  gpr_log(GPR_INFO, "Running test: %s/%s", test_name, config.name);
40  f = config.create_fixture(client_args, server_args);
41  config.init_server(&f, server_args);
42  config.init_client(&f, client_args);
43  return f;
44 }
45 
48 }
49 
51  return n_seconds_from_now(5);
52 }
53 
55  grpc_event ev;
56  do {
58  } while (ev.type != GRPC_QUEUE_SHUTDOWN);
59 }
60 
62  if (!f->server) return;
63  grpc_server_shutdown_and_notify(f->server, f->cq, tag(1000));
64  grpc_event ev;
65  do {
67  } while (ev.type != GRPC_OP_COMPLETE || ev.tag != tag(1000));
68  grpc_server_destroy(f->server);
69  f->server = nullptr;
70 }
71 
73  if (!f->client) return;
74  grpc_channel_destroy(f->client);
75  f->client = nullptr;
76 }
77 
81 
83  drain_cq(f->cq);
85 }
86 
88  grpc_call* c;
89  grpc_call* s;
90  grpc_op ops[6];
91  grpc_op* op;
97  const char* error_string = nullptr;
100  int was_cancelled = 2;
101 
102  cq_verifier* cqv = cq_verifier_create(f.cq);
103 
104  gpr_timespec deadline = five_seconds_from_now();
105  c = grpc_channel_create_call(f.client, nullptr, GRPC_PROPAGATE_DEFAULTS, f.cq,
106  grpc_slice_from_static_string("/foo"), nullptr,
107  deadline, nullptr);
108  GPR_ASSERT(c);
109 
114 
115  memset(ops, 0, sizeof(ops));
116  op = ops;
119  op->flags = 0;
120  op->reserved = nullptr;
121  op++;
123  op->flags = 0;
124  op->reserved = nullptr;
125  op++;
128  op->flags = 0;
129  op->reserved = nullptr;
130  op++;
135  op->data.recv_status_on_client.error_string = &error_string;
136  op->flags = 0;
137  op->reserved = nullptr;
138  op++;
139  error = grpc_call_start_batch(c, ops, static_cast<size_t>(op - ops), tag(1),
140  nullptr);
142 
143  error =
145  &request_metadata_recv, f.cq, f.cq, tag(101));
147  CQ_EXPECT_COMPLETION(cqv, tag(101), 1);
148  cq_verify(cqv);
149 
150  memset(ops, 0, sizeof(ops));
151  op = ops;
154  op->flags = 0;
155  op->reserved = nullptr;
156  op++;
160  grpc_slice status_details = grpc_slice_from_static_string("xyz");
161  op->data.send_status_from_server.status_details = &status_details;
162  op->flags = 0;
163  op->reserved = nullptr;
164  op++;
167  op->flags = 0;
168  op->reserved = nullptr;
169  op++;
170  error = grpc_call_start_batch(s, ops, static_cast<size_t>(op - ops), tag(102),
171  nullptr);
173 
174  CQ_EXPECT_COMPLETION(cqv, tag(102), 1);
175  CQ_EXPECT_COMPLETION(cqv, tag(1), 1);
176  cq_verify(cqv);
178  GPR_ASSERT(0 == grpc_slice_str_cmp(details, "xyz"));
179 
181  gpr_free(const_cast<char*>(error_string));
186 
188  grpc_call_unref(s);
189  cq_verifier_destroy(cqv);
190 }
191 
193  grpc_call* c;
194  grpc_op ops[6];
195  grpc_op* op;
199  const char* error_string = nullptr;
202 
203  cq_verifier* cqv = cq_verifier_create(f.cq);
204 
205  gpr_timespec deadline = five_seconds_from_now();
206  c = grpc_channel_create_call(f.client, nullptr, GRPC_PROPAGATE_DEFAULTS, f.cq,
207  grpc_slice_from_static_string("/foo"), nullptr,
208  deadline, nullptr);
209  GPR_ASSERT(c);
210 
213 
214  memset(ops, 0, sizeof(ops));
215  op = ops;
218  op->flags = 0;
219  op->reserved = nullptr;
220  op++;
222  op->flags = 0;
223  op->reserved = nullptr;
224  op++;
227  op->flags = 0;
228  op->reserved = nullptr;
229  op++;
234  op->data.recv_status_on_client.error_string = &error_string;
235  op->flags = 0;
236  op->reserved = nullptr;
237  op++;
238  error = grpc_call_start_batch(c, ops, static_cast<size_t>(op - ops), tag(1),
239  nullptr);
241  CQ_EXPECT_COMPLETION(cqv, tag(1), 1);
242  cq_verify(cqv);
243 
245  GPR_ASSERT(0 ==
246  grpc_slice_str_cmp(details, "Unauthorized RPC request rejected."));
247 
249  gpr_free(const_cast<char*>(error_string));
252 
254  cq_verifier_destroy(cqv);
255 }
256 
259  const char* authz_policy =
260  "{"
261  " \"name\": \"authz\","
262  " \"allow_rules\": ["
