mirror of
https://github.com/zitadel/zitadel.git
synced 2024-12-18 13:57:32 +00:00
c0878e4509
* docs: describe crd mode * docs: fix links * docs: fix commands and crdb resources * feat: add configure command * chore: use latest ORBOS * chore: use latest ORBOS * docs: start gitops docs * fix: compile * chore: fix build script path * chore: remove redundant prebuild * chore: add configure.go * docs: describe gitops mode * docs: point template links to main branch * docs: fix versions * feat: initialize empty keys * feat: reconfigure running ZITADEL * docs: describe crd mode * docs: fix links * docs: fix commands and crdb resources * feat: add configure command * chore: use latest ORBOS * chore: use latest ORBOS * docs: start gitops docs * fix: compile * chore: fix build script path * chore: remove redundant prebuild * chore: add configure.go * docs: describe gitops mode * docs: point template links to main branch * docs: fix versions * feat: initialize empty keys * feat: reconfigure running ZITADEL * test: fix * docs: keys are generated with configure * docs: remove keys from template * chore: pass compile time data * chore: use latest ORBOS * fix: when in-cluster, use in-cluster k8s client * fix: try in-cluster config if kubeconfig is empty * fix: reduce unneeded side effects for configure command * docs: boom version * chore: use latest ORBOS * chore: use latest ORBOS * initial commit * inital changes * commit WIP Information Architecture * commit a working state * add static assets and project * add org and fix img names * add plausible * remove img * change sidebar to easier mgmt * add openid oauth and domains * lint md * quickstarts * add auth flow * identity brokering * remove site * fix broken links * extend footer * extend readme * fix: styling * fix: zitadel logo on index * styling * border * fix: nav * fix: nav * fix: index * fix: corrected zitadelctl examples * fix: rename architecture to concepts * fix: introductions * fix: introductions * fix: introductions * docs: cli r/w secrets examples * docs: finish ZITADEL Enterprise Cloud * docs: mention ZITADEL Enterprise Cloud tier * docs: comment configuration options * docs: fix broken links * docs: move some introduction texts around * docs: twilio and email are mandatory * docs: download latest binaries Co-authored-by: Florian Forster <florian@caos.ch> Co-authored-by: fabi <fabienne.gerschwiler@gmail.com> Co-authored-by: Livio Amstutz <livio.a@gmail.com> Co-authored-by: Stefan Benz <stefan@caos.ch>
384 lines
9.6 KiB
Go
384 lines
9.6 KiB
Go
package bucket
|
|
|
|
import (
|
|
"testing"
|
|
|
|
"github.com/caos/orbos/mntr"
|
|
"github.com/caos/orbos/pkg/kubernetes"
|
|
kubernetesmock "github.com/caos/orbos/pkg/kubernetes/mock"
|
|
"github.com/caos/orbos/pkg/labels"
|
|
"github.com/caos/orbos/pkg/secret"
|
|
"github.com/caos/orbos/pkg/tree"
|
|
"github.com/caos/zitadel/operator/database/kinds/backups/bucket/backup"
|
|
"github.com/caos/zitadel/operator/database/kinds/backups/bucket/clean"
|
|
"github.com/caos/zitadel/operator/database/kinds/backups/bucket/restore"
|
|
"github.com/golang/mock/gomock"
|
|
"github.com/stretchr/testify/assert"
|
|
corev1 "k8s.io/api/core/v1"
|
|
)
|
|
|
|
func TestBucket_Secrets(t *testing.T) {
|
|
masterkey := "testMk"
|
|
