1 # Copyright (c) 2010 The Chromium OS Authors. All rights reserved. 2 # Use of this source code is governed by a BSD-style license that can be 3 # found in the LICENSE file. 4 5 TIME="SHORT" 6 AUTHOR = "The Chromium OS Authors" 7 DOC = """ 8 Enforces a whitelist of known, allowed setuid/gid binaries on the system 9 """ 10 NAME = "security_SuidBinaries" 11 PURPOSE = "To maintain a minimal set of setuid/gid binaries on the system" 12 CRITERIA = """ 13 Fail if the list of setuid/gid binaries doesn't match the baseline 14 """ 15 ATTRIBUTES = "suite:bvt-inline, suite:smoke" 16 TEST_CLASS = "security" 17 TEST_CATEGORY = "Functional" 18 TEST_TYPE = "client" 19 JOB_RETRIES = 2 20 21 job.run_test("security_SuidBinaries", baseline='suid', tag='suid') 22 job.run_test("security_SuidBinaries", baseline='sgid', tag='sgid') 23 job.run_test("security_SuidBinaries", baseline='fscap', tag='fscap') 24