blob: 16768441f05cda4b924d113d218207b91bb2c60e [file] [log] [blame]
chaviw8ffc7b82020-08-18 11:25:37 -07001/*
2 * Copyright (C) 2020 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17// TODO(b/129481165): remove the #pragma below and fix conversion issues
18#pragma clang diagnostic push
19#pragma clang diagnostic ignored "-Wconversion"
20
Huihong Luo05539a12022-02-23 10:29:40 -080021#include <android/gui/ISurfaceComposer.h>
Ana Krulec13be8ad2018-08-21 02:43:56 +000022#include <gtest/gtest.h>
Huihong Luo3bdef862022-03-03 11:57:19 -080023#include <gui/AidlStatusUtil.h>
Ana Krulec13be8ad2018-08-21 02:43:56 +000024#include <gui/LayerDebugInfo.h>
25#include <gui/Surface.h>
26#include <gui/SurfaceComposerClient.h>
Ana Krulec13be8ad2018-08-21 02:43:56 +000027#include <private/android_filesystem_config.h>
Huihong Luo05539a12022-02-23 10:29:40 -080028#include <private/gui/ComposerServiceAIDL.h>
Marin Shalamanova7fe3042021-01-29 21:02:08 +010029#include <ui/DisplayMode.h>
Marin Shalamanov228f46b2021-01-28 21:11:45 +010030#include <ui/DynamicDisplayInfo.h>
Ana Krulec13be8ad2018-08-21 02:43:56 +000031#include <utils/String8.h>
Dominik Laskowski3cb3d4e2019-11-21 11:14:45 -080032#include <functional>
chaviw8ffc7b82020-08-18 11:25:37 -070033#include "utils/ScreenshotUtils.h"
Dominik Laskowski3cb3d4e2019-11-21 11:14:45 -080034
Ana Krulec13be8ad2018-08-21 02:43:56 +000035namespace android {
36
37using Transaction = SurfaceComposerClient::Transaction;
Huihong Luo05539a12022-02-23 10:29:40 -080038using gui::LayerDebugInfo;
Huihong Luo3bdef862022-03-03 11:57:19 -080039using gui::aidl_utils::statusTFromBinderStatus;
Peiyong Lin4f3fddf2019-01-24 17:21:24 -080040using ui::ColorMode;
Ana Krulec13be8ad2018-08-21 02:43:56 +000041
42namespace {
43const String8 DISPLAY_NAME("Credentials Display Test");
44const String8 SURFACE_NAME("Test Surface Name");
Ana Krulec13be8ad2018-08-21 02:43:56 +000045} // namespace
46
47/**
48 * This class tests the CheckCredentials method in SurfaceFlinger.
49 * Methods like EnableVsyncInjections and InjectVsync are not tested since they do not
50 * return anything meaningful.