features := []string{backup.Normal}
|
|
saJson := "testSA"
|
|
|
|
bucketName := "testBucket2"
|
|
cron := "testCron2"
|
|
monitor := mntr.Monitor{}
|
|
namespace := "testNs2"
|
|
|
|
kindVersion := "v0"
|
|
kind := "BucketBackup"
|
|
componentLabels := labels.MustForComponent(labels.MustForAPI(labels.MustForOperator("testProd", "testOp", "testVersion"), "BucketBackup", kindVersion), "testComponent")
|
|
|
|
timestamp := "test2"
|
|
nodeselector := map[string]string{"test2": "test2"}
|
|
tolerations := []corev1.Toleration{
|
|
{Key: "testKey2", Operator: "testOp2"}}
|
|
backupName := "testName2"
|
|
version := "testVersion2"
|
|
|
|
desired := getDesiredTree(t, masterkey, &DesiredV0{
|
|
Common: &tree.Common{
|
|
Kind: "databases.caos.ch/" + kind,
|
|
Version: kindVersion,
|
|
},
|
|
Spec: &Spec{
|
|
Verbose: true,
|
|
Cron: cron,
|
|
Bucket: bucketName,
|
|
ServiceAccountJSON: &secret.Secret{
|
|
Value: saJson,
|
|
},
|
|
},
|
|
})
|
|
|
|
checkDBReady := func(k8sClient kubernetes.ClientInt) error {
|
|
return nil
|
|
}
|
|
|
|
allSecrets := map[string]string{
|
|
"serviceaccountjson": saJson,
|
|
}
|
|
|
|
_, _, _, secrets, existing, _, err := AdaptFunc(
|
|
backupName,
|
|
namespace,
|
|
componentLabels,
|
|
checkDBReady,
|
|
timestamp,
|
|
nodeselector,
|
|
tolerations,
|
|
version,
|
|
features,
|
|
)(
|
|
monitor,
|
|
desired,
|
|
&tree.Tree{},
|
|
)
|
|
assert.NoError(t, err)
|
|
for key, value := range allSecrets {
|
|
assert.Contains(t, secrets, key)
|
|
assert.Contains(t, existing, key)
|
|
assert.Equal(t, value, secrets[key].Value)
|
|
}
|
|
}
|
|
|
|
func TestBucket_AdaptBackup(t *testing.T) {
|
|
masterkey := "testMk"
|
|
client := kubernetesmock.NewMockClientInt(gomock.NewController(t))
|
|
features := []string{backup.Normal}
|
|
saJson := "testSA"
|
|
|
|
bucketName := "testBucket2"
|
|
cron := "testCron2"
|
|
monitor := mntr.Monitor{}
|
|
namespace := "testNs2"
|
|
|
|
componentLabels := labels.MustForComponent(labels.MustForAPI(labels.MustForOperator("testProd", "testOp", "testVersion"), "BucketBackup", "v0"), "testComponent")
|
|
k8sLabels := map[string]string{
|
|
"app.kubernetes.io/component": "testComponent",
|
|
"app.kubernetes.io/managed-by": "testOp",
|
|
"app.kubernetes.io/name": "backup-serviceaccountjson",
|
|
"app.kubernetes.io/part-of": "testProd",
|
|
"app.kubernetes.io/version": "testVersion",
|
|
"caos.ch/apiversion": "v0",
|
|
"caos.ch/kind": "BucketBackup",
|
|
}
|
|
timestamp := "test2"
|
|
nodeselector := map[string]string{"test2": "test2"}
|
|
tolerations := []corev1.Toleration{
|
|
{Key: "testKey2", Operator: "testOp2"}}
|
|
backupName := "testName2"
|
|
version := "testVersion2"
|
|
|
|
desired := getDesiredTree(t, masterkey, &DesiredV0{
|
|
Common: &tree.Common{
|
|
Kind: "databases.caos.ch/BucketBackup",
|
|
Version: "v0",
|
|
},
|
|
Spec: &Spec{
|
|
Verbose: true,
|
|
Cron: cron,
|
|
Bucket: bucketName,
|
|
ServiceAccountJSON: &secret.Secret{
|
|
Value: saJson,
|
|
},
|
|
},
|
|
})
|
|
|
|
checkDBReady := func(k8sClient kubernetes.ClientInt) error {
|
|
return nil
|
|
}
|
|
|
|
SetBackup(client, namespace, k8sLabels, saJson)
|
|
|
|
query, _, _, _, _, _, err := AdaptFunc(
|
|
backupName,
|
|
namespace,
|
|
componentLabels,
|
|
checkDBReady,
|
|
timestamp,
|
|
nodeselector,
|
|
tolerations,
|
|
