test.bats 5.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184
  1. #!/usr/bin/env bats
  2. load test_helper
  3. @test "image build" {
  4. run build_image
  5. [ "$status" -eq 0 ]
  6. }
  7. @test "ldapsearch new database" {
  8. run_image -h ldap.example.org -e LDAP_TLS=false
  9. wait_process slapd
  10. run docker exec $CONTAINER_ID ldapsearch -x -h ldap.example.org -b dc=example,dc=org -D "cn=admin,dc=example,dc=org" -w admin
  11. clear_container
  12. [ "$status" -eq 0 ]
  13. }
  14. @test "ldap domain with ldap base dn" {
  15. run_image -h ldap.example.org -e LDAP_TLS=false -e LDAP_DOMAIN=example.com -e LDAP_BASE_DN="dc=example,dc=org"
  16. sleep 2
  17. CSTATUS=$(check_container)
  18. clear_container
  19. [ "$CSTATUS" != "running 0" ]
  20. }
  21. @test "ldap domain with ldap base dn subdomain" {
  22. run_image -h ldap.example.fr -e LDAP_TLS=false -e LDAP_DOMAIN=example.fr -e LDAP_BASE_DN="ou=myou,o=example,c=fr"
  23. sleep 2
  24. CSTATUS=$(check_container)
  25. clear_container
  26. [ "$CSTATUS" == "running 0" ]
  27. }
  28. @test "ldap domain with ldap base dn subdomain included" {
  29. run_image -h ldap.example.com -e LDAP_TLS=false -e LDAP_DOMAIN=example.com -e LDAP_BASE_DN="ou=myou,o=example,dc=com,c=fr"
  30. sleep 2
  31. CSTATUS=$(check_container)
  32. clear_container
  33. [ "$CSTATUS" != "running 0" ]
  34. }
  35. @test "ldapsearch database from created volumes" {
  36. rm -rf VOLUMES && mkdir -p VOLUMES/config VOLUMES/database
  37. LDAP_CID=$(docker run -h ldap.example.org -e LDAP_TLS=false --volume $PWD/VOLUMES/database:/var/lib/ldap --volume $PWD/VOLUMES/config:/etc/ldap/slapd.d -d $NAME:$VERSION)
  38. wait_process_by_cid $LDAP_CID slapd
  39. run docker exec $LDAP_CID ldapsearch -x -h ldap.example.org -b dc=example,dc=org -D "cn=admin,dc=example,dc=org" -w admin
  40. docker kill $LDAP_CID
  41. clear_containers_by_cid $LDAP_CID
  42. [ "$status" -eq 0 ]
  43. LDAP_CID=$(docker run -h ldap.example.org -e LDAP_TLS=false --volume $PWD/VOLUMES/database:/var/lib/ldap --volume $PWD/VOLUMES/config:/etc/ldap/slapd.d -d $NAME:$VERSION)
  44. wait_process_by_cid $LDAP_CID slapd
  45. run docker exec $LDAP_CID ldapsearch -x -h ldap.example.org -b dc=example,dc=org -D "cn=admin,dc=example,dc=org" -w admin
  46. run docker exec $LDAP_CID chown -R $UID:$UID /var/lib/ldap /etc/ldap/slapd.d
  47. docker kill $LDAP_CID
  48. rm -rf VOLUMES
  49. clear_containers_by_cid $LDAP_CID
  50. [ "$status" -eq 0 ]
  51. }
  52. @test "ldapsearch database with password provided from file" {
  53. rm $PWD/password.txt && touch $PWD/password.txt
  54. echo "strongPassword" >> $PWD/password.txt
  55. run_image -h ldap.osixia.net -e LDAP_ADMIN_PASSWORD_FILE=/run/secrets/admin_pw.txt --volume $PWD/password.txt:/run/secrets/admin_pw.txt
  56. wait_process slapd
  57. run docker exec $CONTAINER_ID ldapsearch -x -h ldap.osixia.net -b dc=example,dc=org -ZZ -D "cn=admin,dc=example,dc=org" -w strongPassword
  58. clear_container
  59. rm $PWD/password.txt
  60. [ "$status" -eq 0 ]
  61. }
  62. @test "ldapsearch new database with strict TLS" {
