test_provider_security_service.py 6.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145
  1. import uuid
  2. from test.helpers import ProviderTestBase
  3. import test.helpers as helpers
  4. class ProviderSecurityServiceTestCase(ProviderTestBase):
  5. def __init__(self, methodName, provider):
  6. super(ProviderSecurityServiceTestCase, self).__init__(
  7. methodName=methodName, provider=provider)
  8. def test_crud_key_pair_service(self):
  9. name = 'cbtestkeypairA-{0}'.format(uuid.uuid4())
  10. kp = self.provider.security.key_pairs.create(name=name)
  11. with helpers.cleanup_action(
  12. lambda:
  13. self.provider.security.key_pairs.delete(name=kp.name)
  14. ):
  15. kpl = self.provider.security.key_pairs.list()
  16. found_kp = [k for k in kpl if k.name == name]
  17. self.assertTrue(
  18. len(found_kp) == 1,
  19. "List key pairs did not return the expected key {0}."
  20. .format(name))
  21. kpl = self.provider.security.key_pairs.list()
  22. found_kp = [k for k in kpl if k.name == name]
  23. self.assertTrue(
  24. len(found_kp) == 0,
  25. "Key pair {0} should have been deleted but still exists."
  26. .format(name))
  27. no_kp = self.provider.security.key_pairs.delete(name='bogus_kp')
  28. self.assertTrue(
  29. no_kp,
  30. "Found a key pair {0} that should not exist?".format(no_kp))
  31. def test_key_pair(self):
  32. name = 'cbtestkeypairB-{0}'.format(uuid.uuid4())
  33. kp = self.provider.security.key_pairs.create(name=name)
  34. with helpers.cleanup_action(lambda: kp.delete()):
  35. kpl = self.provider.security.key_pairs.list()
  36. found_kp = [k for k in kpl if k.name == name]
  37. self.assertTrue(
  38. len(found_kp) == 1,
  39. "List key pairs did not return the expected key {0}."
  40. .format(name))
  41. self.assertTrue(
  42. kp.name in repr(kp),
  43. "repr(obj) should contain the object id so that the object"
  44. " can be reconstructed, but does not. eval(repr(obj)) == obj")
  45. self.assertIsNotNone(
  46. kp.material,
  47. "KeyPair material is empty but it should not be.")
  48. self.assertTrue(
  49. kp == kp,
  50. "The same key pair should be equal to self.")
  51. kpl = self.provider.security.key_pairs.list()
  52. found_kp = [k for k in kpl if k.name == name]
  53. self.assertTrue(
  54. len(found_kp) == 0,
  55. "Key pair {0} should have been deleted but still exists."
  56. .format(name))
  57. def test_crud_security_group_service(self):
  58. name = 'cbtestsecuritygroupA-{0}'.format(uuid.uuid4())
  59. sg = self.provider.security.security_groups.create(
  60. name=name, description=name)
  61. with helpers.cleanup_action(
  62. lambda:
  63. self.provider.security.security_groups.delete(group_id=sg.id)
  64. ):
  65. sgl = self.provider.security.security_groups.get(
  66. group_names=[
  67. sg.name])
  68. found_sg = [g for g in sgl if g.name == name]
  69. self.assertTrue(
  70. len(found_sg) == 1,
  71. "List security groups did not return the expected group {0}."
  72. .format(name))
  73. sgl = self.provider.security.security_groups.list()
  74. found_sg = [g for g in sgl if g.name == name]
  75. self.assertTrue(
  76. len(found_sg) == 0,
  77. "Security group {0} should have been deleted but still exists."
  78. .format(name))
  79. def test_security_group(self):
  80. """Test for proper creation of a security group."""
  81. name = 'cbtestsecuritygroupB-{0}'.format(uuid.uuid4())
  82. sg = self.provider.security.security_groups.create(
  83. name=name, description=name)
  84. with helpers.cleanup_action(lambda: sg.delete()):
  85. sg.add_rule(ip_protocol='tcp', from_port=1111, to_port=1111,
  86. cidr_ip='0.0.0.0/0')
  87. found_rules = [rule for rule in sg.rules if
  88. rule.cidr_ip == '0.0.0.0/0' and
  89. rule.ip_protocol == 'tcp' and
  90. rule.from_port == 1111 and
  91. rule.to_port == 1111]
  92. self.assertTrue(
  93. len(found_rules) == 1,
  94. "Expected rule not found in security group: {0}".format(name))
  95. object_keys = (
  96. sg.rules[0].ip_protocol,
  97. sg.rules[0].from_port,
  98. sg.rules[0].to_port)
  99. self.assertTrue(
  100. all(str(key) in repr(sg.rules[0]) for key in object_keys),
  101. "repr(obj) should contain ip_protocol, form_port and to_port"
  102. " so that the object can be reconstructed, but does not."
  103. " eval(repr(obj)) == obj")
  104. self.assertTrue(
  105. sg == sg,
  106. "The same security groups should be equal?")
  107. self.assertFalse(
  108. sg != sg,
  109. "The same security groups should still be equal?")
  110. sgl = self.provider.security.security_groups.list()
  111. found_sg = [g for g in sgl if g.name == name]
  112. self.assertTrue(
  113. len(found_sg) == 0,
  114. "Security group {0} should have been deleted but still exists."
  115. .format(name))
  116. def test_security_group_group_role(self):
  117. """Test for proper creation of a security group rule."""
  118. name = 'cbtestsecuritygroupC-{0}'.format(uuid.uuid4())
  119. sg = self.provider.security.security_groups.create(
  120. name=name, description=name)
  121. with helpers.cleanup_action(lambda: sg.delete()):
  122. self.assertTrue(
  123. len(sg.rules) == 0,
  124. "Expected no security group group rule. Got {0}."
  125. .format(sg.rules))
  126. sg.add_rule(src_group=sg)
  127. self.assertTrue(
  128. sg.rules[0].group.name == name,
  129. "Expected security group rule name {0}. Got {1}."
  130. .format(name, sg.rules[0].group.name))
  131. sgl = self.provider.security.security_groups.list()
  132. found_sg = [g for g in sgl if g.name == name]
  133. self.assertTrue(
  134. len(found_sg) == 0,
  135. "Security group {0} should have been deleted but still exists."
  136. .format(name))