summaryrefslogtreecommitdiffstats
path: root/nixos/tests/restic-rest-server.nix
blob: c224515b586ed7c3019b74441d33c1c7dd94b08a (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
{ pkgs, ... }:

let
  remoteRepository = "rest:http://restic_rest_server:8001/";

  backupPrepareCommand = ''
    touch /root/backupPrepareCommand
    test ! -e /root/backupCleanupCommand
  '';

  backupCleanupCommand = ''
    rm /root/backupPrepareCommand
    touch /root/backupCleanupCommand
  '';

  testDir = pkgs.stdenvNoCC.mkDerivation {
    name = "test-files-to-backup";
    unpackPhase = "true";
    installPhase = ''
      mkdir $out
      echo some_file > $out/some_file
      echo some_other_file > $out/some_other_file
      mkdir $out/a_dir
      echo a_file > $out/a_dir/a_file
    '';
  };

  passwordFile = "${pkgs.writeText "password" "correcthorsebatterystaple"}";
  paths = [ "/opt" ];
  exclude = [ "/opt/excluded_file_*" ];
  pruneOpts = [
    "--keep-daily 2"
    "--keep-weekly 1"
    "--keep-monthly 1"
    "--keep-yearly 99"
  ];
in
{
  name = "restic-rest-server";

  nodes = {
    restic_rest_server = {
      services.restic.server = {
        enable = true;
        extraFlags = [ "--no-auth" ];
        listenAddress = "8001";
      };
      networking.firewall.allowedTCPPorts = [ 8001 ];
    };
    server = {
      services.restic.backups = {
        remotebackup = {
          inherit
            passwordFile
            paths
            exclude
            pruneOpts
            backupPrepareCommand
            backupCleanupCommand
            ;
          repository = remoteRepository;
          initialize = true;
          timerConfig = null; # has no effect here, just checking that it doesn't break the service
        };
        remoteprune = {
          inherit passwordFile;
          repository = remoteRepository;
          pruneOpts = [ "--keep-last 1" ];
        };
      };
    };
  };

  testScript = ''
    restic_rest_server.start()
    server.start()
    restic_rest_server.wait_for_unit("restic-rest-server.socket")
    restic_rest_server.wait_for_open_port(8001)
    server.wait_for_unit("dbus.socket")
    server.fail(
        "restic-remotebackup snapshots",
    )
    server.succeed(
        # set up
        "cp -rT ${testDir} /opt",
        "touch /opt/excluded_file_1 /opt/excluded_file_2",

        # test that remotebackup runs custom commands and produces a snapshot
        "date -s '2016-12-13 13:45'",
        "systemctl start restic-backups-remotebackup.service",
        "rm /root/backupCleanupCommand",
        'restic-remotebackup snapshots --json | ${pkgs.jq}/bin/jq "length | . == 1"',

        # test that restoring that snapshot produces the same directory
        "mkdir /tmp/restore-1",
        "restic-remotebackup restore latest -t /tmp/restore-1",
        "diff -ru ${testDir} /tmp/restore-1/opt",

        # test that we can create four snapshots in remotebackup and rclonebackup
        "date -s '2017-12-13 13:45'",
        "systemctl start restic-backups-remotebackup.service",
        "rm /root/backupCleanupCommand",

        "date -s '2018-12-13 13:45'",
        "systemctl start restic-backups-remotebackup.service",
        "rm /root/backupCleanupCommand",

        "date -s '2018-12-14 13:45'",
        "systemctl start restic-backups-remotebackup.service",
        "rm /root/backupCleanupCommand",

        "date -s '2018-12-15 13:45'",
        "systemctl start restic-backups-remotebackup.service",
        "rm /root/backupCleanupCommand",

        "date -s '2018-12-16 13:45'",
        "systemctl start restic-backups-remotebackup.service",
        "rm /root/backupCleanupCommand",

        'restic-remotebackup snapshots --json | ${pkgs.jq}/bin/jq "length | . == 4"',

        # test that remoteprune brings us back to 1 snapshot in remotebackup
        "systemctl start restic-backups-remoteprune.service",
        'restic-remotebackup snapshots --json | ${pkgs.jq}/bin/jq "length | . == 1"',
    )
  '';
}