kubenix/modules/testing.nix

257 lines
7.3 KiB
Nix
Raw Normal View History

2019-02-12 16:22:18 +01:00
{ config, pkgs, lib, kubenix, ... }:
with lib;
let
cfg = config.testing;
2019-02-16 14:02:13 +01:00
parentConfig = config;
2019-02-20 09:34:15 +01:00
nixosTesting = import <nixpkgs/nixos/lib/testing.nix> {
inherit pkgs;
system = "x86_64-linux";
};
2019-02-25 17:16:24 +01:00
kubernetesBaseConfig = { config, pkgs, lib, nodes, ... }: let
master = findFirst
(node: any (role: role == "master") node.config.services.kubernetes.roles)
(throw "no master node")
(attrValues nodes);
extraHosts = ''
${master.config.networking.primaryIPAddress} etcd.${config.networking.domain}
${master.config.networking.primaryIPAddress} api.${config.networking.domain}
${concatMapStringsSep "\n"
(node: let n = node.config.networking; in "${n.primaryIPAddress} ${n.hostName}.${n.domain}")
(attrValues nodes)}
'';
in {
imports = [ <nixpkgs/nixos/modules/profiles/minimal.nix> ];
2019-02-20 09:34:15 +01:00
2019-02-25 17:16:24 +01:00
config = mkMerge [{
boot.postBootCommands = "rm -fr /var/lib/kubernetes/secrets /tmp/shared/*";
virtualisation.memorySize = mkDefault 2048;
virtualisation.cores = mkDefault 16;
2019-02-25 17:16:24 +01:00
virtualisation.diskSize = mkDefault 4096;
networking = {
inherit extraHosts;
domain = "my.xzy";
nameservers = ["10.0.0.254"];
firewall = {
allowedTCPPorts = [
10250 # kubelet
];
trustedInterfaces = ["docker0" "cni0"];
2019-02-20 15:39:26 +01:00
2019-02-25 17:16:24 +01:00
extraCommands = concatMapStrings (node: ''
iptables -A INPUT -s ${node.config.networking.primaryIPAddress} -j ACCEPT
'') (attrValues nodes);
};
};
environment.systemPackages = [ pkgs.kubectl ];
environment.variables.KUBECONFIG = "/etc/kubernetes/cluster-admin.kubeconfig";
services.flannel.iface = "eth1";
services.kubernetes = {
easyCerts = true;
apiserver = {
securePort = 443;
advertiseAddress = master.config.networking.primaryIPAddress;
};
masterAddress = "${master.config.networking.hostName}.${master.config.networking.domain}";
};
systemd.extraConfig = "DefaultLimitNOFILE=1048576";
2019-02-25 17:16:24 +01:00
}
(mkIf (any (role: role == "master") config.services.kubernetes.roles) {
networking.firewall.allowedTCPPorts = [
443 # kubernetes apiserver
];
})];
};
2019-02-20 15:39:26 +01:00
2019-02-25 17:16:24 +01:00
mkKubernetesSingleNodeTest = { name, testScript, extraConfiguration ? {} }:
nixosTesting.makeTest {
inherit name;
2019-02-20 15:39:26 +01:00
2019-03-07 18:02:26 +01:00
nodes.kube = { config, pkgs, nodes, ... }: {
imports = [ kubernetesBaseConfig extraConfiguration ];
2019-02-25 17:16:24 +01:00
services.kubernetes = {
roles = ["master" "node"];
flannel.enable = false;
kubelet = {
networkPlugin = "cni";
cni.config = [{
name = "mynet";
type = "bridge";
bridge = "cni0";
addIf = true;
ipMasq = true;
isGateway = true;
ipam = {
type = "host-local";
subnet = "10.1.0.0/16";
gateway = "10.1.0.1";
routes = [{
dst = "0.0.0.0/0";
}];
};
}];
2019-02-20 15:39:26 +01:00
};
2019-02-25 17:16:24 +01:00
};
networking.primaryIPAddress = mkForce "192.168.1.1";
};
2019-02-20 09:34:15 +01:00
testScript = ''
startAll;
2019-02-25 17:16:24 +01:00
$kube->waitUntilSucceeds("kubectl get node kube.my.xzy | grep -w Ready");
2019-02-20 09:34:15 +01:00
2019-02-25 17:16:24 +01:00
${testScript}
'';
};
testOptions = {config, ...}: let
modules = [config.module ./test.nix {
config._module.args.test = config;
}] ++ cfg.defaults;
2019-03-07 18:02:26 +01:00