version,
|
|
features,
|
|
)(
|
|
monitor,
|
|
desired,
|
|
&tree.Tree{},
|
|
)
|
|
|
|
assert.NoError(t, err)
|
|
databases := []string{"test1", "test2"}
|
|
queried := SetQueriedForDatabases(databases)
|
|
ensure, err := query(client, queried)
|
|
assert.NoError(t, err)
|
|
assert.NotNil(t, ensure)
|
|
assert.NoError(t, ensure(client))
|
|
}
|
|
|
|
func TestBucket_AdaptInstantBackup(t *testing.T) {
|
|
masterkey := "testMk"
|
|
client := kubernetesmock.NewMockClientInt(gomock.NewController(t))
|
|
features := []string{backup.Instant}
|
|
|
|
bucketName := "testBucket1"
|
|
cron := "testCron"
|
|
monitor := mntr.Monitor{}
|
|
namespace := "testNs"
|
|
|
|
componentLabels := labels.MustForComponent(labels.MustForAPI(labels.MustForOperator("testProd", "testOp", "testVersion"), "BucketBackup", "v0"), "testComponent")
|
|
k8sLabels := map[string]string{
|
|
"app.kubernetes.io/component": "testComponent",
|
|
"app.kubernetes.io/managed-by": "testOp",
|
|
"app.kubernetes.io/name": "backup-serviceaccountjson",
|
|
"app.kubernetes.io/part-of": "testProd",
|
|
"app.kubernetes.io/version": "testVersion",
|
|
"caos.ch/apiversion": "v0",
|
|
"caos.ch/kind": "BucketBackup",
|
|
}
|
|
timestamp := "test"
|
|
nodeselector := map[string]string{"test": "test"}
|
|
tolerations := []corev1.Toleration{
|
|
{Key: "testKey", Operator: "testOp"}}
|
|
backupName := "testName"
|
|
version := "testVersion"
|
|
saJson := "testSA"
|
|
|
|
desired := getDesiredTree(t, masterkey, &DesiredV0{
|
|
Common: &tree.Common{
|
|
Kind: "databases.caos.ch/BucketBackup",
|
|
Version: "v0",
|
|
},
|
|
Spec: &Spec{
|
|
Verbose: true,
|
|
Cron: cron,
|
|
Bucket: bucketName,
|
|
ServiceAccountJSON: &secret.Secret{
|
|
Value: saJson,
|
|
},
|
|
},
|
|
})
|
|
|
|
checkDBReady := func(k8sClient kubernetes.ClientInt) error {
|
|
return nil
|
|
}
|
|
|
|
SetInstantBackup(client, namespace, backupName, k8sLabels, saJson)
|
|
|
|
query, _, _, _, _, _, err := AdaptFunc(
|
|
backupName,
|
|
namespace,
|
|
componentLabels,
|
|
checkDBReady,
|
|
timestamp,
|
|
nodeselector,
|
|
tolerations,
|
|
version,
|
|
features,
|
|
)(
|
|
monitor,
|
|
desired,
|
|
&tree.Tree{},
|
|
)
|
|
|
|
assert.NoError(t, err)
|
|
databases := []string{"test1", "test2"}
|
|
queried := SetQueriedForDatabases(databases)
|
|
ensure, err := query(client, queried)
|
|
assert.NotNil(t, ensure)
|
|
assert.NoError(t, err)
|
|
assert.NoError(t, ensure(client))
|
|
}
|
|
|
|
func TestBucket_AdaptRestore(t *testing.T) {
|
|
masterkey := "testMk"
|
|
client := kubernetesmock.NewMockClientInt(gomock.NewController(t))
|
|
features := []string{restore.Instant}
|
|
|
|
bucketName := "testBucket1"
|
|
cron := "testCron"
|
|
monitor := mntr.Monitor{}
|
|
namespace := "testNs"
|
|
|
|
componentLabels := labels.MustForComponent(labels.MustForAPI(labels.MustForOperator("testProd", "testOp", "testVersion"), "BucketBackup", "v0"), "testComponent")
|
|
k8sLabels := map[string]string{
|
|
"app.kubernetes.io/component": "testComponent",
|
|
"app.kubernetes.io/managed-by": "testOp",
|
|
"app.kubernetes.io/name": "backup-serviceaccountjson",
|
|
"app.kubernetes.io/part-of": "testProd",
|
|
"app.kubernetes.io/version": "testVersion",
|
|
"caos.ch/apiversion": "v0",
|
|
"caos.ch/kind": "BucketBackup",
|
|
}
|
|
|
|
timestamp := "test"