263  " {"
264  " \"name\": \"allow_foo\","
265  " \"request\": {"
266  " \"paths\": ["
267  " \"*/foo\""
268  " ]"
269  " }"
270  " }"
271  " ]"
272  "}";
274  const char* error_details;
277  &error_details);
279  grpc_arg args[] = {
281  const_cast<char*>(GRPC_ARG_AUTHORIZATION_POLICY_PROVIDER), provider,
283  };
284  grpc_channel_args server_args = {GPR_ARRAY_SIZE(args), args};
285 
287  begin_test(config, "test_static_init_allow_authorized_request", nullptr,
288  &server_args);
291 
292  end_test(&f);
293  config.tear_down_data(&f);
294 }
295 
298  const char* authz_policy =
299  "{"
300  " \"name\": \"authz\","
301  " \"allow_rules\": ["
302  " {"
303  " \"name\": \"allow_bar\","
304  " \"request\": {"
305  " \"paths\": ["
306  " \"*/bar\""
307  " ]"
308  " }"
309  " }"
310  " ],"
311  " \"deny_rules\": ["
312  " {"
313  " \"name\": \"deny_foo\","
314  " \"request\": {"
315  " \"paths\": ["
316  " \"*/foo\""
317  " ]"
318  " }"
319  " }"
320  " ]"
321  "}";
323  const char* error_details;
326  &error_details);
328  grpc_arg args[] = {
330  const_cast<char*>(GRPC_ARG_AUTHORIZATION_POLICY_PROVIDER), provider,
332  };
333  grpc_channel_args server_args = {GPR_ARRAY_SIZE(args), args};
334 
336  begin_test(config, "test_static_init_deny_unauthorized_request", nullptr,
337  &server_args);
340 
341  end_test(&f);
342  config.tear_down_data(&f);
343 }
344 
347  const char* authz_policy =
348  "{"
349  " \"name\": \"authz\","
350  " \"allow_rules\": ["
351  " {"
352  " \"name\": \"allow_bar\","
353  " \"request\": {"
354  " \"paths\": ["
355  " \"*/bar\""
356  " ]"
357  " }"
358  " }"
359  " ]"
360  "}";
362  const char* error_details;
365  &error_details);
367  grpc_arg args[] = {
369  const_cast<char*>(GRPC_ARG_AUTHORIZATION_POLICY_PROVIDER), provider,
371  };
372  grpc_channel_args server_args = {GPR_ARRAY_SIZE(args), args};
373 
375  begin_test(config, "test_static_init_deny_request_no_match_in_policy",
376  nullptr, &server_args);
379 
380  end_test(&f);
381  config.tear_down_data(&f);
382 }
383 
386  const char* authz_policy =
387  "{"
388  " \"name\": \"authz\","
389  " \"allow_rules\": ["
390  " {"
391  " \"name\": \"allow_foo\","
392  " \"request\": {"
393  " \"paths\": ["
394  " \"*/foo\""
395  " ]"
396  " }"
397  " }"
398  " ]"
399  "}";
400  grpc_core::testing::TmpFile tmp_policy(authz_policy);
402  const char* error_details;
405  tmp_policy.name().c_str(), /*refresh_interval_sec=*/1, &code,
406  &error_details);
408  grpc_arg args[] = {
410  const_cast<char*>(GRPC_ARG_AUTHORIZATION_POLICY_PROVIDER), provider,
412  };
413  grpc_channel_args server_args = {GPR_ARRAY_SIZE(args), args};
414 
416  begin_test(config, "test_file_watcher_init_allow_authorized_request",
417  nullptr, &server_args);
420 
421  end_test(&f);
422  config.tear_down_data(&f);
423 }
424 
427  const char* authz_policy =
428  "{"
429  " \"name\": \"authz\","
430  " \"allow_rules\": ["
431  " {"
432  " \"name\": \"allow_bar\","
433  " \"request\": {"
434  " \"paths\": ["
435  " \"*/bar\""
436  " ]"
437  " }"
438  " }"
439  " ],"
440  " \"deny_rules\": ["
441  " {"
442  " \"name\": \"deny_foo\","
443  " \"request\": {"
444  " \"paths\": ["
445  " \"*/foo\""
446  " ]"
447  " }"
448  " }"
449  " ]"
450  "}";
451  grpc_core::testing::TmpFile tmp_policy(authz_policy);
453  const char* error_details;
456  tmp_policy.name().c_str(), /*refresh_interval_sec=*/1, &code,
457  &error_details);
459  grpc_arg args[] = {
461  const_cast<char*>(GRPC_ARG_AUTHORIZATION_POLICY_PROVIDER), provider,
463  };
464  grpc_channel_args server_args = {GPR_ARRAY_SIZE(args), args};
465 
467  begin_test(config, "test_file_watcher_init_deny_unauthorized_request",
468  nullptr, &server_args);
471 
472  end_test(&f);
473  config.tear_down_data(&f);
474 }
475 
