=== Test case: graphql_stanza_SUITE:user_send_message_with_spoofed_from/1 (click for source code)
=== Config value:
[{watchdog,<0.29001.0>},
{schema_endpoint,user},
{{ejabberd_cwd,mongooseim@localhost},
"/home/circleci/project/_build/mim1/rel/mongooseim"},
{preset,"odbc_mssql_mnesia"},
{mim_data_dir,"/home/circleci/project/big_tests/tests/graphql_stanza_SUITE_data"},
{tc_logfile,"/home/circleci/project/big_tests/ct_report/ct_run.test@d618b5bd3080.2024-04-26_13.09.51/big_tests.tests.graphql_stanza_SUITE.logs/run.2024-04-26_13.15.02/graphql_stanza_suite.user_send_message_with_spoofed_from.49411.html"},
{tc_group_properties,[{name,user_no_mam},parallel]},
{tc_group_path,[[{name,user_stanza}]]},
{data_dir,"/home/circleci/project/big_tests/_build/default/lib/mongoose_tests/ebin/graphql_stanza_SUITE_data/"},
{priv_dir,"/home/circleci/project/big_tests/ct_report/ct_run.test@d618b5bd3080.2024-04-26_13.09.51/big_tests.tests.graphql_stanza_SUITE.logs/run.2024-04-26_13.15.02/log_private/"},
{{saved_modules,mongooseim@localhost,<<"test type">>},
#{mod_vcard =>
#{matches => 30,
host => {prefix,<<"vjud.">>},
search => true,backend => rdbms,iqdisc => parallel},
mod_roster =>
#{backend => rdbms,iqdisc => one_queue,versioning => false,
store_current_id => false},
mod_sic => #{iqdisc => one_queue},
mod_register =>
#{access => register,iqdisc => one_queue,
registration_watchers => [],password_strength => 0,
ip_access => [{allow,"127.0.0.0/8"},{deny,"0.0.0.0/0"}]},
mod_amp => #{},mod_presence => #{},
mod_disco =>
#{iqdisc => one_queue,server_info => [],extra_domains => [],
users_can_see_hidden_services => false},
mod_stream_management =>
#{buffer => true,ack => true,backend => mnesia,
stale_h =>
#{enabled => false,repeat_after => 1800,geriatric => 3600},
buffer_max => 100,ack_freq => 1,resume_timeout => 600},
mod_adhoc => #{iqdisc => one_queue,report_commands_node => false},
mod_bosh =>
#{backend => mnesia,inactivity => 30,max_pause => 120,
max_wait => infinity,server_acks => false},
mod_cache_users =>
#{strategy => fifo,number_of_segments => 5,time_to_live => 2},
mod_carboncopy => #{iqdisc => no_queue}}}]
=== Current directory is "/home/circleci/project/big_tests/ct_report/ct_run.test@d618b5bd3080.2024-04-26_13.09.51"
=== Started at 2024-04-26 13:15:30
*** User 2024-04-26 13:15:30.472 ***🔗
alicE_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
<stream:stream to='domain.example.com' version='1.0' xml:lang='en' xmlns='jabber:client' xmlns:stream='http://etherx.jabber.org/streams'>
*** User 2024-04-26 13:15:30.472 ***🔗
alicE_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<stream:stream xmlns='jabber:client' xmlns:stream='http://etherx.jabber.org/streams' id='05ba330c7c2d684b' from='domain.example.com' version='1.0' xml:lang='en'>
*** User 2024-04-26 13:15:30.473 ***🔗
alicE_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<stream:features>
<register xmlns='http://jabber.org/features/iq-register'/>
<starttls xmlns='urn:ietf:params:xml:ns:xmpp-tls'/>
<mechanisms xmlns='urn:ietf:params:xml:ns:xmpp-sasl'>
<mechanism>SCRAM-SHA-256</mechanism>
<mechanism>PLAIN</mechanism>
</mechanisms>
<amp xmlns='http://jabber.org/feature/amp'/>
<sm xmlns='urn:xmpp:sm:3'/>
</stream:features>
*** User 2024-04-26 13:15:30.473 ***🔗
alicE_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
<auth xmlns='urn:ietf:params:xml:ns:xmpp-sasl' mechanism='PLAIN'>AGFsaWNFX3VzZXJfc2VuZF9tZXNzYWdlX3dpdGhfc3Bvb2ZlZF9mcm9tXzEzMjUAbWF0eWdyeXNh</auth>
*** User 2024-04-26 13:15:30.474 ***🔗
alicE_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<success xmlns='urn:ietf:params:xml:ns:xmpp-sasl'/>
*** User 2024-04-26 13:15:30.474 ***🔗
alicE_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
<stream:stream to='domain.example.com' version='1.0' xml:lang='en' xmlns='jabber:client' xmlns:stream='http://etherx.jabber.org/streams'>
