From 376e377e2de95486a752620f8e52d270cdab5c7c Mon Sep 17 00:00:00 2001 From: Jeremy Harris Date: Sun, 21 Dec 2014 21:35:04 +0000 Subject: Testsuite: case for malware= avast --- test/confs/4006 | 33 +++++++++++++++++ test/log/4006 | 8 +++++ test/paniclog/4006 | 2 ++ test/rejectlog/4006 | 24 +++++++++++++ test/scripts/4000-scanning/4006 | 80 +++++++++++++++++++++++++++++++++++++++++ test/stderr/4006 | 2 ++ test/stdout/4006 | 64 +++++++++++++++++++++++++++++++++ 7 files changed, 213 insertions(+) create mode 100644 test/confs/4006 create mode 100644 test/log/4006 create mode 100644 test/paniclog/4006 create mode 100644 test/rejectlog/4006 create mode 100644 test/scripts/4000-scanning/4006 create mode 100644 test/stderr/4006 create mode 100644 test/stdout/4006 (limited to 'test') diff --git a/test/confs/4006 b/test/confs/4006 new file mode 100644 index 000000000..230f1159e --- /dev/null +++ b/test/confs/4006 @@ -0,0 +1,33 @@ +# Exim test configuration 4002 +# Content-scan: avast interface + +exim_path = EXIM_PATH +host_lookup_order = bydns +primary_hostname = myhost.test.ex +spool_directory = DIR/spool +log_file_path = DIR/spool/log/%slog +gecos_pattern = "" +gecos_name = CALLER_NAME + +av_scanner = avast : DIR/eximdir/avast_sock : OPTION + +# ----- Main settings ----- + +acl_smtp_rcpt = accept +acl_smtp_data = c_data + +begin acl + +c_data: + accept !malware = * + deny logwrite = malware_name $malware_name + +# ----- Routers ----- + +begin routers + +r: + driver = redirect + data = :blackhole: + +# End diff --git a/test/log/4006 b/test/log/4006 new file mode 100644 index 000000000..4304b8789 --- /dev/null +++ b/test/log/4006 @@ -0,0 +1,8 @@ +1999-03-02 09:44:33 10HmaZ-0005vi-00 <= CALLER@myhost.test.ex U=CALLER P=local-esmtp S=sss +1999-03-02 09:44:33 10HmaZ-0005vi-00 => :blackhole: R=r +1999-03-02 09:44:33 10HmaZ-0005vi-00 Completed +1999-03-02 09:44:33 10HmaX-0005vi-00 malware acl condition: avast: invalid response from scanner: blah [E] + +1999-03-02 09:44:33 10HmaX-0005vi-00 U=CALLER F= temporarily rejected after DATA +1999-03-02 09:44:33 10HmaY-0005vi-00 malware_name VNAME +1999-03-02 09:44:33 10HmaY-0005vi-00 U=CALLER F= rejected after DATA diff --git a/test/paniclog/4006 b/test/paniclog/4006 new file mode 100644 index 000000000..24ab94808 --- /dev/null +++ b/test/paniclog/4006 @@ -0,0 +1,2 @@ +1999-03-02 09:44:33 10HmaX-0005vi-00 malware acl condition: avast: invalid response from scanner: blah [E] + diff --git a/test/rejectlog/4006 b/test/rejectlog/4006 new file mode 100644 index 000000000..2054abdb0 --- /dev/null +++ b/test/rejectlog/4006 @@ -0,0 +1,24 @@ +1999-03-02 09:44:33 10HmaX-0005vi-00 U=CALLER F= temporarily rejected after DATA +Envelope-from: +Envelope-to: +P Received: from CALLER (helo=test.ex) + by myhost.test.ex with local-esmtp (Exim x.yz) + (envelope-from ) + id 10HmaX-0005vi-00 + for userx@test.ex; Tue, 2 Mar 1999 09:44:33 +0000 + Date: Tue, 2 Mar 1999 09:44:33 +0000 + Subject: defer this one +I Message-Id: +F From: CALLER_NAME +1999-03-02 09:44:33 10HmaY-0005vi-00 U=CALLER F= rejected after DATA +Envelope-from: +Envelope-to: +P Received: from CALLER (helo=test.ex) + by myhost.test.ex with local-esmtp (Exim x.yz) + (envelope-from ) + id 10HmaY-0005vi-00 + for userx@test.ex; Tue, 2 Mar 1999 09:44:33 +0000 + Date: Tue, 2 Mar 1999 09:44:33 +0000 + Subject: message should be rejected +I Message-Id: +F From: CALLER_NAME diff --git a/test/scripts/4000-scanning/4006 b/test/scripts/4000-scanning/4006 new file mode 100644 index 000000000..af9af4964 --- /dev/null +++ b/test/scripts/4000-scanning/4006 @@ -0,0 +1,80 @@ +# content scan interface: avast +# +server DIR/eximdir/avast_sock +>LF>220 ready +LF>210 FLAGS DATA +>LF>200 FLAGS OK +LF>210 SCAN DATA +>LF>blah [+] +>LF>200 SCAN OK + +rcpt to: +data +Date: Fri, 17 Dec 2004 14:35:01 +0100 +Subject: message should be accepted + +. +quit +**** +# +# +# +server DIR/eximdir/avast_sock +>LF>220 ready +LF>210 SCAN DATA +>LF>blah [E] +>LF>200 SCAN OK + +rcpt to: +data +Date: Fri, 17 Dec 2004 14:35:01 +0100 +Subject: defer this one + +. +quit +**** +# +# +# +server DIR/eximdir/avast_sock +>LF>220 ready +LF>210 SCAN DATA +>LF>b\ l\ a\ h [L]9.9 9 VNAME +>LF>200 SCAN OK + +rcpt to: +data +Date: Fri, 17 Dec 2004 14:35:01 +0100 +Subject: message should be rejected + +. +quit +**** diff --git a/test/stderr/4006 b/test/stderr/4006 new file mode 100644 index 000000000..24ab94808 --- /dev/null +++ b/test/stderr/4006 @@ -0,0 +1,2 @@ +1999-03-02 09:44:33 10HmaX-0005vi-00 malware acl condition: avast: invalid response from scanner: blah [E] + diff --git a/test/stdout/4006 b/test/stdout/4006 new file mode 100644 index 000000000..602afa64c --- /dev/null +++ b/test/stdout/4006 @@ -0,0 +1,64 @@ +220 myhost.test.ex ESMTP Exim x.yz Tue, 2 Mar 1999 09:44:33 +0000 +250-myhost.test.ex Hello CALLER at test.ex +250-SIZE 52428800 +250-8BITMIME +250-PIPELINING +250 HELP +250 OK +250 Accepted +354 Enter message, ending with "." on a line by itself +250 OK id=10HmaZ-0005vi-00 +221 myhost.test.ex closing connection +220 myhost.test.ex ESMTP Exim x.yz Tue, 2 Mar 1999 09:44:33 +0000 +250-myhost.test.ex Hello CALLER at test.ex +250-SIZE 52428800 +250-8BITMIME +250-PIPELINING +250 HELP +250 OK +250 Accepted +354 Enter message, ending with "." on a line by itself +451 Temporary local problem - please try later +221 myhost.test.ex closing connection +220 myhost.test.ex ESMTP Exim x.yz Tue, 2 Mar 1999 09:44:33 +0000 +250-myhost.test.ex Hello CALLER at test.ex +250-SIZE 52428800 +250-8BITMIME +250-PIPELINING +250 HELP +250 OK +250 Accepted +354 Enter message, ending with "." on a line by itself +550 Administrative prohibition +221 myhost.test.ex closing connection + +******** SERVER ******** +Listening on TESTSUITE/eximdir/avast_sock ... +Connection request +>LF>220 ready +LF>210 FLAGS DATA +>LF>200 FLAGS OK +LF>210 SCAN DATA +>LF>blah [+] +>LF>200 SCAN OK +LF>220 ready +LF>210 SCAN DATA +>LF>blah [E] +>LF>200 SCAN OK +Unexpected EOF read from client +Listening on TESTSUITE/eximdir/avast_sock ... +Connection request +>LF>220 ready +LF>210 SCAN DATA +>LF>b\ l\ a\ h [L]9.9 9 VNAME +>LF>200 SCAN OK +Unexpected EOF read from client -- cgit v1.2.3