|
|
nodeselector := map[string]string{"test": "test"}
|
|
tolerations := []corev1.Toleration{
|
|
{Key: "testKey", Operator: "testOp"}}
|
|
backupName := "testName"
|
|
version := "testVersion"
|
|
saJson := "testSA"
|
|
|
|
desired := getDesiredTree(t, masterkey, &DesiredV0{
|
|
Common: &tree.Common{
|
|
Kind: "databases.caos.ch/BucketBackup",
|
|
Version: "v0",
|
|
},
|
|
Spec: &Spec{
|
|
Verbose: true,
|
|
Cron: cron,
|
|
Bucket: bucketName,
|
|
ServiceAccountJSON: &secret.Secret{
|
|
Value: saJson,
|
|
},
|
|
},
|
|
})
|
|
|
|
checkDBReady := func(k8sClient kubernetes.ClientInt) error {
|
|
return nil
|
|
}
|
|
|
|
SetRestore(client, namespace, backupName, k8sLabels, saJson)
|
|
|
|
query, _, _, _, _, _, err := AdaptFunc(
|
|
backupName,
|
|
namespace,
|
|
componentLabels,
|
|
checkDBReady,
|
|
timestamp,
|
|
nodeselector,
|
|
tolerations,
|
|
version,
|
|
features,
|
|
)(
|
|
monitor,
|
|
desired,
|
|
&tree.Tree{},
|
|
)
|
|
|
|
assert.NoError(t, err)
|
|
databases := []string{"test1", "test2"}
|
|
queried := SetQueriedForDatabases(databases)
|
|
ensure, err := query(client, queried)
|
|
assert.NotNil(t, ensure)
|
|
assert.NoError(t, err)
|
|
assert.NoError(t, ensure(client))
|
|
}
|
|
|
|
func TestBucket_AdaptClean(t *testing.T) {
|
|
masterkey := "testMk"
|
|
client := kubernetesmock.NewMockClientInt(gomock.NewController(t))
|
|
features := []string{clean.Instant}
|
|
|
|
bucketName := "testBucket1"
|
|
cron := "testCron"
|
|
monitor := mntr.Monitor{}
|
|
namespace := "testNs"
|
|
|
|
componentLabels := labels.MustForComponent(labels.MustForAPI(labels.MustForOperator("testProd", "testOp", "testVersion"), "BucketBackup", "v0"), "testComponent")
|
|
k8sLabels := map[string]string{
|
|
"app.kubernetes.io/component": "testComponent",
|
|
"app.kubernetes.io/managed-by": "testOp",
|
|
"app.kubernetes.io/name": "backup-serviceaccountjson",
|
|
"app.kubernetes.io/part-of": "testProd",
|
|
"app.kubernetes.io/version": "testVersion",
|
|
"caos.ch/apiversion": "v0",
|
|
"caos.ch/kind": "BucketBackup",
|
|
}
|
|
|
|
timestamp := "test"
|
|
nodeselector := map[string]string{"test": "test"}
|
|
tolerations := []corev1.Toleration{
|
|
{Key: "testKey", Operator: "testOp"}}
|
|
backupName := "testName"
|
|
version := "testVersion"
|
|
saJson := "testSA"
|
|
|
|
desired := getDesiredTree(t, masterkey, &DesiredV0{
|
|
Common: &tree.Common{
|
|
Kind: "databases.caos.ch/BucketBackup",
|
|
Version: "v0",
|
|
},
|
|
Spec: &Spec{
|
|
Verbose: true,
|
|
Cron: cron,
|
|
Bucket: bucketName,
|
|
ServiceAccountJSON: &secret.Secret{
|
|
Value: saJson,
|
|
},
|
|
},
|
|
})
|
|
|
|
checkDBReady := func(k8sClient kubernetes.ClientInt) error {
|
|
return nil
|
|
}
|
|
|
|
SetClean(client, namespace, backupName, k8sLabels, saJson)
|
|
|
|
query, _, _, _, _, _, err := AdaptFunc(
|
|
backupName,
|
|
namespace,
|
|
componentLabels,
|
|
checkDBReady,
|
|
timestamp,
|
|
nodeselector,
|
|
tolerations,
|
|
version,
|
|
features,
|
|
)(
|
|
monitor,
|
|
desired,
|
|
&tree.Tree{},
|
|
)
|
|
|
|
assert.NoError(t, err)
|
|
databases := []string{"test1", "test2"}
|
|
queried := SetQueriedForDatabases(databases)
|
|
ensure, err := query(client, queried)
|
|
assert.NotNil(t, ensure)
|
|
assert.NoError(t, err)
|
|
assert.NoError(t, ensure(client))
|
|
}
|