opentofu/builtin/providers/scaleway/resource_scaleway_security_group_test.go
Raphael Randschau 9081cabd6e Add scaleway provider (#7331)
* Add scaleway provider

this PR allows the entire scaleway stack to be managed with terraform

example usage looks like this:

```
provider "scaleway" {
  api_key = "snap"
  organization = "snip"
}

resource "scaleway_ip" "base" {
  server = "${scaleway_server.base.id}"
}

resource "scaleway_server" "base" {
  name = "test"
  # ubuntu 14.04
  image = "aecaed73-51a5-4439-a127-6d8229847145"
  type = "C2S"
}

resource "scaleway_volume" "test" {
  name = "test"
  size_in_gb = 20
  type = "l_ssd"
}

resource "scaleway_volume_attachment" "test" {
  server = "${scaleway_server.base.id}"
  volume = "${scaleway_volume.test.id}"
}

resource "scaleway_security_group" "base" {
  name = "public"
  description = "public gateway"
}

resource "scaleway_security_group_rule" "http-ingress" {
  security_group = "${scaleway_security_group.base.id}"

  action = "accept"
  direction = "inbound"
  ip_range = "0.0.0.0/0"
  protocol = "TCP"
  port = 80
}

resource "scaleway_security_group_rule" "http-egress" {
  security_group = "${scaleway_security_group.base.id}"

  action = "accept"
  direction = "outbound"
  ip_range = "0.0.0.0/0"
  protocol = "TCP"
  port = 80
}
```

Note that volume attachments require the server to be stopped, which can lead to
downtimes of you attach new volumes to already used servers

* Update IP read to handle 404 gracefully

* Read back resource on update

* Ensure IP detachment works as expected

Sadly this is not part of the official scaleway api just yet

* Adjust detachIP helper

based on feedback from @QuentinPerez in
https://github.com/scaleway/scaleway-cli/pull/378

* Cleanup documentation

* Rename api_key to access_key

following @stack72 suggestion and rename the provider api_key for more clarity

* Make tests less chatty by using custom logger
2016-07-13 21:03:41 +01:00

105 lines
2.5 KiB
Go

package scaleway
import (
"fmt"
"testing"
"github.com/hashicorp/terraform/helper/resource"
"github.com/hashicorp/terraform/terraform"
)
func TestAccScalewaySecurityGroup_Basic(t *testing.T) {
resource.Test(t, resource.TestCase{
PreCheck: func() { testAccPreCheck(t) },
Providers: testAccProviders,
CheckDestroy: testAccCheckScalewaySecurityGroupDestroy,
Steps: []resource.TestStep{
resource.TestStep{
Config: testAccCheckScalewaySecurityGroupConfig,
Check: resource.ComposeTestCheckFunc(
testAccCheckScalewaySecurityGroupExists("scaleway_security_group.base"),
testAccCheckScalewaySecurityGroupAttributes("scaleway_security_group.base"),
resource.TestCheckResourceAttr("scaleway_security_group.base", "name", "public"),
resource.TestCheckResourceAttr("scaleway_security_group.base", "description", "public gateway"),
),
},
},
})
}
func testAccCheckScalewaySecurityGroupDestroy(s *terraform.State) error {
client := testAccProvider.Meta().(*Client).scaleway
for _, rs := range s.RootModule().Resources {
if rs.Type != "scaleway" {
continue
}
_, err := client.GetASecurityGroup(rs.Primary.ID)
if err == nil {
return fmt.Errorf("Security Group still exists")
}
}
return nil
}
func testAccCheckScalewaySecurityGroupAttributes(n string) resource.TestCheckFunc {
return func(s *terraform.State) error {
rs, ok := s.RootModule().Resources[n]
if !ok {
return fmt.Errorf("Unknown resource: %s", n)
}
client := testAccProvider.Meta().(*Client).scaleway
group, err := client.GetASecurityGroup(rs.Primary.ID)
if err != nil {
return err
}
if group.SecurityGroups.Name != "public" {
return fmt.Errorf("Security Group has wrong name")
}
if group.SecurityGroups.Description != "public gateway" {
return fmt.Errorf("Security Group has wrong description")
}
return nil
}
}
func testAccCheckScalewaySecurityGroupExists(n string) resource.TestCheckFunc {
return func(s *terraform.State) error {
rs, ok := s.RootModule().Resources[n]
if !ok {
return fmt.Errorf("Not found: %s", n)
}
if rs.Primary.ID == "" {
return fmt.Errorf("No Security Group ID is set")
}
client := testAccProvider.Meta().(*Client).scaleway
group, err := client.GetASecurityGroup(rs.Primary.ID)
if err != nil {
return err
}
if group.SecurityGroups.ID != rs.Primary.ID {
return fmt.Errorf("Record not found")
}
return nil
}
}
var testAccCheckScalewaySecurityGroupConfig = `
resource "scaleway_security_group" "base" {
name = "public"
description = "public gateway"
}
`