478  const char* authz_policy =
479  "{"
480  " \"name\": \"authz\","
481  " \"allow_rules\": ["
482  " {"
483  " \"name\": \"allow_bar\","
484  " \"request\": {"
485  " \"paths\": ["
486  " \"*/bar\""
487  " ]"
488  " }"
489  " }"
490  " ]"
491  "}";
492  grpc_core::testing::TmpFile tmp_policy(authz_policy);
494  const char* error_details;
497  tmp_policy.name().c_str(), /*refresh_interval_sec=*/1, &code,
498  &error_details);
500  grpc_arg args[] = {
502  const_cast<char*>(GRPC_ARG_AUTHORIZATION_POLICY_PROVIDER), provider,
504  };
505  grpc_channel_args server_args = {GPR_ARRAY_SIZE(args), args};
506 
508  config, "test_file_watcher_init_deny_request_no_match_in_policy", nullptr,
509  &server_args);
512 
513  end_test(&f);
514  config.tear_down_data(&f);
515 }
516 
519  const char* authz_policy =
520  "{"
521  " \"name\": \"authz\","
522  " \"allow_rules\": ["
523  " {"
524  " \"name\": \"allow_foo\","
525  " \"request\": {"
526  " \"paths\": ["
527  " \"*/foo\""
528  " ]"
529  " }"
530  " }"
531  " ]"
532  "}";
533  grpc_core::testing::TmpFile tmp_policy(authz_policy);
535  const char* error_details;
538  tmp_policy.name().c_str(), /*refresh_interval_sec=*/1, &code,
539  &error_details);
541  grpc_arg args[] = {
543  const_cast<char*>(GRPC_ARG_AUTHORIZATION_POLICY_PROVIDER), provider,
545  };
546  grpc_channel_args server_args = {GPR_ARRAY_SIZE(args), args};
547 
549  config, "test_file_watcher_valid_policy_reload", nullptr, &server_args);
552  gpr_event on_reload_done;
553  gpr_event_init(&on_reload_done);
554  std::function<void(bool contents_changed, absl::Status status)> callback =
555  [&on_reload_done](bool contents_changed, absl::Status status) {
556  if (contents_changed) {
557  GPR_ASSERT(status.ok());
558  gpr_event_set(&on_reload_done, reinterpret_cast<void*>(1));
559  }
560  };
562  ->SetCallbackForTesting(std::move(callback));
563  // Replace existing policy in file with a different authorization policy.
564  authz_policy =
565  "{"
566  " \"name\": \"authz\","
567  " \"allow_rules\": ["
568  " {"
569  " \"name\": \"allow_bar\","
570  " \"request\": {"
571  " \"paths\": ["
572  " \"*/bar\""
573  " ]"
574  " }"
575  " }"
576  " ],"
577  " \"deny_rules\": ["
578  " {"
579  " \"name\": \"deny_foo\","
580  " \"request\": {"
581  " \"paths\": ["
582  " \"*/foo\""
583  " ]"
584  " }"
585  " }"
586  " ]"
587  "}";
588  tmp_policy.RewriteFile(authz_policy);
589  GPR_ASSERT(
590  reinterpret_cast<void*>(1) ==
594  ->SetCallbackForTesting(nullptr);
595 
596  end_test(&f);
597  config.tear_down_data(&f);
598 }
599 
602  const char* authz_policy =
603  "{"
604  " \"name\": \"authz\","
605  " \"allow_rules\": ["
606  " {"
607  " \"name\": \"allow_foo\","
608  " \"request\": {"
609  " \"paths\": ["
610  " \"*/foo\""
611  " ]"
612  " }"
613  " }"
614  " ]"
615  "}";
616  grpc_core::testing::TmpFile tmp_policy(authz_policy);
618  const char* error_details;
621  tmp_policy.name().c_str(), /*refresh_interval_sec=*/1, &code,
622  &error_details);
624  grpc_arg args[] = {
626  const_cast<char*>(GRPC_ARG_AUTHORIZATION_POLICY_PROVIDER), provider,
628  };
629  grpc_channel_args server_args = {GPR_ARRAY_SIZE(args), args};
630 
632  begin_test(config, "test_file_watcher_invalid_policy_skip_reload",
633  nullptr, &server_args);
636  gpr_event on_reload_done;
637  gpr_event_init(&on_reload_done);
638  std::function<void(bool contents_changed, absl::Status status)> callback =
639  [&on_reload_done](bool contents_changed, absl::Status status) {
640  if (contents_changed) {
642  GPR_ASSERT("\"name\" field is not present." == status.message());
643  gpr_event_set(&on_reload_done, reinterpret_cast<void*>(1));
644  }
645  };
647  ->SetCallbackForTesting(std::move(callback));
648  // Replace exisiting policy in file with an invalid policy.