51 */
Ady Abrahamb0dbdaa2020-01-06 16:19:42 -080052
53// TODO(b/129481165): remove the #pragma below and fix conversion issues
54#pragma clang diagnostic push
55#pragma clang diagnostic ignored "-Wconversion"
Ana Krulec13be8ad2018-08-21 02:43:56 +000056class CredentialsTest : public ::testing::Test {
57protected:
Chavi Weingartenc73be482022-08-31 16:55:07 +000058 void SetUp() override { ASSERT_NO_FATAL_FAILURE(initClient()); }
Ana Krulec13be8ad2018-08-21 02:43:56 +000059
60 void TearDown() override {
61 mComposerClient->dispose();
62 mBGSurfaceControl.clear();
63 mComposerClient.clear();
Ana Krulec13be8ad2018-08-21 02:43:56 +000064 }
65
66 sp<IBinder> mDisplay;
67 sp<IBinder> mVirtualDisplay;
68 sp<SurfaceComposerClient> mComposerClient;
69 sp<SurfaceControl> mBGSurfaceControl;
70 sp<SurfaceControl> mVirtualSurfaceControl;
71
72 void initClient() {
Ady Abrahamd11bade2022-08-01 16:18:03 -070073 mComposerClient = sp<SurfaceComposerClient>::make();
Ana Krulec13be8ad2018-08-21 02:43:56 +000074 ASSERT_EQ(NO_ERROR, mComposerClient->initCheck());
75 }
76
Huihong Luo31b5ac22022-08-15 20:38:10 -070077 static sp<IBinder> getFirstDisplayToken() {
78 const auto ids = SurfaceComposerClient::getPhysicalDisplayIds();
79 if (ids.empty()) {
80 return nullptr;
81 }
82
83 return SurfaceComposerClient::getPhysicalDisplayToken(ids.front());
84 }
85
Ana Krulec13be8ad2018-08-21 02:43:56 +000086 void setupBackgroundSurface() {
Huihong Luo31b5ac22022-08-15 20:38:10 -070087 mDisplay = getFirstDisplayToken();
Dominik Laskowskidcb38bb2019-01-25 02:35:50 -080088 ASSERT_FALSE(mDisplay == nullptr);
89
Marin Shalamanova7fe3042021-01-29 21:02:08 +010090 ui::DisplayMode mode;
91 ASSERT_EQ(NO_ERROR, SurfaceComposerClient::getActiveDisplayMode(mDisplay, &mode));
Ana Krulec13be8ad2018-08-21 02:43:56 +000092
93 // Background surface
Marin Shalamanova7fe3042021-01-29 21:02:08 +010094 mBGSurfaceControl = mComposerClient->createSurface(SURFACE_NAME, mode.resolution.getWidth(),
95 mode.resolution.getHeight(),
96 PIXEL_FORMAT_RGBA_8888, 0);
Ana Krulec13be8ad2018-08-21 02:43:56 +000097 ASSERT_TRUE(mBGSurfaceControl != nullptr);
98 ASSERT_TRUE(mBGSurfaceControl->isValid());
99
100 Transaction t;
Dominik Laskowski29fa1462021-04-27 15:51:50 -0700101 t.setDisplayLayerStack(mDisplay, ui::DEFAULT_LAYER_STACK);
Ana Krulec13be8ad2018-08-21 02:43:56 +0000102 ASSERT_EQ(NO_ERROR,
103 t.setLayer(mBGSurfaceControl, INT_MAX - 3).show(mBGSurfaceControl).apply());
104 }
105
Ana Krulec13be8ad2018-08-21 02:43:56 +0000106 /**
Ana Krulec13be8ad2018-08-21 02:43:56 +0000107 * Template function the check a condition for different types of users: root
108 * graphics, system, and non-supported user. Root, graphics, and system should
109 * always equal privilegedValue, and non-supported user should equal unprivilegedValue.
110 */
111 template <typename T>
112 void checkWithPrivileges(std::function<T()> condition, T privilegedValue, T unprivilegedValue) {
113 // Check with root.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000114 {
115 UIDFaker f(AID_SYSTEM);
116 ASSERT_EQ(privilegedValue, condition());
117 }
Ana Krulec13be8ad2018-08-21 02:43:56 +0000118
119 // Check as a Graphics user.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000120 {
121 UIDFaker f(AID_GRAPHICS);
122 ASSERT_EQ(privilegedValue, condition());
123 }
Ana Krulec13be8ad2018-08-21 02:43:56 +0000124
125 // Check as a system user.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000126 {
127 UIDFaker f(AID_SYSTEM);
128 ASSERT_EQ(privilegedValue, condition());
129 }
Ana Krulec13be8ad2018-08-21 02:43:56 +0000130
131 // Check as a non-supported user.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000132 {
133 UIDFaker f(AID_BIN);
134 ASSERT_EQ(unprivilegedValue, condition());
135 }
chaviwd4a61642020-09-01 14:53:46 -0700136
137 // Check as shell since shell has some additional permissions
Chavi Weingartenc73be482022-08-31 16:55:07 +0000138 {
139 UIDFaker f(AID_SHELL);
140 ASSERT_EQ(privilegedValue, condition());
141 }
Ana Krulec13be8ad2018-08-21 02:43:56 +0000142 }
143};
144
145TEST_F(CredentialsTest, ClientInitTest) {
146 // Root can init can init the client.
