test_provider_security_service.py 6.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153
  1. import uuid
  2. from test.helpers import ProviderTestBase
  3. import test.helpers as helpers
  4. class ProviderSecurityServiceTestCase(ProviderTestBase):
  5. def __init__(self, methodName, provider):
  6. super(ProviderSecurityServiceTestCase, self).__init__(
  7. methodName=methodName, provider=provider)
  8. def test_crud_key_pair_service(self):
  9. name = 'cbtestkeypairA-{0}'.format(uuid.uuid4())
  10. kp = self.provider.security.key_pairs.create(name=name)
  11. with helpers.exception_action(
  12. lambda:
  13. self.provider.security.key_pairs.delete(name=kp.name)
  14. ):
  15. kpl = self.provider.security.key_pairs.list()
  16. found_kp = [k for k in kpl if k.name == name]
  17. self.assertTrue(
  18. len(found_kp) == 1,
  19. "List key pairs did not return the expected key {0}."
  20. .format(name))
  21. self.provider.security.key_pairs.delete(name=kp.name)
  22. kpl = self.provider.security.key_pairs.list()
  23. found_kp = [k for k in kpl if k.name == name]
  24. self.assertTrue(
  25. len(found_kp) == 0,
  26. "Key pair {0} should have been deleted but still exists."
  27. .format(name))
  28. no_kp = self.provider.security.key_pairs.delete(name='bogus_kp')
  29. self.assertTrue(
  30. no_kp,
  31. "Found a key pair {0} that should not exist?".format(no_kp))
  32. def test_key_pair(self):
  33. name = 'cbtestkeypairB-{0}'.format(uuid.uuid4())
  34. kp = self.provider.security.key_pairs.create(name=name)
  35. with helpers.exception_action(
  36. lambda:
  37. self.provider.security.key_pairs.delete(name=kp.name)
  38. ):
  39. kpl = self.provider.security.key_pairs.list()
  40. found_kp = [k for k in kpl if k.name == name]
  41. self.assertTrue(
  42. len(found_kp) == 1,
  43. "List key pairs did not return the expected key {0}."
  44. .format(name))
  45. self.assertTrue(
  46. repr(kp) == "<CBKeyPair: {0}>".format(name),
  47. "KeyPair repr {0} not matching expected format.".format(kp))
  48. self.assertIsNotNone(
  49. kp.material,
  50. "KeyPair material is empty but it should not be.")
  51. kp.delete()
  52. kpl = self.provider.security.key_pairs.list()
  53. found_kp = [k for k in kpl if k.name == name]
  54. self.assertTrue(
  55. len(found_kp) == 0,
  56. "Key pair {0} should have been deleted but still exists."
  57. .format(name))
  58. def test_crud_security_group_service(self):
  59. name = 'cbtestsecuritygroupA-{0}'.format(uuid.uuid4())
  60. sg = self.provider.security.security_groups.create(
  61. name=name, description=name)
  62. with helpers.exception_action(
  63. lambda:
  64. self.provider.security.security_groups.delete(group_id=sg.id)
  65. ):
  66. sgl = self.provider.security.security_groups.get(
  67. group_names=[
  68. sg.name])
  69. found_sg = [g for g in sgl if g.name == name]
  70. self.assertTrue(
  71. len(found_sg) == 1,
  72. "List security groups did not return the expected group {0}."
  73. .format(name))
  74. self.provider.security.security_groups.delete(group_id=sg.id)
  75. sgl = self.provider.security.security_groups.list()
  76. found_sg = [g for g in sgl if g.name == name]
  77. self.assertTrue(
  78. len(found_sg) == 0,
  79. "Security group {0} should have been deleted but still exists."
  80. .format(name))
  81. def test_security_group(self):
  82. """Test for proper creation of a security group."""
  83. name = 'cbtestsecuritygroupB-{0}'.format(uuid.uuid4())
  84. sg = self.provider.security.security_groups.create(
  85. name=name, description=name)
  86. with helpers.exception_action(
  87. lambda:
  88. self.provider.security.security_groups.delete(group_id=sg.id)
  89. ):
  90. sg.add_rule(ip_protocol='tcp', from_port=1111, to_port=1111,
  91. cidr_ip='0.0.0.0/0')
  92. found_rules = [rule for rule in sg.rules if
  93. rule.cidr_ip == '0.0.0.0/0' and
  94. rule.ip_protocol == 'tcp' and
  95. rule.from_port == 1111 and
  96. rule.to_port == 1111]
  97. self.assertTrue(
  98. len(found_rules) == 1,
  99. "Expected rule not found in security group: {0}".format(name))
  100. self.assertTrue(
  101. repr(sg.rules[0]) == ("<CBSecurityGroupRule: IP: {0}; from: "
  102. "{1}; to: {2}>"
  103. .format(sg.rules[0].ip_protocol,
  104. sg.rules[0].from_port,
  105. sg.rules[0].to_port)),
  106. ("Security group rule repr {0} not matching expected format."
  107. .format(sg.rules[0])))
  108. self.assertTrue(
  109. sg == sg,
  110. "The same security groups should be equal?")
  111. self.assertFalse(
  112. sg != sg,
  113. "The same security groups should still be equal?")
  114. sg.delete()
  115. sgl = self.provider.security.security_groups.list()
  116. found_sg = [g for g in sgl if g.name == name]
  117. self.assertTrue(
  118. len(found_sg) == 0,
  119. "Security group {0} should have been deleted but still exists."
  120. .format(name))
  121. def test_security_group_group_role(self):
  122. """Test for proper creation of a security group rule."""
  123. name = 'cbtestsecuritygroupC-{0}'.format(uuid.uuid4())
  124. sg = self.provider.security.security_groups.create(
  125. name=name, description=name)
  126. with helpers.exception_action(
  127. lambda:
  128. self.provider.security.security_groups.delete(group_id=sg.id)
  129. ):
  130. self.assertTrue(
  131. len(sg.rules) == 0,
  132. "Expected no security group group rule. Got {0}."
  133. .format(sg.rules))
  134. sg.add_rule(src_group=sg)
  135. self.assertTrue(
  136. sg.rules[0].group.name == name,
  137. "Expected security group rule name {0}. Got {1}."
  138. .format(name, sg.rules[0].group.name))
  139. sg.delete()
  140. sgl = self.provider.security.security_groups.list()
  141. found_sg = [g for g in sgl if g.name == name]
  142. self.assertTrue(
  143. len(found_sg) == 0,
  144. "Security group {0} should have been deleted but still exists."
  145. .format(name))