On 01/11/2022 21:39, Ido Schimmel wrote:
From: "Hans J. Schultz" <redacted>
Add four test cases to verify MAB functionality:
* Verify that a locked FDB entry can be generated by the bridge,
preventing a host from communicating via the bridge. Test that user
space can clear the "locked" flag by replacing the entry, thereby
authenticating the host and allowing it to communicate via the bridge.
* Test that an entry cannot roam to a locked port, but that it can roam
to an unlocked port.
* Test that MAB can only be enabled on a port that is both locked and
has learning enabled.
* Test that locked FDB entries are flushed from a port when MAB is
disabled.
Signed-off-by: Hans J. Schultz <redacted>
Signed-off-by: Ido Schimmel <idosch@nvidia.com>
---
Notes:
v1:
* Adjust commit message.
* Add FDB flushing test case.
Changes made by me:
* Reword commit message.
* Remove blackhole tests as they are not relevant for this series.
* Add configuration test case.
* Add a few additional test cases.
.../net/forwarding/bridge_locked_port.sh | 155 +++++++++++++++++-
tools/testing/selftests/net/forwarding/lib.sh | 8 +
2 files changed, 162 insertions(+), 1 deletion(-)
Acked-by: Nikolay Aleksandrov <razor@blackwall.org>