147 ASSERT_NO_FATAL_FAILURE(initClient());
148
149 // Graphics can init the client.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000150 {
151 UIDFaker f(AID_GRAPHICS);
152 ASSERT_NO_FATAL_FAILURE(initClient());
153 }
Ana Krulec13be8ad2018-08-21 02:43:56 +0000154
155 // System can init the client.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000156 {
157 UIDFaker f(AID_SYSTEM);
158 ASSERT_NO_FATAL_FAILURE(initClient());
159 }
Ana Krulec13be8ad2018-08-21 02:43:56 +0000160
Robert Carrb89ea9d2018-12-10 13:01:14 -0800161 // Anyone else can init the client.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000162 {
163 UIDFaker f(AID_BIN);
164 mComposerClient = sp<SurfaceComposerClient>::make();
165 ASSERT_NO_FATAL_FAILURE(initClient());
166 }
Ana Krulec13be8ad2018-08-21 02:43:56 +0000167}
168
169TEST_F(CredentialsTest, GetBuiltInDisplayAccessTest) {
Huihong Luo31b5ac22022-08-15 20:38:10 -0700170 std::function<bool()> condition = [] { return getFirstDisplayToken() != nullptr; };
Ana Krulec13be8ad2018-08-21 02:43:56 +0000171 // Anyone can access display information.
172 ASSERT_NO_FATAL_FAILURE(checkWithPrivileges(condition, true, true));
173}
174
175TEST_F(CredentialsTest, AllowedGetterMethodsTest) {
176 // The following methods are tested with a UID that is not root, graphics,
177 // or system, to show that anyone can access them.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000178 UIDFaker f(AID_BIN);
Huihong Luo31b5ac22022-08-15 20:38:10 -0700179 const auto display = getFirstDisplayToken();
Ana Krulec13be8ad2018-08-21 02:43:56 +0000180 ASSERT_TRUE(display != nullptr);
181
Marin Shalamanova7fe3042021-01-29 21:02:08 +0100182 ui::DisplayMode mode;
183 ASSERT_EQ(NO_ERROR, SurfaceComposerClient::getActiveDisplayMode(display, &mode));
Ana Krulec13be8ad2018-08-21 02:43:56 +0000184
Marin Shalamanova7fe3042021-01-29 21:02:08 +0100185 Vector<ui::DisplayMode> modes;
Marin Shalamanov228f46b2021-01-28 21:11:45 +0100186 ui::DynamicDisplayInfo info;
187 ASSERT_EQ(NO_ERROR, SurfaceComposerClient::getDynamicDisplayInfo(display, &info));
Ana Krulec13be8ad2018-08-21 02:43:56 +0000188}
189
Marin Shalamanov228f46b2021-01-28 21:11:45 +0100190TEST_F(CredentialsTest, GetDynamicDisplayInfoTest) {
Huihong Luo31b5ac22022-08-15 20:38:10 -0700191 const auto display = getFirstDisplayToken();
Ana Krulec13be8ad2018-08-21 02:43:56 +0000192 std::function<status_t()> condition = [=]() {