*** User 2024-04-26 13:15:30.475 ***🔗
alicE_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<stream:stream xmlns='jabber:client' xmlns:stream='http://etherx.jabber.org/streams' id='f32faf85cff13d06' from='domain.example.com' version='1.0' xml:lang='en' to='alice_user_send_message_with_spoofed_from_1325@domain.example.com'>
*** User 2024-04-26 13:15:30.475 ***🔗
alicE_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<stream:features>
<session xmlns='urn:ietf:params:xml:ns:xmpp-session'/>
<bind xmlns='urn:ietf:params:xml:ns:xmpp-bind'/>
<register xmlns='http://jabber.org/features/iq-register'/>
<amp xmlns='http://jabber.org/feature/amp'/>
<sm xmlns='urn:xmpp:sm:3'/>
</stream:features>
*** User 2024-04-26 13:15:30.475 ***🔗
alicE_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
<iq type='set' id='ec81ead4403b61113752539601a04330'>
<bind xmlns='urn:ietf:params:xml:ns:xmpp-bind'>
<resource>res1</resource>
</bind>
</iq>
*** User 2024-04-26 13:15:30.475 ***🔗
alicE_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<iq id='ec81ead4403b61113752539601a04330' type='result'>
<bind xmlns='urn:ietf:params:xml:ns:xmpp-bind'>
<jid>alice_user_send_message_with_spoofed_from_1325@domain.example.com/res1</jid>
</bind>
</iq>
*** User 2024-04-26 13:15:30.476 ***🔗
alice_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
<iq type='set' id='cfe5d67e7a1ba17b47a28c86e7ebc2ef'>
<session xmlns='urn:ietf:params:xml:ns:xmpp-session'/>
</iq>
*** User 2024-04-26 13:15:30.476 ***🔗
alice_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<iq from='domain.example.com' to='alice_user_send_message_with_spoofed_from_1325@domain.example.com/res1' id='cfe5d67e7a1ba17b47a28c86e7ebc2ef' type='result'>
<session xmlns='urn:ietf:params:xml:ns:xmpp-session'/>
</iq>
*** User 2024-04-26 13:15:30.476 ***🔗
alice_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
<presence/>
*** User 2024-04-26 13:15:30.478 ***🔗
alice_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<presence from='alice_user_send_message_with_spoofed_from_1325@domain.example.com/res1' to='alice_user_send_message_with_spoofed_from_1325@domain.example.com/res1'/>
*** User 2024-04-26 13:15:30.478 ***🔗
bOb_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
<stream:stream to='domain.example.com' version='1.0' xml:lang='en' xmlns='jabber:client' xmlns:stream='http://etherx.jabber.org/streams'>
*** User 2024-04-26 13:15:30.479 ***🔗
bOb_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<stream:stream xmlns='jabber:client' xmlns:stream='http://etherx.jabber.org/streams' id='1b60b229e96cced4' from='domain.example.com' version='1.0' xml:lang='en'>
*** User 2024-04-26 13:15:30.480 ***🔗
bOb_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<stream:features>
<register xmlns='http://jabber.org/features/iq-register'/>
<starttls xmlns='urn:ietf:params:xml:ns:xmpp-tls'/>
<mechanisms xmlns='urn:ietf:params:xml:ns:xmpp-sasl'>
<mechanism>SCRAM-SHA-256</mechanism>
<mechanism>PLAIN</mechanism>
</mechanisms>
<amp xmlns='http://jabber.org/feature/amp'/>
<sm xmlns='urn:xmpp:sm:3'/>
</stream:features>
*** User 2024-04-26 13:15:30.480 ***🔗
bOb_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
<auth xmlns='urn:ietf:params:xml:ns:xmpp-sasl' mechanism='PLAIN'>AGJPYl91c2VyX3NlbmRfbWVzc2FnZV93aXRoX3Nwb29mZWRfZnJvbV8xMzI1AG1ha3JvbGlrYQ==</auth>
*** User 2024-04-26 13:15:30.482 ***🔗
bOb_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<success xmlns='urn:ietf:params:xml:ns:xmpp-sasl'/>
*** User 2024-04-26 13:15:30.482 ***🔗
bOb_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
<stream:stream to='domain.example.com' version='1.0' xml:lang='en' xmlns='jabber:client' xmlns:stream='http://etherx.jabber.org/streams'>
*** User 2024-04-26 13:15:30.482 ***🔗
bOb_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<stream:stream xmlns='jabber:client' xmlns:stream='http://etherx.jabber.org/streams' id='0671ba88458a79c4' from='domain.example.com' version='1.0' xml:lang='en' to='bob_user_send_message_with_spoofed_from_1325@domain.example.com'>
*** User 2024-04-26 13:15:30.482 ***🔗
bOb_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<stream:features>