649  authz_policy = "{}";
650  tmp_policy.RewriteFile(authz_policy);
651  GPR_ASSERT(
652  reinterpret_cast<void*>(1) ==
656  ->SetCallbackForTesting(nullptr);
657 
658  end_test(&f);
659  config.tear_down_data(&f);
660 }
661 
664  const char* authz_policy =
665  "{"
666  " \"name\": \"authz\","
667  " \"allow_rules\": ["
668  " {"
669  " \"name\": \"allow_foo\","
670  " \"request\": {"
671  " \"paths\": ["
672  " \"*/foo\""
673  " ]"
674  " }"
675  " }"
676  " ]"
677  "}";
678  grpc_core::testing::TmpFile tmp_policy(authz_policy);
680  const char* error_details;
683  tmp_policy.name().c_str(), /*refresh_interval_sec=*/1, &code,
684  &error_details);
686  grpc_arg args[] = {
688  const_cast<char*>(GRPC_ARG_AUTHORIZATION_POLICY_PROVIDER), provider,
690  };
691  grpc_channel_args server_args = {GPR_ARRAY_SIZE(args), args};
692 
694  config, "test_file_watcher_recovers_from_failure", nullptr, &server_args);
697  gpr_event on_first_reload_done;
698  gpr_event_init(&on_first_reload_done);
699  std::function<void(bool contents_changed, absl::Status status)> callback1 =
700  [&on_first_reload_done](bool contents_changed, absl::Status status) {
701  if (contents_changed) {
703  GPR_ASSERT("\"name\" field is not present." == status.message());
704  gpr_event_set(&on_first_reload_done, reinterpret_cast<void*>(1));
705  }
706  };
708  ->SetCallbackForTesting(std::move(callback1));
709  // Replace exisiting policy in file with an invalid policy.
710  authz_policy = "{}";
711  tmp_policy.RewriteFile(authz_policy);
712  GPR_ASSERT(reinterpret_cast<void*>(1) ==
713  gpr_event_wait(&on_first_reload_done,
716  gpr_event on_second_reload_done;
717  gpr_event_init(&on_second_reload_done);
718  std::function<void(bool contents_changed, absl::Status status)> callback2 =
719  [&on_second_reload_done](bool contents_changed, absl::Status status) {
720  if (contents_changed) {
721  GPR_ASSERT(status.ok());
722  gpr_event_set(&on_second_reload_done, reinterpret_cast<void*>(1));
723  }
724  };
726  ->SetCallbackForTesting(std::move(callback2));
727  // Recover from reload errors, by replacing invalid policy in file with a
728  // valid policy.
