# Unix SMB/CIFS implementation. # # Copyright (C) 2017 Andreas Schneider # # This program is free software; you can redistribute it and/or modify # it under the terms of the GNU General Public License as published by # the Free Software Foundation; either version 3 of the License, or # (at your option) any later version. # # This program is distributed in the hope that it will be useful, # but WITHOUT ANY WARRANTY; without even the implied warranty of # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the # GNU General Public License for more details. # # You should have received a copy of the GNU General Public License # along with this program. If not, see . # import samba.tests import pypamtest import os class SimplePamTests(samba.tests.TestCase): def test_authenticate(self): domain = os.environ["DOMAIN"] username = os.environ["USERNAME"] password = os.environ["PASSWORD"] unix_username = "%s/%s" % (domain, username) expected_rc = 0 # PAM_SUCCESS tc = pypamtest.TestCase(pypamtest.PAMTEST_AUTHENTICATE, expected_rc) res = pypamtest.run_pamtest(unix_username, "samba", [tc], [password]) self.assertTrue(res is not None) def test_authenticate_error(self): domain = os.environ["DOMAIN"] username = os.environ["USERNAME"] password = "WrongPassword" unix_username = "%s/%s" % (domain, username) expected_rc = 7 # PAM_AUTH_ERR tc = pypamtest.TestCase(pypamtest.PAMTEST_AUTHENTICATE, expected_rc) res = pypamtest.run_pamtest(unix_username, "samba", [tc], [password]) self.assertTrue(res is not None) # Authenticate again to check that we are not locked out with just one # failed login password = os.environ["PASSWORD"] expected_rc = 0 # PAM_SUCCESS tc = pypamtest.TestCase(pypamtest.PAMTEST_AUTHENTICATE, expected_rc) res = pypamtest.run_pamtest(unix_username, "samba", [tc], [password]) self.assertTrue(res is not None)