backup.py 21 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557
  1. #
  2. # The Qubes OS Project, https://www.qubes-os.org/
  3. #
  4. # Copyright (C) 2014-2015
  5. # Marek Marczykowski-Górecki <marmarek@invisiblethingslab.com>
  6. # Copyright (C) 2015 Wojtek Porczyk <woju@invisiblethingslab.com>
  7. #
  8. # This library is free software; you can redistribute it and/or
  9. # modify it under the terms of the GNU Lesser General Public
  10. # License as published by the Free Software Foundation; either
  11. # version 2.1 of the License, or (at your option) any later version.
  12. #
  13. # This library is distributed in the hope that it will be useful,
  14. # but WITHOUT ANY WARRANTY; without even the implied warranty of
  15. # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
  16. # Lesser General Public License for more details.
  17. #
  18. # You should have received a copy of the GNU Lesser General Public
  19. # License along with this library; if not, see <https://www.gnu.org/licenses/>.
  20. #
  21. import hashlib
  22. import logging
  23. import multiprocessing
  24. import os
  25. import shutil
  26. import sys
  27. import qubes
  28. import qubes.backup
  29. import qubes.exc
  30. import qubes.storage.lvm
  31. import qubes.tests
  32. import qubes.tests.storage_lvm
  33. import qubes.vm
  34. import qubes.vm.appvm
  35. import qubes.vm.templatevm
  36. import qubes.vm.qubesvm
  37. # noinspection PyAttributeOutsideInit
  38. class BackupTestsMixin(object):
  39. class BackupErrorHandler(logging.Handler):
  40. def __init__(self, errors_queue, level=logging.NOTSET):
  41. super(BackupTestsMixin.BackupErrorHandler, self).__init__(level)
  42. self.errors_queue = errors_queue
  43. def emit(self, record):
  44. self.errors_queue.put(record.getMessage())
  45. def setUp(self):
  46. super(BackupTestsMixin, self).setUp()
  47. try:
  48. self.init_default_template(self.template)
  49. except AttributeError:
  50. self.init_default_template()
  51. self.error_detected = multiprocessing.Queue()
  52. self.log.debug("Creating backupvm")
  53. self.backupdir = os.path.join(os.environ["HOME"], "test-backup")
  54. if os.path.exists(self.backupdir):
  55. shutil.rmtree(self.backupdir)
  56. os.mkdir(self.backupdir)
  57. self.error_handler = self.BackupErrorHandler(self.error_detected,
  58. level=logging.WARNING)
  59. backup_log = logging.getLogger('qubes.backup')
  60. backup_log.addHandler(self.error_handler)
  61. def tearDown(self):
  62. super(BackupTestsMixin, self).tearDown()
  63. shutil.rmtree(self.backupdir)
  64. backup_log = logging.getLogger('qubes.backup')
  65. backup_log.removeHandler(self.error_handler)
  66. def fill_image(self, path, size=None, sparse=False):
  67. block_size = 4096
  68. self.log.debug("Filling %s" % path)
  69. f = open(path, 'wb+')
  70. if size is None:
  71. f.seek(0, 2)
  72. size = f.tell()
  73. f.seek(0)
  74. for block_num in range(int(size/block_size)):
  75. if sparse:
  76. f.seek(block_size, 1)
  77. f.write(b'a' * block_size)
  78. f.close()
  79. # NOTE: this was create_basic_vms
  80. def create_backup_vms(self, pool=None):
  81. template = self.app.default_template
  82. vms = []
  83. vmname = self.make_vm_name('test-net')
  84. self.log.debug("Creating %s" % vmname)
  85. testnet = self.app.add_new_vm(qubes.vm.appvm.AppVM,
  86. name=vmname, template=template, provides_network=True,
  87. label='red')
  88. self.loop.run_until_complete(
  89. testnet.create_on_disk(pool=pool))
  90. testnet.features['service.ntpd'] = True