  63. run_image -h ldap.example.org
  64. wait_process slapd
  65. run docker exec $CONTAINER_ID ldapsearch -x -h ldap.example.org -b dc=example,dc=org -ZZ -D "cn=admin,dc=example,dc=org" -w admin
  66. clear_container
  67. [ "$status" -eq 0 ]
  68. }
  69. @test "ldapsearch new database with strict TLS and custom ca/crt" {
  70. run_image -h ldap.osixia.net -v $BATS_TEST_DIRNAME/ssl:/container/service/slapd/assets/certs -e LDAP_TLS_CRT_FILENAME=ldap-test.crt -e LDAP_TLS_KEY_FILENAME=ldap-test.key -e LDAP_TLS_CA_CRT_FILENAME=ca-test.crt
  71. wait_process slapd
  72. run docker exec $CONTAINER_ID ldapsearch -x -h ldap.osixia.net -b dc=example,dc=org -ZZ -D "cn=admin,dc=example,dc=org" -w admin
  73. clear_container
  74. [ "$status" -eq 0 ]
  75. }
  76. @test "ldapsearch new database with strict TLS and custom ca/crt and custom dhparam" {
  77. run_image -h ldap.osixia.net -v $BATS_TEST_DIRNAME/ssl:/container/service/slapd/assets/certs -e LDAP_TLS_CRT_FILENAME=ldap-test.crt -e LDAP_TLS_KEY_FILENAME=ldap-test.key -e LDAP_TLS_DH_PARAM_FILENAME=ldap-test.dhparam -e LDAP_TLS_CA_CRT_FILENAME=ca-test.crt
  78. wait_process slapd
  79. run docker exec $CONTAINER_ID ldapsearch -x -h ldap.osixia.net -b dc=example,dc=org -ZZ -D "cn=admin,dc=example,dc=org" -w admin
  80. clear_container
  81. [ "$status" -eq 0 ]
  82. }
  83. @test "ldapsearch existing hdb database and config" {
  84. run_image -h ldap.example.org -e LDAP_TLS=false -e LDAP_BACKEND=hdb -v $BATS_TEST_DIRNAME/database:/container/test/database -v $BATS_TEST_DIRNAME/config:/container/test/config
  85. wait_process slapd
  86. run docker exec $CONTAINER_ID ldapsearch -x -h ldap.example.org -b dc=osixia,dc=net -D "cn=admin,dc=osixia,dc=net" -w admin
  87. clear_container
  88. [ "$status" -eq 0 ]
  89. }
  90. @test "replication with new databases and strict TLS" {
  91. tmp_file="$BATS_TMPDIR/docker-test"
  92. # replication ldap server
  93. LDAP_REPL_CID=$(docker run -h ldap2.example.org -e LDAP_REPLICATION=true -d $NAME:$VERSION)
  94. LDAP_REPL_IP=$(get_container_ip_by_cid $LDAP_REPL_CID)
  95. sleep 2
  96. # ldap server
  97. run_image -h ldap.example.org -e LDAP_REPLICATION=true
  98. # add route to hosts
  99. docker exec $CONTAINER_ID bash -c "echo $LDAP_REPL_IP ldap2.example.org >> /etc/hosts"
  100. docker exec $LDAP_REPL_CID bash -c "echo $CONTAINER_IP ldap.example.org >> /etc/hosts"
  101. # wait services on both servers
  102. wait_process slapd
  103. wait_process_by_cid $LDAP_REPL_CID slapd
  104. sleep 2
  105. # add user on ldap2.example.org
  106. docker exec $LDAP_REPL_CID ldapadd -x -D "cn=admin,dc=example,dc=org" -w admin -f /container/service/slapd/assets/test/new-user.ldif -h ldap2.example.org -ZZ
  107. sleep 5
  108. # search user on ldap.example.org
  109. docker exec $CONTAINER_ID ldapsearch -x -h ldap.example.org -b dc=example,dc=org -D "cn=admin,dc=example,dc=org" -w admin -ZZ >> $tmp_file
  110. run grep -c "billy" $tmp_file
  111. rm $tmp_file
  112. clear_container
  113. clear_containers_by_cid $LDAP_REPL_CID
  114. [ "$status" -eq 0 ]
  115. [ "$output" = "6" ]
  116. }