Marin Shalamanov228f46b2021-01-28 21:11:45 +0100193 ui::DynamicDisplayInfo info;
194 return SurfaceComposerClient::getDynamicDisplayInfo(display, &info);
Ana Krulec13be8ad2018-08-21 02:43:56 +0000195 };
196 ASSERT_NO_FATAL_FAILURE(checkWithPrivileges<status_t>(condition, NO_ERROR, NO_ERROR));
197}
198
Daniel Solomon42d04562019-01-20 21:03:19 -0800199TEST_F(CredentialsTest, GetDisplayNativePrimariesTest) {
Huihong Luo31b5ac22022-08-15 20:38:10 -0700200 const auto display = getFirstDisplayToken();
Daniel Solomon42d04562019-01-20 21:03:19 -0800201 std::function<status_t()> condition = [=]() {
202 ui::DisplayPrimaries primaries;
203 return SurfaceComposerClient::getDisplayNativePrimaries(display, primaries);
204 };
205 ASSERT_NO_FATAL_FAILURE(checkWithPrivileges<status_t>(condition, NO_ERROR, NO_ERROR));
206}
207
Steven Thomasa87ed452020-01-03 16:10:05 -0800208TEST_F(CredentialsTest, SetDesiredDisplayConfigsTest) {
Huihong Luo31b5ac22022-08-15 20:38:10 -0700209 const auto display = getFirstDisplayToken();
Ady Abraham285f8c12022-10-11 17:12:14 -0700210 gui::DisplayModeSpecs specs;
211 status_t res = SurfaceComposerClient::getDesiredDisplayModeSpecs(display, &specs);
Steven Thomasa87ed452020-01-03 16:10:05 -0800212 ASSERT_EQ(res, NO_ERROR);
Ady Abraham285f8c12022-10-11 17:12:14 -0700213 gui::DisplayModeSpecs setSpecs;
Ana Krulec13be8ad2018-08-21 02:43:56 +0000214 std::function<status_t()> condition = [=]() {
Ady Abraham285f8c12022-10-11 17:12:14 -0700215 return SurfaceComposerClient::setDesiredDisplayModeSpecs(display, specs);
Ana Krulec13be8ad2018-08-21 02:43:56 +0000216 };
217 ASSERT_NO_FATAL_FAILURE(checkWithPrivileges<status_t>(condition, NO_ERROR, PERMISSION_DENIED));
218}
219
220TEST_F(CredentialsTest, SetActiveColorModeTest) {
Huihong Luo31b5ac22022-08-15 20:38:10 -0700221 const auto display = getFirstDisplayToken();
Ana Krulec13be8ad2018-08-21 02:43:56 +0000222 std::function<status_t()> condition = [=]() {
223 return SurfaceComposerClient::setActiveColorMode(display, ui::ColorMode::NATIVE);
224 };
225 ASSERT_NO_FATAL_FAILURE(checkWithPrivileges<status_t>(condition, NO_ERROR, PERMISSION_DENIED));
226}
227
Ana Krulec13be8ad2018-08-21 02:43:56 +0000228TEST_F(CredentialsTest, CreateDisplayTest) {
chaviwd4a61642020-09-01 14:53:46 -0700229 // Only graphics and system processes can create a secure display.