729  authz_policy =
730  "{"
731  " \"name\": \"authz\","
732  " \"allow_rules\": ["
733  " {"
734  " \"name\": \"allow_bar\","
735  " \"request\": {"
736  " \"paths\": ["
737  " \"*/bar\""
738  " ]"
739  " }"
740  " }"
741  " ],"
742  " \"deny_rules\": ["
743  " {"
744  " \"name\": \"deny_foo\","
745  " \"request\": {"
746  " \"paths\": ["
747  " \"*/foo\""
748  " ]"
749  " }"
750  " }"
751  " ]"
752  "}";
753  tmp_policy.RewriteFile(authz_policy);
754  GPR_ASSERT(reinterpret_cast<void*>(1) ==
755  gpr_event_wait(&on_second_reload_done,
759  ->SetCallbackForTesting(nullptr);
760 
761  end_test(&f);
762  config.tear_down_data(&f);
763 }
764 
775 }
776 
777 void grpc_authz_pre_init(void) {}
grpc_arg
Definition: grpc_types.h:103
grpc_core::FileWatcherAuthorizationPolicyProvider
Definition: grpc_authorization_policy_provider.h:74
grpc_core::testing::TmpFile
Definition: test/core/util/tls_utils.h:27
grpc_slice_unref
GPRAPI void grpc_slice_unref(grpc_slice s)
Definition: slice_api.cc:32
GPR_INFO
#define GPR_INFO
Definition: include/grpc/impl/codegen/log.h:56
grpc_op::flags
uint32_t flags
Definition: grpc_types.h:644
grpc_call_error
grpc_call_error
Definition: grpc_types.h:464
grpc_call_details_destroy
GRPCAPI void grpc_call_details_destroy(grpc_call_details *details)
Definition: call_details.cc:36
grpc_call_details_init
GRPCAPI void grpc_call_details_init(grpc_call_details *details)
Definition: call_details.cc:30
grpc_op::grpc_op_data::grpc_op_recv_status_on_client::trailing_metadata
grpc_metadata_array * trailing_metadata
Definition: grpc_types.h:701
grpc_timeout_seconds_to_deadline
gpr_timespec grpc_timeout_seconds_to_deadline(int64_t time_s)
Definition: test/core/util/test_config.cc:81
log.h
grpc_op::grpc_op_data::grpc_op_recv_status_on_client::status
grpc_status_code * status
Definition: grpc_types.h:702
tls_utils.h
memset
return memset(p, 0, total)
test_file_watcher_init_allow_authorized_request
static void test_file_watcher_init_allow_authorized_request(grpc_end2end_test_config config)
Definition: grpc_authz.cc:384
grpc_op::grpc_op_data::send_initial_metadata
struct grpc_op::grpc_op_data::grpc_op_send_initial_metadata send_initial_metadata
grpc_metadata_array
Definition: grpc_types.h:579
grpc_call_details
Definition: grpc_types.h:585
grpc_op::reserved
void * reserved
Definition: grpc_types.h:646
string.h
GRPC_STATUS_PERMISSION_DENIED
@ GRPC_STATUS_PERMISSION_DENIED
Definition: include/grpc/impl/codegen/status.h:68
gpr_event_set
GPRAPI void gpr_event_set(gpr_event *ev, void *value)
Definition: sync.cc:59
gpr_free
GPRAPI void gpr_free(void *ptr)
Definition: alloc.cc:51
error
grpc_error_handle error
Definition: retry_filter.cc:499
grpc_status_code
grpc_status_code
Definition: include/grpc/impl/codegen/status.h:28
GRPC_QUEUE_SHUTDOWN
@ GRPC_QUEUE_SHUTDOWN
Definition: grpc_types.h:554
GRPC_OP_COMPLETE
@ GRPC_OP_COMPLETE
Definition: grpc_types.h:558
GRPC_CALL_OK
@ GRPC_CALL_OK
Definition: grpc_types.h:466
status
absl::Status status
Definition: rls.cc:251
gpr_inf_future
GPRAPI gpr_timespec gpr_inf_future(gpr_clock_type type)
Definition: src/core/lib/gpr/time.cc:55
grpc_authorization_policy_provider
Definition: src/core/lib/security/authorization/authorization_policy_provider.h:30
end_test
static void end_test(grpc_end2end_test_fixture *f)
Definition: grpc_authz.cc:78
time.h
grpc_security.h
grpc_end2end_test_config
Definition: end2end_tests.h:53
grpc_authorization_policy_provider_file_watcher_create
GRPCAPI grpc_authorization_policy_provider * grpc_authorization_policy_provider_file_watcher_create(const char *authz_policy_path, unsigned int refresh_interval_sec, grpc_status_code *code, const char **error_details)
Definition: grpc_authorization_policy_provider.cc:207
credentials.h
grpc_channel_args
Definition: grpc_types.h:132
grpc_authorization_policy_provider_arg_vtable
const GRPCAPI grpc_arg_pointer_vtable * grpc_authorization_policy_provider_arg_vtable(void)
Definition: authorization_policy_provider_vtable.cc:46
grpc_op::data
