about summary refs log tree commit diff
path: root/nixos/tests/endlessh-go.nix
blob: b261dbf1c56050b9f75befeb61a45f26fa4e53cc (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
import ./make-test-python.nix ({ lib, pkgs, ... }:
{
  name = "endlessh-go";
  meta.maintainers = with lib.maintainers; [ azahi ];

  nodes = {
    server = { ... }: {
      services.endlessh-go = {
        enable = true;
        prometheus.enable = true;
        openFirewall = true;
      };

      specialisation = {
        unprivileged.configuration = {
          services.endlessh-go = {
            port = 2222;
            prometheus.port = 9229;
          };
        };

        privileged.configuration = {
          services.endlessh-go = {
            port = 22;
            prometheus.port = 92;
          };
        };
      };
    };

    client = { pkgs, ... }: {
      environment.systemPackages = with pkgs; [ curl netcat ];
    };
  };

  testScript = ''
    def activate_specialisation(name: str):
        server.succeed(f"/run/booted-system/specialisation/{name}/bin/switch-to-configuration test >&2")

    start_all()

    with subtest("Unprivileged"):
        activate_specialisation("unprivileged")
        server.wait_for_unit("endlessh-go.service")
        server.wait_for_open_port(2222)
        server.wait_for_open_port(9229)
        client.succeed("nc -dvW5 server 2222")
        client.succeed("curl -kv server:9229/metrics")

    with subtest("Privileged"):
        activate_specialisation("privileged")
        server.wait_for_unit("endlessh-go.service")
        server.wait_for_open_port(22)
        server.wait_for_open_port(92)
        client.succeed("nc -dvW5 server 22")
        client.succeed("curl -kv server:92/metrics")
  '';
})