  91. vms.append(testnet)
  92. self.fill_image(testnet.storage.export('private'), 20*1024*1024)
  93. vmname = self.make_vm_name('test1')
  94. self.log.debug("Creating %s" % vmname)
  95. testvm1 = self.app.add_new_vm(qubes.vm.appvm.AppVM,
  96. name=vmname, template=template, label='red')
  97. testvm1.uses_default_netvm = False
  98. testvm1.netvm = testnet
  99. self.loop.run_until_complete(
  100. testvm1.create_on_disk(pool=pool))
  101. vms.append(testvm1)
  102. self.fill_image(testvm1.storage.export('private'), 100 * 1024 * 1024)
  103. vmname = self.make_vm_name('testhvm1')
  104. self.log.debug("Creating %s" % vmname)
  105. testvm2 = self.app.add_new_vm(qubes.vm.standalonevm.StandaloneVM,
  106. name=vmname,
  107. virt_mode='hvm',
  108. label='red')
  109. self.loop.run_until_complete(
  110. testvm2.create_on_disk(pool=pool))
  111. self.fill_image(testvm2.storage.export('root'), 1024 * 1024 * 1024, \
  112. True)
  113. vms.append(testvm2)
  114. vmname = self.make_vm_name('template')
  115. self.log.debug("Creating %s" % vmname)
  116. testvm3 = self.app.add_new_vm(qubes.vm.templatevm.TemplateVM,
  117. name=vmname, label='red')
  118. self.loop.run_until_complete(
  119. testvm3.create_on_disk(pool=pool))
  120. self.fill_image(testvm3.storage.export('root'), 100 * 1024 * 1024, True)
  121. vms.append(testvm3)
  122. vmname = self.make_vm_name('custom')
  123. self.log.debug("Creating %s" % vmname)
  124. testvm4 = self.app.add_new_vm(qubes.vm.appvm.AppVM,
  125. name=vmname, template=testvm3, label='red')
  126. self.loop.run_until_complete(
  127. testvm4.create_on_disk(pool=pool))
  128. vms.append(testvm4)
  129. self.app.save()
  130. return vms
  131. def make_backup(self, vms, target=None, expect_failure=False, **kwargs):
  132. if target is None:
  133. target = self.backupdir
  134. try:
  135. backup = qubes.backup.Backup(self.app, vms, **kwargs)
  136. except qubes.exc.QubesException as e:
  137. if not expect_failure:
  138. self.fail("QubesException during backup_prepare: %s" % str(e))
  139. else:
  140. raise
  141. if 'passphrase' not in kwargs:
  142. backup.passphrase = 'qubes'
  143. backup.target_dir = target
  144. try:
  145. self.loop.run_until_complete(backup.backup_do())
  146. except qubes.exc.QubesException as e:
  147. if not expect_failure:
  148. self.fail("QubesException during backup_do: %s" % str(e))
  149. else:
  150. raise
  151. def restore_backup(self, source=None, appvm=None, options=None,
  152. expect_errors=None, manipulate_restore_info=None,
  153. passphrase='qubes'):
  154. self.skipTest('Test not converted to Qubes 4.0')
  155. if source is None:
  156. backupfile = os.path.join(self.backupdir,
  157. sorted(os.listdir(self.backupdir))[-1])
  158. else:
  159. backupfile = source
  160. with self.assertNotRaises(qubes.exc.QubesException):
  161. restore_op = qubes.backup.BackupRestore(
  162. self.app, backupfile, appvm, passphrase)
  163. if options:
  164. for key, value in options.items():
  165. setattr(restore_op.options, key, value)
  166. restore_info = restore_op.get_restore_info()
  167. if callable(manipulate_restore_info):
  168. restore_info = manipulate_restore_info(restore_info)
  169. self.log.debug(restore_op.get_restore_summary(restore_info))
  170. with self.assertNotRaises(qubes.exc.QubesException):
  171. restore_op.restore_do(restore_info)
  172. errors = []
  173. if expect_errors is None:
  174. expect_errors = []
  175. else:
  176. self.assertFalse(self.error_detected.empty(),