union grpc_op::grpc_op_data data
grpc_core::testing::TmpFile::RewriteFile
void RewriteFile(absl::string_view data)
Definition: test/core/util/tls_utils.cc:37
grpc_end2end_test_fixture
Definition: end2end_tests.h:46
test_static_init_allow_authorized_request
static void test_static_init_allow_authorized_request(grpc_end2end_test_config config)
Definition: grpc_authz.cc:257
five_seconds_from_now
static gpr_timespec five_seconds_from_now(void)
Definition: grpc_authz.cc:50
grpc_metadata_array_destroy
GRPCAPI void grpc_metadata_array_destroy(grpc_metadata_array *array)
Definition: metadata_array.cc:35
grpc_server_request_call
GRPCAPI grpc_call_error grpc_server_request_call(grpc_server *server, grpc_call **call, grpc_call_details *details, grpc_metadata_array *request_metadata, grpc_completion_queue *cq_bound_to_call, grpc_completion_queue *cq_for_notification, void *tag_new)
Definition: src/core/lib/surface/server.cc:1526
trailing_metadata_recv
static grpc_metadata_array trailing_metadata_recv
Definition: test/core/fling/client.cc:43
c
void c(T a)
Definition: miscompile_with_no_unique_address_test.cc:40
autogen_x86imm.f
f
Definition: autogen_x86imm.py:9
asyncio_get_stats.args
args
Definition: asyncio_get_stats.py:40
GRPC_STATUS_OK
@ GRPC_STATUS_OK
Definition: include/grpc/impl/codegen/status.h:30
test_file_watcher_recovers_from_failure
static void test_file_watcher_recovers_from_failure(grpc_end2end_test_config config)
Definition: grpc_authz.cc:662
GRPC_OP_RECV_INITIAL_METADATA
@ GRPC_OP_RECV_INITIAL_METADATA
Definition: grpc_types.h:617
absl::move
constexpr absl::remove_reference_t< T > && move(T &&t) noexcept
Definition: abseil-cpp/absl/utility/utility.h:221
GPR_ASSERT
#define GPR_ASSERT(x)
Definition: include/grpc/impl/codegen/log.h:94
GRPC_OP_SEND_STATUS_FROM_SERVER
@ GRPC_OP_SEND_STATUS_FROM_SERVER
Definition: grpc_types.h:612
grpc_authorization_policy_provider.h
grpc_call_unref
GRPCAPI void grpc_call_unref(grpc_call *call)
Definition: call.cc:1770
grpc_op::grpc_op_data::grpc_op_send_status_from_server::status
grpc_status_code status
Definition: grpc_types.h:673
grpc_op::grpc_op_data::grpc_op_recv_status_on_client::error_string
const char ** error_string
Definition: grpc_types.h:707
gpr_log
GPRAPI void gpr_log(const char *file, int line, gpr_log_severity severity, const char *format,...) GPR_PRINT_FORMAT_CHECK(4
grpc_event
Definition: grpc_types.h:564
grpc_completion_queue
Definition: completion_queue.cc:347
cq_verifier_destroy
void cq_verifier_destroy(cq_verifier *v)
Definition: cq_verifier.cc:92
test_file_watcher_init_deny_unauthorized_request
static void test_file_watcher_init_deny_unauthorized_request(grpc_end2end_test_config config)
Definition: grpc_authz.cc:425
grpc_call
struct grpc_call grpc_call
Definition: grpc_types.h:70
absl::Status::message
absl::string_view message() const
Definition: third_party/abseil-cpp/absl/status/status.h:806
test_allow_authorized_request
static void test_allow_authorized_request(grpc_end2end_test_fixture f)
Definition: grpc_authz.cc:87
grpc_op
Definition: grpc_types.h:640
grpc_slice_from_static_string
GPRAPI grpc_slice grpc_slice_from_static_string(const char *source)
Definition: slice/slice.cc:89
cq_verifier_create
cq_verifier * cq_verifier_create(grpc_completion_queue *cq)
Definition: cq_verifier.cc:86
was_cancelled
static int was_cancelled
Definition: test/core/fling/server.cc:58
test_deny_unauthorized_request
static void test_deny_unauthorized_request(grpc_end2end_test_fixture f)
Definition: grpc_authz.cc:192
grpc_empty_slice
GPRAPI grpc_slice grpc_empty_slice(void)
Definition: slice/slice.cc:42
grpc_slice
Definition: include/grpc/impl/codegen/slice.h:65
GPR_CLOCK_MONOTONIC
@ GPR_CLOCK_MONOTONIC
Definition: gpr_types.h:36
intptr_t
_W64 signed int intptr_t
Definition: stdint-msvc2008.h:118
cq_verifier
Definition: cq_verifier.cc:76
request_metadata_recv
static grpc_metadata_array request_metadata_recv
Definition: test/core/fling/server.cc:48
gpr_event_init
GPRAPI void gpr_event_init(gpr_event *ev)