test = (kubenix.evalModules {
check = false;
inherit modules;
}).config.test;
evaled' = kubenix.evalModules {
inherit modules;
};
evaled =
if cfg.throwError then evaled'
else if (builtins.tryEval evaled'.config.test.assertions).success then evaled' else null;
in {
options = {
name = mkOption {
description = "test name";
type = types.str;
internal = true;
};
description = mkOption {
description = "test description";
type = types.str;
internal = true;
};
enable = mkOption {
description = "Whether to enable test";
type = types.bool;
internal = true;
};
module = mkOption {
description = "Module defining submodule";
type = types.unspecified;
};
evaled = mkOption {
description = "Wheter test was evaled";
type = types.nullOr types.attrs;
internal = true;
};
success = mkOption {
description = "Whether test was success";
type = types.bool;
internal = true;
default = false;
};
assertions = mkOption {
description = "Test result";
type = types.unspecified;
internal = true;
default = [];
};
2019-02-25 17:16:24 +01:00
test = mkOption {
description = "Test derivation to run";
type = types.nullOr types.package;
default = null;
};
generated = mkOption {
description = "Generated resources";
type = types.nullOr types.package;
default = null;
};
};
config = mkMerge [{
inherit evaled;
inherit (test) name description enable;
} (mkIf (config.evaled != null) {
inherit (evaled.config.test) assertions;
success = all (el: el.assertion) config.assertions;
2019-02-25 17:16:24 +01:00
test =
if cfg.e2e && evaled.config.test.testScript != null
then mkKubernetesSingleNodeTest {
name = config.name;
inherit (evaled.config.test) testScript extraConfiguration;
} else null;
generated = mkIf (hasAttr "kubernetes" evaled.config)
2019-02-25 17:16:24 +01:00
(pkgs.writeText "${config.name}-gen.json" (builtins.toJSON evaled.config.kubernetes.generated));
})];
};
2019-02-12 16:22:18 +01:00
in {
options = {
testing.throwError = mkOption {
description = "Whether to throw error";
type = types.bool;
default = true;
};
testing.e2e = mkOption {
description = "Whether to enable e2e tests";
type = types.bool;
default = true;
};
2019-02-16 14:02:13 +01:00
testing.defaults = mkOption {
description = "Testing defaults";
type = types.coercedTo types.unspecified (value: [value]) (types.listOf types.unspecified);
example = literalExample ''{config, ...}: {
kubernetes.version = config.kubernetes.version;
}'';
default = [];
};
2019-02-12 16:22:18 +01:00
testing.tests = mkOption {
description = "Attribute set of test cases";
default = [];
type = types.listOf (types.coercedTo types.path (module: {inherit module;}) (types.submodule testOptions));
apply = tests: filter (test: test.enable) tests;
2019-02-12 16:22:18 +01:00
};
testing.testsByName = mkOption {
description = "Tests by name";
type = types.attrsOf types.attrs;
default = listToAttrs (map (test: nameValuePair test.name test) cfg.tests);
};
2019-02-12 16:22:18 +01:00
testing.success = mkOption {
description = "Whether testing was a success";
type = types.bool;
default = all (test: test.success) cfg.tests;
};
testing.result = mkOption {
description = "Testing result";
2019-03-08 00:39:09 +01:00
type = types.attrs;
default = {
2019-02-12 16:22:18 +01:00
success = cfg.success;
tests = map (test: {
inherit (test) name description success test;
2019-02-12 16:22:18 +01:00
assertions = moduleToAttrs test.assertions;
}) (filter (test: test.enable) cfg.tests);
2019-03-08 00:39:09 +01:00
};
2019-02-12 16:22:18 +01:00
};
};
}