  177. "Restore errors expected, but none detected")
  178. while not self.error_detected.empty():
  179. current_error = self.error_detected.get()
  180. if any(map(current_error.startswith, expect_errors)):
  181. continue
  182. errors.append(current_error)
  183. self.assertTrue(len(errors) == 0,
  184. "Error(s) detected during backup_restore_do: %s" %
  185. '\n'.join(errors))
  186. if not appvm and not os.path.isdir(backupfile):
  187. os.unlink(backupfile)
  188. def create_sparse(self, path, size):
  189. f = open(path, "w")
  190. f.truncate(size)
  191. f.close()
  192. def vm_checksum(self, vms):
  193. hashes = {}
  194. for vm in vms:
  195. assert isinstance(vm, qubes.vm.qubesvm.QubesVM)
  196. hashes[vm.name] = {}
  197. for name, volume in vm.volumes.items():
  198. if not volume.rw or not volume.save_on_stop:
  199. continue
  200. vol_path = vm.storage.get_pool(volume).export(volume)
  201. hasher = hashlib.sha1()
  202. with open(vol_path, 'rb') as afile:
  203. for buf in iter(lambda: afile.read(4096000), b''):
  204. hasher.update(buf)
  205. hashes[vm.name][name] = hasher.hexdigest()
  206. return hashes
  207. def assertCorrectlyRestored(self, orig_vms, orig_hashes):
  208. ''' Verify if restored VMs are identical to those before backup.
  209. :param orig_vms: collection of original QubesVM objects
  210. :param orig_hashes: result of :py:meth:`vm_checksum` on original VMs,
  211. before backup
  212. :return:
  213. '''
  214. for vm in orig_vms:
  215. self.assertIn(vm.name, self.app.domains)
  216. restored_vm = self.app.domains[vm.name]
  217. for prop in ('name', 'kernel',
  218. 'memory', 'maxmem', 'kernelopts',
  219. 'services', 'vcpus', 'features'
  220. 'include_in_backups', 'default_user', 'qrexec_timeout',
  221. 'autostart', 'pci_strictreset', 'debug',
  222. 'internal'):
  223. if not hasattr(vm, prop):
  224. continue
  225. self.assertEqual(
  226. getattr(vm, prop), getattr(restored_vm, prop),
  227. "VM {} - property {} not properly restored".format(
  228. vm.name, prop))
  229. for prop in ('netvm', 'template', 'label'):
  230. if not hasattr(vm, prop):
  231. continue
  232. orig_value = getattr(vm, prop)
  233. restored_value = getattr(restored_vm, prop)
  234. if orig_value and restored_value:
  235. self.assertEqual(orig_value.name, restored_value.name,
  236. "VM {} - property {} not properly restored".format(
  237. vm.name, prop))
  238. else:
  239. self.assertEqual(orig_value, restored_value,
  240. "VM {} - property {} not properly restored".format(
  241. vm.name, prop))
  242. for dev_class in vm.devices.keys():
  243. for dev in vm.devices[dev_class]:
  244. self.assertIn(dev, restored_vm.devices[dev_class],
  245. "VM {} - {} device not restored".format(
  246. vm.name, dev_class))
  247. if orig_hashes:
  248. hashes = self.vm_checksum([restored_vm])[restored_vm.name]
  249. self.assertEqual(orig_hashes[vm.name], hashes,
  250. "VM {} - disk images are not properly restored".format(
  251. vm.name))
  252. class TC_00_Backup(BackupTestsMixin, qubes.tests.SystemTestCase):
  253. def test_000_basic_backup(self):
  254. vms = self.create_backup_vms()
  255. orig_hashes = self.vm_checksum(vms)
  256. self.make_backup(vms)
  257. self.remove_vms(reversed(vms))
  258. self.restore_backup()
  259. self.assertCorrectlyRestored(vms, orig_hashes)
  260. self.remove_vms(reversed(vms))
  261. def test_001_compressed_backup(self):
  262. vms = self.create_backup_vms()
  263. orig_hashes = self.vm_checksum(vms)
  264. self.make_backup(vms, compressed=True)