Definition: sync.cc:54
grpc_server_destroy
GRPCAPI void grpc_server_destroy(grpc_server *server)
Definition: src/core/lib/surface/server.cc:1519
callback
static void callback(void *arg, int status, int timeouts, struct hostent *host)
Definition: acountry.c:224
CQ_EXPECT_COMPLETION
#define CQ_EXPECT_COMPLETION(v, tag, success)
Definition: cq_verifier.h:58
test_file_watcher_init_deny_request_no_match_in_policy
static void test_file_watcher_init_deny_request_no_match_in_policy(grpc_end2end_test_config config)
Definition: grpc_authz.cc:476
end2end_tests.h
n
int n
Definition: abseil-cpp/absl/container/btree_test.cc:1080
gpr_event_wait
GPRAPI void * gpr_event_wait(gpr_event *ev, gpr_timespec abs_deadline)
Definition: sync.cc:73
grpc_op::op
grpc_op_type op
Definition: grpc_types.h:642
grpc_core::testing::TmpFile::name
const std::string & name()
Definition: test/core/util/tls_utils.h:34
tag
static void * tag(intptr_t t)
Definition: grpc_authz.cc:32
absl::StatusCode::kInvalidArgument
@ kInvalidArgument
grpc_op::grpc_op_data::grpc_op_send_initial_metadata::count
size_t count
Definition: grpc_types.h:653
GRPC_ARG_AUTHORIZATION_POLICY_PROVIDER
#define GRPC_ARG_AUTHORIZATION_POLICY_PROVIDER
Definition: grpc_types.h:450
grpc_op::grpc_op_data::grpc_op_recv_status_on_client::status_details
grpc_slice * status_details
Definition: grpc_types.h:703
details
static grpc_slice details
Definition: test/core/fling/client.cc:46
grpc_channel_create_call
GRPCAPI grpc_call * grpc_channel_create_call(grpc_channel *channel, grpc_call *parent_call, uint32_t propagation_mask, grpc_completion_queue *completion_queue, grpc_slice method, const grpc_slice *host, gpr_timespec deadline, void *reserved)
Definition: channel.cc:311
grpc_op::grpc_op_data::recv_close_on_server
struct grpc_op::grpc_op_data::grpc_op_recv_close_on_server recv_close_on_server
n_seconds_from_now
static gpr_timespec n_seconds_from_now(int n)
Definition: grpc_authz.cc:46
GPR_ARRAY_SIZE
#define GPR_ARRAY_SIZE(array)
Definition: useful.h:129
gpr_event
Definition: impl/codegen/sync_generic.h:31
GRPC_PROPAGATE_DEFAULTS
#define GRPC_PROPAGATE_DEFAULTS
Definition: propagation_bits.h:45
grpc_op::grpc_op_data::send_status_from_server
struct grpc_op::grpc_op_data::grpc_op_send_status_from_server send_status_from_server
test_static_init_deny_request_no_match_in_policy
static void test_static_init_deny_request_no_match_in_policy(grpc_end2end_test_config config)
Definition: grpc_authz.cc:345
cq_verifier.h
shutdown_client
static void shutdown_client(grpc_end2end_test_fixture *f)
Definition: grpc_authz.cc:72
test_static_init_deny_unauthorized_request
static void test_static_init_deny_unauthorized_request(grpc_end2end_test_config config)
Definition: grpc_authz.cc:296
grpc_completion_queue_destroy
GRPCAPI void grpc_completion_queue_destroy(grpc_completion_queue *cq)
Definition: completion_queue.cc:1424
GRPC_OP_SEND_INITIAL_METADATA
@ GRPC_OP_SEND_INITIAL_METADATA
Definition: grpc_types.h:598
absl::Status
Definition: third_party/abseil-cpp/absl/status/status.h:424
alloc.h
grpc_op::grpc_op_data::recv_status_on_client
struct grpc_op::grpc_op_data::grpc_op_recv_status_on_client recv_status_on_client
grpc_authorization_policy_provider_static_data_create
GRPCAPI grpc_authorization_policy_provider * grpc_authorization_policy_provider_static_data_create(const char *authz_policy, grpc_status_code *code, const char **error_details)
Definition: grpc_authorization_policy_provider.cc:191
grpc_op::grpc_op_data::grpc_op_send_status_from_server::trailing_metadata_count
size_t trailing_metadata_count
Definition: grpc_types.h:671
grpc_server_shutdown_and_notify
GRPCAPI void grpc_server_shutdown_and_notify(grpc_server *server, grpc_completion_queue *cq, void *tag)
Definition: src/core/lib/surface/server.cc:1503
grpc_completion_queue_next
GRPCAPI grpc_event grpc_completion_queue_next(grpc_completion_queue *cq, gpr_timespec deadline, void *reserved)
Definition: completion_queue.cc:1133
cq_verify
void cq_verify(cq_verifier *v, int timeout_sec)