Ana Krulec13be8ad2018-08-21 02:43:56 +0000230 std::function<bool()> condition = [=]() {
231 sp<IBinder> testDisplay = SurfaceComposerClient::createDisplay(DISPLAY_NAME, true);
232 return testDisplay.get() != nullptr;
233 };
chaviwd4a61642020-09-01 14:53:46 -0700234
235 // Check with root.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000236 {
237 UIDFaker f(AID_ROOT);
238 ASSERT_FALSE(condition());
239 }
chaviwd4a61642020-09-01 14:53:46 -0700240
241 // Check as a Graphics user.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000242 {
243 UIDFaker f(AID_GRAPHICS);
244 ASSERT_TRUE(condition());
245 }
chaviwd4a61642020-09-01 14:53:46 -0700246
247 // Check as a system user.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000248 {
249 UIDFaker f(AID_SYSTEM);
250 ASSERT_TRUE(condition());
251 }
chaviwd4a61642020-09-01 14:53:46 -0700252
253 // Check as a non-supported user.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000254 {
255 UIDFaker f(AID_BIN);
256 ASSERT_FALSE(condition());
257 }
chaviwd4a61642020-09-01 14:53:46 -0700258
259 // Check as shell since shell has some additional permissions
Chavi Weingartenc73be482022-08-31 16:55:07 +0000260 {
261 UIDFaker f(AID_SHELL);
262 ASSERT_FALSE(condition());
263 }
Ana Krulec13be8ad2018-08-21 02:43:56 +0000264
265 condition = [=]() {
266 sp<IBinder> testDisplay = SurfaceComposerClient::createDisplay(DISPLAY_NAME, false);
267 return testDisplay.get() != nullptr;
268 };
269 ASSERT_NO_FATAL_FAILURE(checkWithPrivileges(condition, true, false));
270}
271
Ana Krulec13be8ad2018-08-21 02:43:56 +0000272TEST_F(CredentialsTest, CaptureTest) {
Huihong Luo31b5ac22022-08-15 20:38:10 -0700273 const auto display = getFirstDisplayToken();
Ana Krulec13be8ad2018-08-21 02:43:56 +0000274 std::function<status_t()> condition = [=]() {
275 sp<GraphicBuffer> outBuffer;
chaviw690db382020-07-27 16:46:46 -0700276 DisplayCaptureArgs captureArgs;
277 captureArgs.displayToken = display;
278 ScreenCaptureResults captureResults;
chaviw8ffc7b82020-08-18 11:25:37 -0700279 return ScreenCapture::captureDisplay(captureArgs, captureResults);
Ana Krulec13be8ad2018-08-21 02:43:56 +0000280 };
281 ASSERT_NO_FATAL_FAILURE(checkWithPrivileges<status_t>(condition, NO_ERROR, PERMISSION_DENIED));
282}
283
284TEST_F(CredentialsTest, CaptureLayersTest) {
285 setupBackgroundSurface();
286 sp<GraphicBuffer> outBuffer;
287 std::function<status_t()> condition = [=]() {
chaviw26c52482020-07-28 16:25:52 -0700288 LayerCaptureArgs captureArgs;
289 captureArgs.layerHandle = mBGSurfaceControl->getHandle();
290 captureArgs.sourceCrop = {0, 0, 1, 1};
291
292 ScreenCaptureResults captureResults;
chaviw8ffc7b82020-08-18 11:25:37 -0700293 return ScreenCapture::captureLayers(captureArgs, captureResults);
Ana Krulec13be8ad2018-08-21 02:43:56 +0000294 };
295 ASSERT_NO_FATAL_FAILURE(checkWithPrivileges<status_t>(condition, NO_ERROR, PERMISSION_DENIED));
296}
297
298/**
299 * The following tests are for methods accessible directly through SurfaceFlinger.
300 */
Ana Krulec13be8ad2018-08-21 02:43:56 +0000301TEST_F(CredentialsTest, GetLayerDebugInfo) {
302 setupBackgroundSurface();
Huihong Luo05539a12022-02-23 10:29:40 -0800303 sp<gui::ISurfaceComposer> sf(ComposerServiceAIDL::getComposerService());
Ana Krulec13be8ad2018-08-21 02:43:56 +0000304
305 // Historically, only root and shell can access the getLayerDebugInfo which
306 // is called when we call dumpsys. I don't see a reason why we should change this.
307 std::vector<LayerDebugInfo> outLayers;
Chavi Weingartenc73be482022-08-31 16:55:07 +0000308 binder::Status status = binder::Status::ok();
Ana Krulec13be8ad2018-08-21 02:43:56 +0000309 // Check with root.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000310 {
311 UIDFaker f(AID_ROOT);
312 status = sf->getLayerDebugInfo(&outLayers);
313 ASSERT_EQ(NO_ERROR, statusTFromBinderStatus(status));
314 }
Ana Krulec13be8ad2018-08-21 02:43:56 +0000315
316 // Check as a shell.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000317 {
318 UIDFaker f(AID_SHELL);
319 status = sf->getLayerDebugInfo(&outLayers);
320 ASSERT_EQ(NO_ERROR, statusTFromBinderStatus(status));
321 }
Ana Krulec13be8ad2018-08-21 02:43:56 +0000322
323 // Check as anyone else.