  265. self.remove_vms(reversed(vms))
  266. self.restore_backup()
  267. self.assertCorrectlyRestored(vms, orig_hashes)
  268. def test_002_encrypted_backup(self):
  269. vms = self.create_backup_vms()
  270. orig_hashes = self.vm_checksum(vms)
  271. self.make_backup(vms, encrypted=True)
  272. self.remove_vms(reversed(vms))
  273. self.restore_backup()
  274. self.assertCorrectlyRestored(vms, orig_hashes)
  275. def test_003_compressed_encrypted_backup(self):
  276. vms = self.create_backup_vms()
  277. orig_hashes = self.vm_checksum(vms)
  278. self.make_backup(vms, compressed=True, encrypted=True)
  279. self.remove_vms(reversed(vms))
  280. self.restore_backup()
  281. self.assertCorrectlyRestored(vms, orig_hashes)
  282. def test_004_sparse_multipart(self):
  283. vms = []
  284. vmname = self.make_vm_name('testhvm2')
  285. self.log.debug("Creating %s" % vmname)
  286. hvmtemplate = self.app.add_new_vm(
  287. qubes.vm.templatevm.TemplateVM, name=vmname, virt_mode='hvm', label='red')
  288. hvmtemplate.create_on_disk()
  289. self.fill_image(
  290. os.path.join(hvmtemplate.dir_path, '00file'),
  291. 195 * 1024 * 1024 - 4096 * 3)
  292. self.fill_image(hvmtemplate.storage.export('private'),
  293. 195 * 1024 * 1024 - 4096 * 3)
  294. self.fill_image(hvmtemplate.storage.export('root'), 1024 * 1024 * 1024,
  295. sparse=True)
  296. vms.append(hvmtemplate)
  297. self.app.save()
  298. orig_hashes = self.vm_checksum(vms)
  299. self.make_backup(vms)
  300. self.remove_vms(reversed(vms))
  301. self.restore_backup()
  302. self.assertCorrectlyRestored(vms, orig_hashes)
  303. # TODO check vm.backup_timestamp
  304. def test_005_compressed_custom(self):
  305. vms = self.create_backup_vms()
  306. orig_hashes = self.vm_checksum(vms)
  307. self.make_backup(vms, compression_filter="bzip2")
  308. self.remove_vms(reversed(vms))
  309. self.restore_backup()
  310. self.assertCorrectlyRestored(vms, orig_hashes)
  311. def test_010_selective_restore(self):
  312. # create backup with internal dependencies (template, netvm etc)
  313. # try restoring only AppVMs (but not templates, netvms) - should
  314. # handle according to options set
  315. exclude = [
  316. self.make_vm_name('test-net'),
  317. self.make_vm_name('template')
  318. ]
  319. def exclude_some(restore_info):
  320. for name in exclude:
  321. restore_info.pop(name)
  322. return restore_info
  323. vms = self.create_backup_vms()
  324. orig_hashes = self.vm_checksum(vms)
  325. self.make_backup(vms, compression_filter="bzip2")
  326. self.remove_vms(reversed(vms))
  327. self.restore_backup(manipulate_restore_info=exclude_some)
  328. for vm in vms:
  329. if vm.name == self.make_vm_name('test1'):
  330. # netvm was set to 'test-inst-test-net' - excluded
  331. vm.netvm = qubes.property.DEFAULT
  332. elif vm.name == self.make_vm_name('custom'):
  333. # template was set to 'test-inst-template' - excluded
  334. vm.template = self.app.default_template
  335. vms = [vm for vm in vms if vm.name not in exclude]
  336. self.assertCorrectlyRestored(vms, orig_hashes)
  337. def test_020_encrypted_backup_non_ascii(self):
  338. vms = self.create_backup_vms()
  339. orig_hashes = self.vm_checksum(vms)
  340. self.make_backup(vms, encrypted=True, passphrase=u'zażółć gęślą jaźń')
  341. self.remove_vms(reversed(vms))
  342. self.restore_backup(passphrase=u'zażółć gęślą jaźń')
  343. self.assertCorrectlyRestored(vms, orig_hashes)
  344. def test_100_backup_dom0_no_restore(self):
  345. # do not write it into dom0 home itself...