<session xmlns='urn:ietf:params:xml:ns:xmpp-session'/>
<bind xmlns='urn:ietf:params:xml:ns:xmpp-bind'/>
<register xmlns='http://jabber.org/features/iq-register'/>
<amp xmlns='http://jabber.org/feature/amp'/>
<sm xmlns='urn:xmpp:sm:3'/>
</stream:features>
*** User 2024-04-26 13:15:30.483 ***🔗
bOb_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
<iq type='set' id='2e3a366c20b22056a45e4255f100e1e5'>
<bind xmlns='urn:ietf:params:xml:ns:xmpp-bind'>
<resource>res1</resource>
</bind>
</iq>
*** User 2024-04-26 13:15:30.483 ***🔗
bOb_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<iq id='2e3a366c20b22056a45e4255f100e1e5' type='result'>
<bind xmlns='urn:ietf:params:xml:ns:xmpp-bind'>
<jid>bob_user_send_message_with_spoofed_from_1325@domain.example.com/res1</jid>
</bind>
</iq>
*** User 2024-04-26 13:15:30.483 ***🔗
bob_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
<iq type='set' id='9d3f98097de04f11e58d72ebd67847c9'>
<session xmlns='urn:ietf:params:xml:ns:xmpp-session'/>
</iq>
*** User 2024-04-26 13:15:30.532 ***🔗
bob_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<iq from='domain.example.com' to='bob_user_send_message_with_spoofed_from_1325@domain.example.com/res1' id='9d3f98097de04f11e58d72ebd67847c9' type='result'>
<session xmlns='urn:ietf:params:xml:ns:xmpp-session'/>
</iq>
*** User 2024-04-26 13:15:30.532 ***🔗
bob_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
<presence/>
*** User 2024-04-26 13:15:30.534 ***🔗
bob_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
<presence from='bob_user_send_message_with_spoofed_from_1325@domain.example.com/res1' to='bob_user_send_message_with_spoofed_from_1325@domain.example.com/res1'/>
*** User 2024-04-26 13:15:30.538 ***🔗
REST request:
Code: 200
Req: {<0.29121.0>,<<"/api/graphql">>,<<"POST">>,
[{<<"Content-Type">>,<<"application/json">>},
{<<"Request-Id">>,<<"1d176cc01c2a17e4">>},
{<<"authorization">>,
<<"Basic YWxpY2VfdXNlcl9zZW5kX21lc3NhZ2Vfd2l0aF9zcG9vZmVkX2Zyb21fMTMyNUBkb21haW4uZXhhbXBsZS5jb206bWF0eWdyeXNh">>}],
<<"{\"query\":\"mutation ($body: String!, $from: JID, $to: JID!) { stanza { sendMessage(body: $body, from: $from, to: $to) { id } } }\",\"variables\":{\"body\":\"Hi!\",\"to\":\"bob_user_send_message_with_spoofed_from_1325@domain.example.com\",\"from\":\"bob_user_send_message_with_spoofed_from_1325@domain.example.com\"}}">>}
Result: {{<<"200">>,<<"OK">>},
[{<<"vary">>,<<"accept">>},
{<<"server">>,<<"Cowboy">>},
{<<"date">>,<<"Fri, 26 Apr 2024 13:15:30 GMT">>},
{<<"content-type">>,<<"application/json">>},
{<<"content-length">>,<<"182">>}],
<<"{\"errors\":[{\"path\":[\"stanza\",\"sendMessage\"],\"message\":\"Sender's JID is different from the user's JID\",\"extensions\":{\"code\":\"invalid_sender\"}}],\"data\":{\"stanza\":{\"sendMessage\":null}}}">>,
321,2431}
Params: #{port => 5561,path => <<"/api/graphql">>,
server => #{node => mongooseim@localhost},
role => {graphql,user},
creds =>
{<<"alice_user_send_message_with_spoofed_from_1325@domain.example.com">>,
<<"matygrysa">>},
method => <<"POST">>,return_maps => true,
body =>
<<"{\"query\":\"mutation ($body: String!, $from: JID, $to: JID!) { stanza { sendMessage(body: $body, from: $from, to: $to) { id } } }\",\"variables\":{\"body\":\"Hi!\",\"to\":\"bob_user_send_message_with_spoofed_from_1325@domain.example.com\",\"from\":\"bob_user_send_message_with_spoofed_from_1325@domain.example.com\"}}">>,
return_headers => true}
*** User 2024-04-26 13:15:30.539 ***🔗
bob_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
</stream:stream>
*** User 2024-04-26 13:15:30.539 ***🔗
bob_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
</stream:stream>
*** User 2024-04-26 13:15:30.539 ***🔗
alice_user_send_message_with_spoofed_from_1325@domain.example.com/res1 out
</stream:stream>
*** User 2024-04-26 13:15:30.539 ***🔗
alice_user_send_message_with_spoofed_from_1325@domain.example.com/res1 in
</stream:stream>
=== Ended at 2024-04-26 13:15:30
=== successfully completed test case
=== === Returned value: ok