github.com/rumpl/bof@v23.0.0-rc.2+incompatible/daemon/daemon_test.go (about) 1 package daemon // import "github.com/docker/docker/daemon" 2 3 import ( 4 "os" 5 "path/filepath" 6 "runtime" 7 "testing" 8 9 containertypes "github.com/docker/docker/api/types/container" 10 "github.com/docker/docker/container" 11 "github.com/docker/docker/errdefs" 12 "github.com/docker/docker/libnetwork" 13 "github.com/docker/docker/pkg/idtools" 14 "github.com/docker/docker/pkg/truncindex" 15 volumesservice "github.com/docker/docker/volume/service" 16 "github.com/docker/go-connections/nat" 17 "github.com/pkg/errors" 18 "gotest.tools/v3/assert" 19 is "gotest.tools/v3/assert/cmp" 20 ) 21 22 // 23 // https://github.com/docker/docker/issues/8069 24 // 25 26 func TestGetContainer(t *testing.T) { 27 c1 := &container.Container{ 28 ID: "5a4ff6a163ad4533d22d69a2b8960bf7fafdcba06e72d2febdba229008b0bf57", 29 Name: "tender_bardeen", 30 } 31 32 c2 := &container.Container{ 33 ID: "3cdbd1aa394fd68559fd1441d6eff2ab7c1e6363582c82febfaa8045df3bd8de", 34 Name: "drunk_hawking", 35 } 36 37 c3 := &container.Container{ 38 ID: "3cdbd1aa394fd68559fd1441d6eff2abfafdcba06e72d2febdba229008b0bf57", 39 Name: "3cdbd1aa", 40 } 41 42 c4 := &container.Container{ 43 ID: "75fb0b800922abdbef2d27e60abcdfaf7fb0698b2a96d22d3354da361a6ff4a5", 44 Name: "5a4ff6a163ad4533d22d69a2b8960bf7fafdcba06e72d2febdba229008b0bf57", 45 } 46 47 c5 := &container.Container{ 48 ID: "d22d69a2b8960bf7fafdcba06e72d2febdba960bf7fafdcba06e72d2f9008b060b", 49 Name: "d22d69a2b896", 50 } 51 52 store := container.NewMemoryStore() 53 store.Add(c1.ID, c1) 54 store.Add(c2.ID, c2) 55 store.Add(c3.ID, c3) 56 store.Add(c4.ID, c4) 57 store.Add(c5.ID, c5) 58 59 index := truncindex.NewTruncIndex([]string{}) 60 index.Add(c1.ID) 61 index.Add(c2.ID) 62 index.Add(c3.ID) 63 index.Add(c4.ID) 64 index.Add(c5.ID) 65 66 containersReplica, err := container.NewViewDB() 67 if err != nil { 68 t.Fatalf("could not create ViewDB: %v", err) 69 } 70 71 daemon := &Daemon{ 72 containers: store, 73 containersReplica: containersReplica, 74 idIndex: index, 75 } 76 77 daemon.reserveName(c1.ID, c1.Name) 78 daemon.reserveName(c2.ID, c2.Name) 79 daemon.reserveName(c3.ID, c3.Name) 80 daemon.reserveName(c4.ID, c4.Name) 81 daemon.reserveName(c5.ID, c5.Name) 82 83 if ctr, _ := daemon.GetContainer("3cdbd1aa394fd68559fd1441d6eff2ab7c1e6363582c82febfaa8045df3bd8de"); ctr != c2 { 84 t.Fatal("Should explicitly match full container IDs") 85 } 86 87 if ctr, _ := daemon.GetContainer("75fb0b8009"); ctr != c4 { 88 t.Fatal("Should match a partial ID") 89 } 90 91 if ctr, _ := daemon.GetContainer("drunk_hawking"); ctr != c2 { 92 t.Fatal("Should match a full name") 93 } 94 95 // c3.Name is a partial match for both c3.ID and c2.ID 96 if c, _ := daemon.GetContainer("3cdbd1aa"); c != c3 { 97 t.Fatal("Should match a full name even though it collides with another container's ID") 98 } 99 100 if ctr, _ := daemon.GetContainer("d22d69a2b896"); ctr != c5 { 101 t.Fatal("Should match a container where the provided prefix is an exact match to the its name, and is also a prefix for its ID") 102 } 103 104 if _, err := daemon.GetContainer("3cdbd1"); err == nil { 105 t.Fatal("Should return an error when provided a prefix that partially matches multiple container ID's") 106 } 107 108 if _, err := daemon.GetContainer("nothing"); err == nil { 109 t.Fatal("Should return an error when provided a prefix that is neither a name or a partial match to an ID") 110 } 111 } 112 113 func initDaemonWithVolumeStore(tmp string) (*Daemon, error) { 114 var err error 115 daemon := &Daemon{ 116 repository: tmp, 117 root: tmp, 118 } 119 daemon.volumes, err = volumesservice.NewVolumeService(tmp, nil, idtools.Identity{UID: 0, GID: 0}, daemon) 120 if err != nil { 121 return nil, err 122 } 123 return daemon, nil 124 } 125 126 func TestValidContainerNames(t *testing.T) { 127 invalidNames := []string{"-rm", "&sdfsfd", "safd%sd"} 128 validNames := []string{"word-word", "word_word", "1weoid"} 129 130 for _, name := range invalidNames { 131 if validContainerNamePattern.MatchString(name) { 132 t.Fatalf("%q is not a valid container name and was returned as valid.", name) 133 } 134 } 135 136 for _, name := range validNames { 137 if !validContainerNamePattern.MatchString(name) { 138 t.Fatalf("%q is a valid container name and was returned as invalid.", name) 139 } 140 } 141 } 142 143 func TestContainerInitDNS(t *testing.T) { 144 if os.Getuid() != 0 { 145 t.Skip("root required") // for chown 146 } 147 148 tmp, err := os.MkdirTemp("", "docker-container-test-") 149 if err != nil { 150 t.Fatal(err) 151 } 152 defer os.RemoveAll(tmp) 153 154 containerID := "d59df5276e7b219d510fe70565e0404bc06350e0d4b43fe961f22f339980170e" 155 containerPath := filepath.Join(tmp, containerID) 156 if err := os.MkdirAll(containerPath, 0755); err != nil { 157 t.Fatal(err) 158 } 159 160 config := `{"State":{"Running":true,"Paused":false,"Restarting":false,"OOMKilled":false,"Dead":false,"Pid":2464,"ExitCode":0, 161 "Error":"","StartedAt":"2015-05-26T16:48:53.869308965Z","FinishedAt":"0001-01-01T00:00:00Z"}, 162 "ID":"d59df5276e7b219d510fe70565e0404bc06350e0d4b43fe961f22f339980170e","Created":"2015-05-26T16:48:53.7987917Z","Path":"top", 163 "Args":[],"Config":{"Hostname":"d59df5276e7b","Domainname":"","User":"","Memory":0,"MemorySwap":0,"CpuShares":0,"Cpuset":"", 164 "AttachStdin":false,"AttachStdout":false,"AttachStderr":false,"PortSpecs":null,"ExposedPorts":null,"Tty":true,"OpenStdin":true, 165 "StdinOnce":false,"Env":null,"Cmd":["top"],"Image":"ubuntu:latest","Volumes":null,"WorkingDir":"","Entrypoint":null, 166 "NetworkDisabled":false,"MacAddress":"","OnBuild":null,"Labels":{}},"Image":"07f8e8c5e66084bef8f848877857537ffe1c47edd01a93af27e7161672ad0e95", 167 "NetworkSettings":{"IPAddress":"172.17.0.1","IPPrefixLen":16,"MacAddress":"02:42:ac:11:00:01","LinkLocalIPv6Address":"fe80::42:acff:fe11:1", 