  346. os.mkdir('/var/tmp/test-backup')
  347. self.backupdir = '/var/tmp/test-backup'
  348. self.make_backup([self.app.domains[0]])
  349. # TODO: think of some safe way to test restore...
  350. def test_200_restore_over_existing_directory(self):
  351. """
  352. Regression test for #1386
  353. :return:
  354. """
  355. vms = self.create_backup_vms()
  356. orig_hashes = self.vm_checksum(vms)
  357. self.make_backup(vms)
  358. self.remove_vms(reversed(vms))
  359. test_dir = vms[0].dir_path
  360. os.mkdir(test_dir)
  361. with open(os.path.join(test_dir, 'some-file.txt'), 'w') as f:
  362. f.write('test file\n')
  363. self.restore_backup(
  364. expect_errors=[
  365. '*** Directory {} already exists! It has been moved'.format(
  366. test_dir)
  367. ])
  368. self.assertCorrectlyRestored(vms, orig_hashes)
  369. def test_210_auto_rename(self):
  370. """
  371. Test for #869
  372. :return:
  373. """
  374. vms = self.create_backup_vms()
  375. self.make_backup(vms)
  376. self.restore_backup(options={
  377. 'rename_conflicting': True
  378. })
  379. for vm in vms:
  380. with self.assertNotRaises(
  381. (qubes.exc.QubesVMNotFoundError, KeyError)):
  382. restored_vm = self.app.domains[vm.name + '1']
  383. if vm.netvm and not vm.property_is_default('netvm'):
  384. self.assertEqual(restored_vm.netvm.name, vm.netvm.name + '1')
  385. def _find_pool(self, volume_group, thin_pool):
  386. ''' Returns the pool matching the specified ``volume_group`` &
  387. ``thin_pool``, or None.
  388. '''
  389. pools = [p for p in self.app.pools
  390. if issubclass(p.__class__, qubes.storage.lvm.ThinPool)]
  391. for pool in pools:
  392. if pool.volume_group == volume_group \
  393. and pool.thin_pool == thin_pool:
  394. return pool
  395. return None
  396. @qubes.tests.storage_lvm.skipUnlessLvmPoolExists
  397. def test_300_backup_lvm(self):
  398. volume_group, thin_pool = \
  399. qubes.tests.storage_lvm.DEFAULT_LVM_POOL.split('/', 1)
  400. self.pool = self._find_pool(volume_group, thin_pool)
  401. if not self.pool:
  402. self.pool = self.app.add_pool(
  403. **qubes.tests.storage_lvm.POOL_CONF)
  404. self.created_pool = True
  405. vms = self.create_backup_vms(pool=self.pool)
  406. orig_hashes = self.vm_checksum(vms)
  407. self.make_backup(vms)
  408. self.remove_vms(reversed(vms))
  409. self.restore_backup()
  410. self.assertCorrectlyRestored(vms, orig_hashes)
  411. self.remove_vms(reversed(vms))
  412. @qubes.tests.storage_lvm.skipUnlessLvmPoolExists
  413. def test_301_restore_to_lvm(self):
  414. volume_group, thin_pool = \
  415. qubes.tests.storage_lvm.DEFAULT_LVM_POOL.split('/', 1)
  416. self.pool = self._find_pool(volume_group, thin_pool)
  417. if not self.pool:
  418. self.pool = self.app.add_pool(
  419. **qubes.tests.storage_lvm.POOL_CONF)
  420. self.created_pool = True
  421. vms = self.create_backup_vms()
  422. orig_hashes = self.vm_checksum(vms)
  423. self.make_backup(vms)
  424. self.remove_vms(reversed(vms))