Chavi Weingartenc73be482022-08-31 16:55:07 +0000324 {
325 UIDFaker f(AID_BIN);
326 status = sf->getLayerDebugInfo(&outLayers);
327 ASSERT_EQ(PERMISSION_DENIED, statusTFromBinderStatus(status));
328 }
Ana Krulec13be8ad2018-08-21 02:43:56 +0000329}
Peiyong Lin4f3fddf2019-01-24 17:21:24 -0800330
331TEST_F(CredentialsTest, IsWideColorDisplayBasicCorrectness) {
Huihong Luo31b5ac22022-08-15 20:38:10 -0700332 const auto display = getFirstDisplayToken();
Dominik Laskowskidcb38bb2019-01-25 02:35:50 -0800333 ASSERT_FALSE(display == nullptr);
Peiyong Lin4f3fddf2019-01-24 17:21:24 -0800334 bool result = false;
335 status_t error = SurfaceComposerClient::isWideColorDisplay(display, &result);
336 ASSERT_EQ(NO_ERROR, error);
337 bool hasWideColorMode = false;
Marin Shalamanov228f46b2021-01-28 21:11:45 +0100338 ui::DynamicDisplayInfo info;
339 SurfaceComposerClient::getDynamicDisplayInfo(display, &info);
340 const auto& colorModes = info.supportedColorModes;
Peiyong Lin4f3fddf2019-01-24 17:21:24 -0800341 for (ColorMode colorMode : colorModes) {
342 switch (colorMode) {
343 case ColorMode::DISPLAY_P3:
344 case ColorMode::ADOBE_RGB:
345 case ColorMode::DCI_P3:
346 hasWideColorMode = true;
347 break;
348 default:
349 break;
350 }
351 }
352 ASSERT_EQ(hasWideColorMode, result);
353}
354
355TEST_F(CredentialsTest, IsWideColorDisplayWithPrivileges) {
Huihong Luo31b5ac22022-08-15 20:38:10 -0700356 const auto display = getFirstDisplayToken();
Dominik Laskowskidcb38bb2019-01-25 02:35:50 -0800357 ASSERT_FALSE(display == nullptr);
Peiyong Lin4f3fddf2019-01-24 17:21:24 -0800358 std::function<status_t()> condition = [=]() {
359 bool result = false;
360 return SurfaceComposerClient::isWideColorDisplay(display, &result);
361 };
362 ASSERT_NO_FATAL_FAILURE(checkWithPrivileges<status_t>(condition, NO_ERROR, NO_ERROR));
363}
364
Peiyong Lind1fedb42019-03-11 17:48:41 -0700365TEST_F(CredentialsTest, GetActiveColorModeBasicCorrectness) {
Huihong Luo31b5ac22022-08-15 20:38:10 -0700366 const auto display = getFirstDisplayToken();
Peiyong Lind1fedb42019-03-11 17:48:41 -0700367 ASSERT_FALSE(display == nullptr);
Marin Shalamanov228f46b2021-01-28 21:11:45 +0100368 ui::DynamicDisplayInfo info;
369 SurfaceComposerClient::getDynamicDisplayInfo(display, &info);
370 ColorMode colorMode = info.activeColorMode;
Peiyong Lind1fedb42019-03-11 17:48:41 -0700371 ASSERT_NE(static_cast<ColorMode>(BAD_VALUE), colorMode);
372}
373
Ana Krulec13be8ad2018-08-21 02:43:56 +0000374} // namespace android
Ady Abrahamb0dbdaa2020-01-06 16:19:42 -0800375
376// TODO(b/129481165): remove the #pragma below and fix conversion issues
377#pragma clang diagnostic pop // ignored "-Wconversion"