summary refs log tree commit diff
path: root/nixos/tests/containers-restart_networking.nix
blob: aeb0a6e68e216063c5d8743f0854e52123cdbd04 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
# Test for NixOS' container support.

let
  client_base = rec {
    networking.firewall.enable = false;

    containers.webserver = {
      autoStart = true;
      privateNetwork = true;
      hostBridge = "br0";
      config = {
        networking.firewall.enable = false;
        networking.firewall.allowPing = true;
        networking.interfaces.eth0.ipv4.addresses = [
          { address = "192.168.1.122"; prefixLength = 24; }
        ];
      };
    };
  };
in import ./make-test.nix ({ pkgs, ...} :
{
  name = "containers-restart_networking";
  meta = with pkgs.stdenv.lib.maintainers; {
    maintainers = [ kampfschlaefer ];
  };

  nodes = {
    client = { lib, ... }: client_base // {
      virtualisation.vlans = [ 1 ];

      networking.bridges.br0 = {
        interfaces = [];
        rstp = false;
      };
      networking.interfaces = {
        eth1.ipv4.addresses = lib.mkOverride 0 [ ];
        br0.ipv4.addresses = [ { address = "192.168.1.1"; prefixLength = 24; } ];
      };

    };
    client_eth1 = { lib, ... }: client_base // {
      networking.bridges.br0 = {
        interfaces = [ "eth1" ];
        rstp = false;
      };
      networking.interfaces = {
        eth1.ipv4.addresses = lib.mkOverride 0 [ ];
        br0.ipv4.addresses = [ { address = "192.168.1.2"; prefixLength = 24; } ];
      };
    };
    client_eth1_rstp = { lib, ... }: client_base // {
      networking.bridges.br0 = {
        interfaces = [ "eth1" ];
        rstp = true;
      };
      networking.interfaces = {
        eth1.ipv4.addresses = lib.mkOverride 0 [ ];
        br0.ipv4.addresses =  [ { address = "192.168.1.2"; prefixLength = 24; } ];
      };
    };
  };

  testScript = {nodes, ...}: let
    originalSystem = nodes.client.config.system.build.toplevel;
    eth1_bridged = nodes.client_eth1.config.system.build.toplevel;
    eth1_rstp = nodes.client_eth1_rstp.config.system.build.toplevel;
  in ''
    $client->start();

    $client->waitForUnit("default.target");

    subtest "initial state", sub {
      $client->succeed("ping 192.168.1.122 -c 1 -n >&2");
      $client->succeed("nixos-container run webserver -- ping -c 1 -n 192.168.1.1 >&2");

      $client->fail("ip l show eth1 |grep \"master br0\" >&2");
      $client->fail("grep eth1 /run/br0.interfaces >&2");
    };

    subtest "interfaces without stp", sub {
      $client->succeed("${eth1_bridged}/bin/switch-to-configuration test >&2");

      $client->succeed("ping 192.168.1.122 -c 1 -n >&2");
      $client->succeed("nixos-container run webserver -- ping -c 1 -n 192.168.1.2 >&2");

      $client->succeed("ip l show eth1 |grep \"master br0\" >&2");
      $client->succeed("grep eth1 /run/br0.interfaces >&2");
    };

    # activating rstp needs another service, therefor the bridge will restart and the container will loose its connectivity
    #subtest "interfaces with rstp", sub {
    #  $client->succeed("${eth1_rstp}/bin/switch-to-configuration test >&2");
    #  $client->execute("ip -4 a >&2");
    #  $client->execute("ip l >&2");
    #
    #  $client->succeed("ping 192.168.1.122 -c 1 -n >&2");
    #  $client->succeed("nixos-container run webserver -- ping -c 1 -n 192.168.1.2 >&2");
    #
    #  $client->succeed("ip l show eth1 |grep \"master br0\" >&2");
    #  $client->succeed("grep eth1 /run/br0.interfaces >&2");
    #};

    subtest "back to no interfaces and no stp", sub {
      $client->succeed("${originalSystem}/bin/switch-to-configuration test >&2");

      $client->succeed("ping 192.168.1.122 -c 1 -n >&2");
      $client->succeed("nixos-container run webserver -- ping -c 1 -n 192.168.1.1 >&2");

      $client->fail("ip l show eth1 |grep \"master br0\" >&2");
      $client->fail("grep eth1 /run/br0.interfaces >&2");
    };
  '';

})