summaryrefslogtreecommitdiffstats
path: root/nixos/tests/containers-restart_networking.nix
blob: 12a47e2d319a1fa54785682739604043cb1baae9 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
{ pkgs, lib, ... }:
{
  name = "containers-restart_networking";
  meta = {
  };

  nodes = {
    client = {
      virtualisation.vlans = [ 1 ];

      networking.firewall.enable = false;

      containers.webserver = {
        autoStart = true;
        privateNetwork = true;
        hostBridge = "br0";
        config = {
          networking.firewall.enable = false;
          networking.interfaces.eth0.ipv4.addresses = [
            {
              address = "192.168.1.122";
              prefixLength = 24;
            }
          ];
          nix.enable = false; # disabled by default on the test's host. See all-tests.nix / tag(no-nix-by-default)
        };
      };

      networking.bridges.br0 = {
        interfaces = [ ];
        rstp = false;
      };

      networking.interfaces.br0.ipv4.addresses = [
        {
          address = "192.168.1.1";
          prefixLength = 24;
        }
      ];

      networking.interfaces.eth1 = {
        ipv4.addresses = lib.mkForce [ ];
        ipv6.addresses = lib.mkForce [ ];
      };

      specialisation.eth1.configuration = {
        networking.bridges.br0.interfaces = [ "eth1" ];
        networking.interfaces = {
          eth1.ipv4.addresses = lib.mkForce [ ];
          eth1.ipv6.addresses = lib.mkForce [ ];
          br0.ipv4.addresses = [
            {
              address = "192.168.1.2";
              prefixLength = 24;
            }
          ];
        };
      };
    };
  };

  testScript = ''
    client.start()

    client.wait_for_unit("default.target")

    with subtest("Initial configuration connectivity check"):
        client.succeed("ping 192.168.1.122 -c 1 -n >&2")
        client.succeed("nixos-container run webserver -- ping -c 1 -n 192.168.1.1 >&2")

        client.fail("ip l show eth1 |grep 'master br0' >&2")
        client.fail("grep eth1 /run/br0.interfaces >&2")

    with subtest("Bridged configuration without STP preserves connectivity"):
        client.succeed(
            "/run/booted-system/specialisation/eth1/bin/switch-to-configuration test >&2"
        )

        client.succeed(
            "ping 192.168.1.122 -c 1 -n >&2",
            "nixos-container run webserver -- ping -c 1 -n 192.168.1.2 >&2",
            "ip l show eth1 |grep 'master br0' >&2",
            "grep eth1 /run/br0.interfaces >&2",
        )

    with subtest("Reverting to initial configuration preserves connectivity"):
        client.succeed(
            "/run/booted-system/bin/switch-to-configuration test >&2"
        )

        client.succeed("ping 192.168.1.122 -c 1 -n >&2")
        client.succeed("nixos-container run webserver -- ping -c 1 -n 192.168.1.1 >&2")

        client.fail("ip l show eth1 |grep 'master br0' >&2")
        client.fail("grep eth1 /run/br0.interfaces >&2")
  '';

}