168 "LinkLocalIPv6PrefixLen":64,"GlobalIPv6Address":"","GlobalIPv6PrefixLen":0,"Gateway":"172.17.42.1","IPv6Gateway":"","Bridge":"docker0","Ports":{}}, 169 "ResolvConfPath":"/var/lib/docker/containers/d59df5276e7b219d510fe70565e0404bc06350e0d4b43fe961f22f339980170e/resolv.conf", 170 "HostnamePath":"/var/lib/docker/containers/d59df5276e7b219d510fe70565e0404bc06350e0d4b43fe961f22f339980170e/hostname", 171 "HostsPath":"/var/lib/docker/containers/d59df5276e7b219d510fe70565e0404bc06350e0d4b43fe961f22f339980170e/hosts", 172 "LogPath":"/var/lib/docker/containers/d59df5276e7b219d510fe70565e0404bc06350e0d4b43fe961f22f339980170e/d59df5276e7b219d510fe70565e0404bc06350e0d4b43fe961f22f339980170e-json.log", 173 "Name":"/ubuntu","Driver":"aufs","MountLabel":"","ProcessLabel":"","AppArmorProfile":"","RestartCount":0, 174 "UpdateDns":false,"Volumes":{},"VolumesRW":{},"AppliedVolumesFrom":null}` 175 176 // Container struct only used to retrieve path to config file 177 ctr := &container.Container{Root: containerPath} 178 configPath, err := ctr.ConfigPath() 179 if err != nil { 180 t.Fatal(err) 181 } 182 if err = os.WriteFile(configPath, []byte(config), 0644); err != nil { 183 t.Fatal(err) 184 } 185 186 hostConfig := `{"Binds":[],"ContainerIDFile":"","Memory":0,"MemorySwap":0,"CpuShares":0,"CpusetCpus":"", 187 "Privileged":false,"PortBindings":{},"Links":null,"PublishAllPorts":false,"Dns":null,"DnsOptions":null,"DnsSearch":null,"ExtraHosts":null,"VolumesFrom":null, 188 "Devices":[],"NetworkMode":"bridge","IpcMode":"","PidMode":"","CapAdd":null,"CapDrop":null,"RestartPolicy":{"Name":"no","MaximumRetryCount":0}, 189 "SecurityOpt":null,"ReadonlyRootfs":false,"Ulimits":null,"LogConfig":{"Type":"","Config":null},"CgroupParent":""}` 190 191 hostConfigPath, err := ctr.HostConfigPath() 192 if err != nil { 193 t.Fatal(err) 194 } 195 if err = os.WriteFile(hostConfigPath, []byte(hostConfig), 0644); err != nil { 196 t.Fatal(err) 197 } 198 199 daemon, err := initDaemonWithVolumeStore(tmp) 200 if err != nil { 201 t.Fatal(err) 202 } 203 204 c, err := daemon.load(containerID) 205 if err != nil { 206 t.Fatal(err) 207 } 208 209 if c.HostConfig.DNS == nil { 210 t.Fatal("Expected container DNS to not be nil") 211 } 212 213 if c.HostConfig.DNSSearch == nil { 214 t.Fatal("Expected container DNSSearch to not be nil") 215 } 216 217 if c.HostConfig.DNSOptions == nil { 218 t.Fatal("Expected container DNSOptions to not be nil") 219 } 220 } 221 222 func newPortNoError(proto, port string) nat.Port { 223 p, _ := nat.NewPort(proto, port) 224 return p 225 } 226 227 func TestMerge(t *testing.T) { 228 volumesImage := make(map[string]struct{}) 229 volumesImage["/test1"] = struct{}{} 230 volumesImage["/test2"] = struct{}{} 231 portsImage := make(nat.PortSet) 232 portsImage[newPortNoError("tcp", "1111")] = struct{}{} 233 portsImage[newPortNoError("tcp", "2222")] = struct{}{} 234 configImage := &containertypes.Config{ 235 ExposedPorts: portsImage, 236 Env: []string{"VAR1=1", "VAR2=2"}, 237 Volumes: volumesImage, 238 } 239 240 portsUser := make(nat.PortSet) 241 portsUser[newPortNoError("tcp", "2222")] = struct{}{} 242 portsUser[newPortNoError("tcp", "3333")] = struct{}{} 243 volumesUser := make(map[string]struct{}) 244 volumesUser["/test3"] = struct{}{} 245 configUser := &containertypes.Config{ 246 ExposedPorts: portsUser, 247 Env: []string{"VAR2=3", "VAR3=3"}, 248 Volumes: volumesUser, 249 } 250 251 if err := merge(configUser, configImage); err != nil { 252 t.Error(err) 253 } 254 255 if len(configUser.ExposedPorts) != 3 { 256 t.Fatalf("Expected 3 ExposedPorts, 1111, 2222 and 3333, found %d", len(configUser.ExposedPorts)) 257 } 258 for portSpecs := range configUser.ExposedPorts { 259 if portSpecs.Port() != "1111" && portSpecs.Port() != "2222" && portSpecs.Port() != "3333" { 260 t.Fatalf("Expected 1111 or 2222 or 3333, found %s", portSpecs) 261 } 262 } 263 if len(configUser.Env) != 3 { 264 t.Fatalf("Expected 3 env var, VAR1=1, VAR2=3 and VAR3=3, found %d", len(configUser.Env)) 265 } 266 for _, env := range configUser.Env { 267 if env != "VAR1=1" && env != "VAR2=3" && env != "VAR3=3" { 268 t.Fatalf("Expected VAR1=1 or VAR2=3 or VAR3=3, found %s", env) 269 } 270 } 271 272 if len(configUser.Volumes) != 3 { 273 t.Fatalf("Expected 3 volumes, /test1, /test2 and /test3, found %d", len(configUser.Volumes)) 274 } 275 for v := range configUser.Volumes { 276 if v != "/test1" && v != "/test2" && v != "/test3" { 277 t.Fatalf("Expected /test1 or /test2 or /test3, found %s", v) 278 } 279 } 280 281 ports, _, err := nat.ParsePortSpecs([]string{"0000"}) 282 if err != nil { 283 t.Error(err) 284 } 285 configImage2 := &containertypes.Config{ 286 ExposedPorts: ports, 287 } 288 289 if err := merge(configUser, configImage2); err != nil { 290 t.Error(err) 291 } 292 293 if len(configUser.ExposedPorts) != 4 { 294 t.Fatalf("Expected 4 ExposedPorts, 0000, 1111, 2222 and 3333, found %d", len(configUser.ExposedPorts)) 295 } 296 for portSpecs := range configUser.ExposedPorts { 297 if portSpecs.Port() != "0" && portSpecs.Port() != "1111" && portSpecs.Port() != "2222" && portSpecs.Port() != "3333" { 298 t.Fatalf("Expected %q or %q or %q or %q, found %s", 0, 1111, 2222, 3333, portSpecs) 299 } 300 } 301 } 302 303 func TestValidateContainerIsolation(t *testing.T) { 304 d := Daemon{} 305 306 _, err := d.verifyContainerSettings(&containertypes.HostConfig{Isolation: containertypes.Isolation("invalid")}, nil, false) 307 assert.Check(t, is.Error(err, "invalid isolation 'invalid' on "+runtime.GOOS)) 308 } 309 310 func TestFindNetworkErrorType(t *testing.T) { 311 d := Daemon{} 312 _, err := d.FindNetwork("fakeNet") 313 var nsn libnetwork.ErrNoSuchNetwork 314 ok := errors.As(err, &nsn) 315 if !errdefs.IsNotFound(err) || !ok { 316 t.Error("The FindNetwork method MUST always return an error that implements the NotFound interface and is ErrNoSuchNetwork") 317 } 318 }