| Commit message (Collapse) | Author | Age |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
In 0c7c1660f78e4f6befe0a210e1a9efae783a1733 I have set allowSubstitutes
to false, which avoided the substitution of the certificates.
Unfortunately substitution may still happen later when the certificate
is merged with the CA bundle. So the merged CA bundle might be
substituted from a binary cache but the certificate itself is built
locally, which could result in a different certificate in the bundle.
So instead of adding just yet another workaround, I've now hardcoded all
the certificates and keys in a separate file. This also moves
letsencrypt.nix into its own directory so we don't mess up
nixos/tests/common too much.
This was long overdue and should finally make the dependency graph for
the ACME test more deterministic.
Signed-off-by: aszlig <aszlig@nix.build>
|
|
|
|
|
|
|
|
|
|
|
|
| |
Since e95f17e2720e67e2eabd59d7754c814d3e27a0b2, Go packages no longer
contain the source tree, however Boulder seems to need that as it
generates a few files during build.
Ideally we would only pick the files that are needed and put it into a
separate output, but I currently don't have time for this so I'm marking
this with XXX to get back to it later.
Signed-off-by: aszlig <aszlig@nix.build>
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
| |
Since IP address options were changed for 18.03, eval has failed with:
"The option `networking.interfaces.eth1.subnetMask' is used but not defined."
although this option is not used at all in nixos anymore.
The misleading error message seems to be generated from evaluating warnings
for `mkRemovedOptionModule ["subnetMask"]` which apparently broke here
when this test inherited network.interfaces from one VM config to another.
Cc: @aszlig
|
|
|
|
|
| |
Apparently merging #43021 1bdb1387103 did increase memory usage
in some cases. 1 GiB for a VM memory seems still low enough to me.
|
|\
| |
| | |
mpd: add NixOS tests
|
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| | |
This change adds NixOS tests for the MPD (Music Player Daemon) module.
Tests include:
- Playing audio locally using ALSA directly.
- Playing audio locally using PulseAudio (backed by ALSA).
- Playing audio from an external client.
- Rejecting an external client when it's not explicitly allowed (default configuration).
refs #41772
|
|\ \
| | |
| | | |
tree-wide: users.extraUsers -> users.users, users.extraGroups -> users.groups
|
| | | |
|
|\ \ \
| | | |
| | | | |
nixos/hadoop: add hadoop module (hdfs, yarn)
|
| | | | |
|
| |/ /
|/| |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | | |
If one of the certificates of the chain gets substituted from a binary
cache and the rest is generated locally it might turn out that we get
invalid certificates, which in turn cause tests using this module to
fail.
So let's set allowSubstitutes to false for all derivations that are
involved with certificate/key generation.
Signed-off-by: aszlig <aszlig@nix.build>
|
|\ \ \
| |/ /
|/| | |
opensmtpd package and module: add nixos test
|
| | | |
|
| | |
| | |
| | |
| | | |
Update, clean-up dependencies and add installed tests.
|
| | |
| | |
| | |
| | | |
This is a temporary hack to fix channel until we resolve #42324.
|
|\ \ \
| | | |
| | | | |
tests.plasma5: Fixes OCR in sddm by providing a custom theme
|
| | |/
| |/|
| | |
| | |
| | | |
The custom theme just sets the old background colour that OCR works
again.
|
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | | |
For now check that the default client config boots.
Ideas for the future:
- Expand on control via netcat
- Configure a circuit of nodes exercise various configs (e.g., check
that a client node can access a hidden www service). Needs setting up
authoritative directory servers &c.
|
|\ \ \
| |/ /
|/| | |
nixos/pgbackup: Fix and refactor the postgres backup module
|
| | | |
|
| | |
| | |
| | |
| | | |
... due to improper timing
|
| | | |
|
| | |
| | |
| | |
| | | |
The test ensures that the services comes up and accepts/provides values.
|
| | |
| | |
| | |
| | |
| | | |
* Added a note in release notes (incompatibilities)
* Adapt slurm test
* Change user to munge in service.munge
|
|\ \ \
| | | |
| | | | |
Haproxy 1.8.9
|
| |/ / |
|
|/ /
| |
| |
| |
| |
| |
| | |
A script is used to create a project, and configure a jobset. This
jobset fetches a local file containing a trivial Nix expression. The
test script makes sure this derivation has been successfully built by
Hydra.
|
|\ \
| | |
| | | |
nixos/slurm: Improve slurm configuration options and features.
|
| | |
| | |
| | |
| | |
| | | |
* Add pure submit host to test 'enableStools'
* Disable client.enable on control machine
|
|\ \ \
| |/ /
|/| | |
morty: init -> 0.2.0
|
| | | |
|
| | |
| | |
| | |
| | | |
- make sure machines are fully booted before sending commands
- test that capability setting in iftop module makes a difference
|
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | | |
While building the container there are a few occasions where stdenvNoCC
is used underneath. During the last staging merge, some change now tries
to build texinfo during the test while building stdenvNoCC.