Definition: cq_verifier.cc:268
grpc_completion_queue_shutdown
GRPCAPI void grpc_completion_queue_shutdown(grpc_completion_queue *cq)
Definition: completion_queue.cc:1416
grpc_channel_destroy
GRPCAPI void grpc_channel_destroy(grpc_channel *channel)
Definition: channel.cc:437
absl::Status::ok
ABSL_MUST_USE_RESULT bool ok() const
Definition: third_party/abseil-cpp/absl/status/status.h:802
begin_test
static grpc_end2end_test_fixture begin_test(grpc_end2end_test_config config, const char *test_name, grpc_channel_args *client_args, grpc_channel_args *server_args)
Definition: grpc_authz.cc:34
config_s
Definition: bloaty/third_party/zlib/deflate.c:120
shutdown_server
static void shutdown_server(grpc_end2end_test_fixture *f)
Definition: grpc_authz.cc:61
drain_cq
static void drain_cq(grpc_completion_queue *cq)
Definition: grpc_authz.cc:54
GRPC_OP_RECV_CLOSE_ON_SERVER
@ GRPC_OP_RECV_CLOSE_ON_SERVER
Definition: grpc_types.h:633
channel_args.h
callback2
static void callback2(void *arg, int status, int timeouts, struct hostent *host)
Definition: acountry.c:252
test_file_watcher_valid_policy_reload
static void test_file_watcher_valid_policy_reload(grpc_end2end_test_config config)
Definition: grpc_authz.cc:517
grpc_authz_pre_init
void grpc_authz_pre_init(void)
Definition: grpc_authz.cc:777
grpc_op::grpc_op_data::recv_initial_metadata
struct grpc_op::grpc_op_data::grpc_op_recv_initial_metadata recv_initial_metadata
grpc_op::grpc_op_data::grpc_op_send_status_from_server::status_details
grpc_slice * status_details
Definition: grpc_types.h:677
grpc_authorization_policy_provider_release
GRPCAPI void grpc_authorization_policy_provider_release(grpc_authorization_policy_provider *provider)
Definition: grpc_authorization_policy_provider.cc:222
code
Definition: bloaty/third_party/zlib/contrib/infback9/inftree9.h:24
gpr_timespec
Definition: gpr_types.h:50
grpc_event::type
grpc_completion_type type
Definition: grpc_types.h:566
grpc_authz
void grpc_authz(grpc_end2end_test_config config)
Definition: grpc_authz.cc:765
function
std::function< bool(GrpcTool *, int, const char **, const CliCredentials &, GrpcToolOutputCallback)> function
Definition: grpc_tool.cc:250
GRPC_OP_RECV_STATUS_ON_CLIENT
@ GRPC_OP_RECV_STATUS_ON_CLIENT
Definition: grpc_types.h:627
grpc_op::grpc_op_data::grpc_op_recv_initial_metadata::recv_initial_metadata
grpc_metadata_array * recv_initial_metadata
Definition: grpc_types.h:685
grpc_slice_str_cmp
GPRAPI int grpc_slice_str_cmp(grpc_slice a, const char *b)
Definition: slice/slice.cc:426
absl::Status::code
absl::StatusCode code() const
Definition: third_party/abseil-cpp/absl/status/status.cc:233
test_file_watcher_invalid_policy_skip_reload
static void test_file_watcher_invalid_policy_skip_reload(grpc_end2end_test_config config)
Definition: grpc_authz.cc:600
grpc_channel_arg_pointer_create
grpc_arg grpc_channel_arg_pointer_create(char *name, void *value, const grpc_arg_pointer_vtable *vtable)
Definition: channel_args.cc:492
op
static grpc_op * op
Definition: test/core/fling/client.cc:47
ops
static grpc_op ops[6]
Definition: test/core/fling/client.cc:39
initial_metadata_recv
static grpc_metadata_array initial_metadata_recv
Definition: test/core/fling/client.cc:42
grpc_call_start_batch
GRPCAPI grpc_call_error grpc_call_start_batch(grpc_call *call, const grpc_op *ops, size_t nops, void *tag, void *reserved)
Definition: call.cc:1831
grpc_event::tag
void * tag
Definition: grpc_types.h:576
grpc_op::grpc_op_data::grpc_op_recv_close_on_server::cancelled
int * cancelled
Definition: grpc_types.h:714
cq
static grpc_completion_queue * cq
Definition: test/core/fling/client.cc:37
GRPC_OP_SEND_CLOSE_FROM_CLIENT
@ GRPC_OP_SEND_CLOSE_FROM_CLIENT
Definition: grpc_types.h:607
call_details
static grpc_call_details call_details
Definition: test/core/fling/server.cc:47
grpc_metadata_array_init
GRPCAPI void grpc_metadata_array_init(grpc_metadata_array *array)
Definition: metadata_array.cc:30


grpc
Author(s):
autogenerated on Thu Mar 13 2025 02:59:47