mirror of
https://salsa.debian.org/freeipa-team/freeipa.git
synced 2025-01-12 09:11:55 -06:00
5ee687408b
The firewall has not been enabled in the tests for PR CI so far. With these steps this is done now: install_packages: Install firewalld, enable and start firewalld service. install_server: Enable firewalld services freeipa-ldap freeipa-ldaps and dns after server installation. run_tests: Disable firewalld services freeipa-ldap freeipa-ldaps and dns after server uninstallation. Related-to: https://pagure.io/freeipa/issue/7755 Signed-off-by: Thomas Woerner <twoerner@redhat.com> Reviewed-By: Christian Heimes <cheimes@redhat.com>
91 lines
3.0 KiB
YAML
91 lines
3.0 KiB
YAML
#
|
|
# Copyright (C) 2017 FreeIPA Contributors see COPYING for license
|
|
#
|
|
|
|
# Configuration file for the test runner used in Travis CI
|
|
|
|
container:
|
|
detach: true
|
|
hostname: master.ipa.test
|
|
working_dir: /freeipa
|
|
host:
|
|
binds:
|
|
- /sys/fs/cgroup:/sys/fs/cgroup:ro
|
|
- /dev/urandom:/dev/random:ro
|
|
privileged: true
|
|
security_opt:
|
|
- label:disable
|
|
tmpfs:
|
|
- /tmp
|
|
- /run
|
|
server:
|
|
domain: ipa.test
|
|
password: Secret123
|
|
realm: IPA.TEST
|
|
steps:
|
|
build:
|
|
- make V=0 ${make_target} LOG_COMPILE='gdb -return-child-result -ex run -ex "thread apply all bt" -ex "quit" --args'
|
|
builddep:
|
|
- rm -rf /var/cache/dnf/*
|
|
- "dnf makecache || :"
|
|
- dnf builddep -y ${builddep_opts} -D "with_wheels 1" --spec freeipa.spec.in --best --allowerasing --setopt=install_weak_deps=False
|
|
- dnf install -y gdb
|
|
- dnf update -y annobin
|
|
cleanup:
|
|
- chown -R ${uid}:${gid} ${container_working_dir}
|
|
- journalctl -b --no-pager > systemd_journal.log
|
|
- >
|
|
tar --ignore-failed-read -cvf ${container_working_dir}/var_log.tar
|
|
/var/log/dirsrv
|
|
/var/log/httpd
|
|
/var/log/ipa*
|
|
/var/log/krb5kdc.log
|
|
/var/log/pki
|
|
systemd_journal.log
|
|
`find daemons -name '*.log' -print`
|
|
- chown ${uid}:${gid} ${container_working_dir}/var_log.tar
|
|
- ls -laZ /etc/dirsrv/slapd-*/ /etc/httpd/alias/ /etc/pki/pki-tomcat/alias/ || true
|
|
configure:
|
|
- ./autogen.sh
|
|
install_packages:
|
|
- sed -i 's/%_install_langs \(.*\)/\0:fr/g' /etc/rpm/macros.image-language-conf
|
|
- dnf install -y ${container_working_dir}/dist/rpms/*.rpm --best --allowerasing
|
|
- dnf install -y firewalld
|
|
- systemctl --now enable firewalld
|
|
install_server:
|
|
- ipa-server-install -U --domain ${server_domain} --realm ${server_realm} -p ${server_password}
|
|
-a ${server_password} --setup-dns --setup-kra --auto-forwarders
|
|
- sed -ri "s/mode = production/mode = development/" /etc/ipa/default.conf
|
|
- systemctl restart httpd.service
|
|
- firewall-cmd --add-service={freeipa-ldap,freeipa-ldaps,dns}
|
|
lint:
|
|
- make V=0 lint
|
|
webui_unit:
|
|
- dnf install -y npm
|
|
- cd ${container_working_dir}/install/ui/js/libs && make
|
|
- cd ${container_working_dir}/install/ui && npm install
|
|
- cd ${container_working_dir}/install/ui && node_modules/grunt/bin/grunt --verbose test
|
|
tox:
|
|
# just run one pylint and one Python 3 target (time/coverage trade-off)
|
|
- tox -e py36,pypi,pylint3
|
|
prepare_tests:
|
|
- echo ${server_password} | kinit admin && ipa ping
|
|
- cp -r /etc/ipa/* ~/.ipa/
|
|
- echo ${server_password} > ~/.ipa/.dmpw
|
|
- echo 'wait_for_dns=5' >> ~/.ipa/default.conf
|
|
run_tests:
|
|
- ipa-test-config --help
|
|
- ipa-test-task --help
|
|
- ipa-run-tests ${tests_ignore} -k-test_dns_soa ${tests_verbose} ${path}
|
|
- '! grep -n -C5 BytesWarning /var/log/httpd/error_log'
|
|
- ipa-server-install --uninstall -U
|
|
# second uninstall to verify that --uninstall without installation works
|
|
- ipa-server-install --uninstall -U
|
|
- firewall-cmd --remove-service={freeipa-ldap,freeipa-ldaps,dns}
|
|
tests:
|
|
ignore:
|
|
- test_integration
|
|
- test_webui
|
|
- test_ipapython/test_keyring.py
|
|
verbose: true
|