With this change, I'm adding stdenvNoCC to the closure to make sure that
even when we have future stdenv changes, it doesn't break (well, except
if we do have another variation like stdenvNoCC that overrides stdenv).
I haven't bisected the exact change, but I'd suspect that it could be
one of the commits in #39457.
This fixes the test and it no longer fails with the following error:
error: unable to download 'http://ftpmirror.gnu.org/texinfo/texinfo-6.5.tar.xz': Couldn't resolve host name (6)
builder for '/nix/store/r7sf1wjbnimwgnv276jh59nfnzw40x30-texinfo-6.5.tar.xz.drv' failed with exit code 1
cannot build derivation '/nix/store/5w1pv788ayi1wahyy76i90yqv96ai4h5-texinfo-6.5.drv': 1 dependencies couldn't be built
cannot build derivation '/nix/store/cnsfkf0j5xmm14zzm5a3a66pz66gbc82-stdenv-linux.drv': 1 dependencies couldn't be built
cannot build derivation '/nix/store/11kkhk57ic8kfd7g197sqwgd0pzqfjhl-nixos-system-foo-0-18.09pre-git.drv': 1 dependencies couldn't be built
error: build of '/nix/store/11kkhk57ic8kfd7g197sqwgd0pzqfjhl-nixos-system-foo-0-18.09pre-git.drv' failed
/run/current-system/sw/bin/nixos-container: failed to build initial container configuration
Signed-off-by: aszlig <aszlig@nix.build>
Cc: @aristidb, @edolstra, @chaoflow, @kampfschlaefer
|
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | | |
BIND doesn't allow the options section (or any section I'd guess) to be
defined more than once, so whenever you want to set an additional option
you're stuck using weird hacks like this:
services.bind.forwarders = lib.mkForce [ "}; empty-zones-enable no; #" ];
This basically exploits the fact that values coming from the module
options aren't escaped and thus works in a similar vain to how SQL
injection works.
Another option would be to just set configFile to a file that includes
all the options, including zones. That obviously makes the configuration
way less extensible and more awkward to use with the module system.
To make sure this change does work correctly I added a small test just
for that. The test could use some improvements, but better to have a
test rather than none at all. For a future improvement the test could be
merged with the NSD test, because both use the same zone file format.
This change has been reviewed in #40053 and after not getting any
opposition, I'm hereby adding this to master.
Signed-off-by: aszlig <aszlig@nix.build>
Cc: @peti, @edolstra
Closes: #40053
|
|\| | |
|
| | |
| | |
| | |
| | |
| | |
| | |
| | | |
VMs were starving, many of the daemons were unable to complete their
tasks resulting in tests failures.
Turned off verbose output from k8s components as it consumes even more resources, and useful error messages actually drown in debug-clutter
|
|\| |
| | |
| | |
| | |
| | |
| | | |
Fixed conflicts:
- lib/systems/for-meta.nix: in favor of staging
- pkgs/os-specific/darwin/xcode/default.nix: in favor of master
|
| |\ \
| | | |
| | | | |
dockerTools: fixes extraCommands for mkRootLayer.
|
| | | | |
|
| |\ \ \
| | | | |
| | | | | |
nixos/slurm: fix default module parameters, update documenation
|
| | |/ / |
|
| |/ /
| | |
| | |
| | |
| | |
| | |
| | | |
1) Change start-type to ```notify``` when running MariaDB so that we don't have to busy-wait for the
socket to appear.
2) Do not manually create the directory under /run as we can get systemd to do
that for us. This opens up the possibility later for not having to launch as root.
|
|\| | |
|
| | |
| | |
| | |
| | | |
Failed non-deterministically on hydra because replcation
sometimes was not finished yet when checking the results.
|
| | |
| | |
| | |
| | |
| | |
| | |
| | | |
Please refer to the conversation in the original PR (#40619) for further
reference: https://github.com/NixOS/nixpkgs/pull/40619#issuecomment-390437845
It takes some time after the standby to trigger the locker which might
break the test on Hydra.
|
|\| | |
|
| | |
| | |
| | |
| | |
| | |
| | | |
Test failed because of an incomplete apparmor profile.
- fix apparmor profile
- improve test timing, prevent non-deterministic failure
|
|\| | |
|
| | |
| | |
| | |
| | | |
test failed because qemu-system-i386 can only simulate 2047M RAM
(not 2048)
|