Skip to content

Commit

Permalink
selftests: fib_rule_tests: Add port mask match tests
Browse files Browse the repository at this point in the history
Add tests for FIB rules that match on source and destination ports with
a mask. Test both good and bad flows.

 # ./fib_rule_tests.sh
 IPv6 FIB rule tests
 [...]
    TEST: rule6 check: sport and dport redirect to table                [ OK ]
    TEST: rule6 check: sport and dport no redirect to table             [ OK ]
    TEST: rule6 del by pref: sport and dport redirect to table          [ OK ]
    TEST: rule6 check: sport and dport range redirect to table          [ OK ]
    TEST: rule6 check: sport and dport range no redirect to table       [ OK ]
    TEST: rule6 del by pref: sport and dport range redirect to table    [ OK ]
    TEST: rule6 check: sport and dport masked redirect to table         [ OK ]
    TEST: rule6 check: sport and dport masked no redirect to table      [ OK ]
    TEST: rule6 del by pref: sport and dport masked redirect to table   [ OK ]
 [...]

 Tests passed: 292
 Tests failed:   0

Reviewed-by: Petr Machata <petrm@nvidia.com>
Signed-off-by: Ido Schimmel <idosch@nvidia.com>
Reviewed-by: Guillaume Nault <gnault@redhat.com>
Reviewed-by: David Ahern <dsahern@kernel.org>
Link: https://patch.msgid.link/20250217134109.311176-9-idosch@nvidia.com
Signed-off-by: Jakub Kicinski <kuba@kernel.org>
  • Loading branch information
Ido Schimmel authored and Jakub Kicinski committed Feb 20, 2025
1 parent 94694aa commit f5d783c
Showing 1 changed file with 20 additions and 0 deletions.
20 changes: 20 additions & 0 deletions tools/testing/selftests/net/fib_rule_tests.sh
Original file line number Diff line number Diff line change
Expand Up @@ -266,6 +266,16 @@ fib_rule6_test()
"sport and dport range no redirect to table"
fi

ip rule help 2>&1 | grep sport | grep -q MASK
if [ $? -eq 0 ]; then
match="sport 0x0f00/0xff00 dport 0x000f/0x00ff"
getmatch="sport 0x0f11 dport 0x220f"
getnomatch="sport 0x1f11 dport 0x221f"
fib_rule6_test_match_n_redirect "$match" "$getmatch" \
"$getnomatch" "sport and dport masked redirect to table" \
"sport and dport masked no redirect to table"
fi

fib_check_iproute_support "ipproto" "ipproto"
if [ $? -eq 0 ]; then
match="ipproto tcp"
Expand Down Expand Up @@ -543,6 +553,16 @@ fib_rule4_test()
"sport and dport range no redirect to table"
fi

ip rule help 2>&1 | grep sport | grep -q MASK
if [ $? -eq 0 ]; then
match="sport 0x0f00/0xff00 dport 0x000f/0x00ff"
getmatch="sport 0x0f11 dport 0x220f"
getnomatch="sport 0x1f11 dport 0x221f"
fib_rule4_test_match_n_redirect "$match" "$getmatch" \
"$getnomatch" "sport and dport masked redirect to table" \
"sport and dport masked no redirect to table"
fi

fib_check_iproute_support "ipproto" "ipproto"
if [ $? -eq 0 ]; then
match="ipproto tcp"
Expand Down

0 comments on commit f5d783c

Please sign in to comment.