  425. self.restore_backup(options={'override_pool': self.pool.name})
  426. self.assertCorrectlyRestored(vms, orig_hashes)
  427. for vm in vms:
  428. vm = self.app.domains[vm.name]
  429. for volume in vm.volumes.values():
  430. if volume.save_on_stop:
  431. self.assertEqual(volume.pool, self.pool.name)
  432. self.remove_vms(reversed(vms))
  433. class TC_10_BackupVMMixin(BackupTestsMixin):
  434. def setUp(self):
  435. super(TC_10_BackupVMMixin, self).setUp()
  436. self.backupvm = self.app.add_new_vm(
  437. qubes.vm.appvm.AppVM,
  438. label='red',
  439. name=self.make_vm_name('backupvm'),
  440. template=self.template
  441. )
  442. self.loop.run_until_complete(self.backupvm.create_on_disk())
  443. def test_100_send_to_vm_file_with_spaces(self):
  444. vms = self.create_backup_vms()
  445. self.loop.run_until_complete(self.backupvm.start())
  446. self.loop.run_until_complete(self.backupvm.run_for_stdio(
  447. "mkdir '/var/tmp/backup directory'"))
  448. self.make_backup(vms, target_vm=self.backupvm,
  449. compressed=True, encrypted=True,
  450. target='/var/tmp/backup directory')
  451. self.remove_vms(reversed(vms))
  452. (backup_path, _) = self.loop.run_until_complete(
  453. self.backupvm.run_for_stdio("ls /var/tmp/backup*/qubes-backup*"))
  454. backup_path = backup_path.decode().strip()
  455. self.restore_backup(source=backup_path,
  456. appvm=self.backupvm)
  457. def test_110_send_to_vm_command(self):
  458. vms = self.create_backup_vms()
  459. self.loop.run_until_complete(self.backupvm.start())
  460. self.make_backup(vms, target_vm=self.backupvm,
  461. compressed=True, encrypted=True,
  462. target='dd of=/var/tmp/backup-test')
  463. self.remove_vms(reversed(vms))
  464. self.restore_backup(source='dd if=/var/tmp/backup-test',
  465. appvm=self.backupvm)
  466. def test_110_send_to_vm_no_space(self):
  467. """
  468. Check whether backup properly report failure when no enough space is
  469. available
  470. :return:
  471. """
  472. vms = self.create_backup_vms()
  473. self.loop.run_until_complete(self.backupvm.start())
  474. self.loop.run_until_complete(self.backupvm.run_for_stdio(
  475. # Debian 7 has too old losetup to handle loop-control device
  476. "mknod /dev/loop0 b 7 0;"
  477. "truncate -s 50M /home/user/backup.img && "
  478. "mkfs.ext4 -F /home/user/backup.img && "
  479. "mkdir /home/user/backup && "
  480. "mount /home/user/backup.img /home/user/backup -o loop &&"
  481. "chmod 777 /home/user/backup",
  482. user="root"))
  483. with self.assertRaises(qubes.exc.QubesException):
  484. self.make_backup(vms, target_vm=self.backupvm,
  485. compressed=False, encrypted=True,
  486. target='/home/user/backup',
  487. expect_failure=True)
  488. def load_tests(loader, tests, pattern):
  489. for template in qubes.tests.list_templates():
  490. tests.addTests(loader.loadTestsFromTestCase(
  491. type(
  492. 'TC_10_BackupVM_' + template,
  493. (TC_10_BackupVMMixin, qubes.tests.QubesTestCase),
  494. {'template': template})))
  495. return tests