123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461 |
- package main
- import (
- "fmt"
- "io/ioutil"
- "os"
- "path/filepath"
- "strings"
- "github.com/docker/docker/integration-cli/checker"
- icmd "github.com/docker/docker/pkg/testutil/cmd"
- "github.com/go-check/check"
- )
- var (
- pluginProcessName = "sample-volume-plugin"
- pName = "tiborvass/sample-volume-plugin"
- npName = "tiborvass/test-docker-netplugin"
- pTag = "latest"
- pNameWithTag = pName + ":" + pTag
- npNameWithTag = npName + ":" + pTag
- )
- func (s *DockerSuite) TestPluginBasicOps(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- _, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", pNameWithTag)
- c.Assert(err, checker.IsNil)
- out, _, err := dockerCmdWithError("plugin", "ls")
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, pName)
- c.Assert(out, checker.Contains, pTag)
- c.Assert(out, checker.Contains, "true")
- id, _, err := dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", pNameWithTag)
- id = strings.TrimSpace(id)
- c.Assert(err, checker.IsNil)
- out, _, err = dockerCmdWithError("plugin", "remove", pNameWithTag)
- c.Assert(err, checker.NotNil)
- c.Assert(out, checker.Contains, "is enabled")
- _, _, err = dockerCmdWithError("plugin", "disable", pNameWithTag)
- c.Assert(err, checker.IsNil)
- out, _, err = dockerCmdWithError("plugin", "remove", pNameWithTag)
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, pNameWithTag)
- _, err = os.Stat(filepath.Join(testEnv.DockerBasePath(), "plugins", id))
- if !os.IsNotExist(err) {
- c.Fatal(err)
- }
- }
- func (s *DockerSuite) TestPluginForceRemove(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- out, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", pNameWithTag)
- c.Assert(err, checker.IsNil)
- out, _, err = dockerCmdWithError("plugin", "remove", pNameWithTag)
- c.Assert(out, checker.Contains, "is enabled")
- out, _, err = dockerCmdWithError("plugin", "remove", "--force", pNameWithTag)
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, pNameWithTag)
- }
- func (s *DockerSuite) TestPluginActive(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- _, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", pNameWithTag)
- c.Assert(err, checker.IsNil)
- _, _, err = dockerCmdWithError("volume", "create", "-d", pNameWithTag, "--name", "testvol1")
- c.Assert(err, checker.IsNil)
- out, _, err := dockerCmdWithError("plugin", "disable", pNameWithTag)
- c.Assert(out, checker.Contains, "in use")
- _, _, err = dockerCmdWithError("volume", "rm", "testvol1")
- c.Assert(err, checker.IsNil)
- _, _, err = dockerCmdWithError("plugin", "disable", pNameWithTag)
- c.Assert(err, checker.IsNil)
- out, _, err = dockerCmdWithError("plugin", "remove", pNameWithTag)
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, pNameWithTag)
- }
- func (s *DockerSuite) TestPluginActiveNetwork(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- out, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", npNameWithTag)
- c.Assert(err, checker.IsNil)
- out, _, err = dockerCmdWithError("network", "create", "-d", npNameWithTag, "test")
- c.Assert(err, checker.IsNil)
- nID := strings.TrimSpace(out)
- out, _, err = dockerCmdWithError("plugin", "remove", npNameWithTag)
- c.Assert(out, checker.Contains, "is in use")
- _, _, err = dockerCmdWithError("network", "rm", nID)
- c.Assert(err, checker.IsNil)
- out, _, err = dockerCmdWithError("plugin", "remove", npNameWithTag)
- c.Assert(out, checker.Contains, "is enabled")
- _, _, err = dockerCmdWithError("plugin", "disable", npNameWithTag)
- c.Assert(err, checker.IsNil)
- out, _, err = dockerCmdWithError("plugin", "remove", npNameWithTag)
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, npNameWithTag)
- }
- func (s *DockerSuite) TestPluginInstallDisable(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- out, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", "--disable", pName)
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Contains, pName)
- out, _, err = dockerCmdWithError("plugin", "ls")
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, "false")
- out, _, err = dockerCmdWithError("plugin", "enable", pName)
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Contains, pName)
- out, _, err = dockerCmdWithError("plugin", "disable", pName)
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Contains, pName)
- out, _, err = dockerCmdWithError("plugin", "remove", pName)
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Contains, pName)
- }
- func (s *DockerSuite) TestPluginInstallDisableVolumeLs(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- out, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", "--disable", pName)
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Contains, pName)
- dockerCmd(c, "volume", "ls")
- }
- func (s *DockerSuite) TestPluginSet(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- out, _ := dockerCmd(c, "plugin", "install", "--grant-all-permissions", "--disable", pName)
- c.Assert(strings.TrimSpace(out), checker.Contains, pName)
- env, _ := dockerCmd(c, "plugin", "inspect", "-f", "{{.Settings.Env}}", pName)
- c.Assert(strings.TrimSpace(env), checker.Equals, "[DEBUG=0]")
- dockerCmd(c, "plugin", "set", pName, "DEBUG=1")
- env, _ = dockerCmd(c, "plugin", "inspect", "-f", "{{.Settings.Env}}", pName)
- c.Assert(strings.TrimSpace(env), checker.Equals, "[DEBUG=1]")
- }
- func (s *DockerSuite) TestPluginInstallArgs(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- out, _ := dockerCmd(c, "plugin", "install", "--grant-all-permissions", "--disable", pName, "DEBUG=1")
- c.Assert(strings.TrimSpace(out), checker.Contains, pName)
- env, _ := dockerCmd(c, "plugin", "inspect", "-f", "{{.Settings.Env}}", pName)
- c.Assert(strings.TrimSpace(env), checker.Equals, "[DEBUG=1]")
- }
- func (s *DockerRegistrySuite) TestPluginInstallImage(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64)
- repoName := fmt.Sprintf("%v/dockercli/busybox", privateRegistryURL)
- // tag the image to upload it to the private registry
- dockerCmd(c, "tag", "busybox", repoName)
- // push the image to the registry
- dockerCmd(c, "push", repoName)
- out, _, err := dockerCmdWithError("plugin", "install", repoName)
- c.Assert(err, checker.NotNil)
- c.Assert(out, checker.Contains, "target is image")
- }
- func (s *DockerSuite) TestPluginEnableDisableNegative(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- out, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", pName)
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Contains, pName)
- out, _, err = dockerCmdWithError("plugin", "enable", pName)
- c.Assert(err, checker.NotNil)
- c.Assert(strings.TrimSpace(out), checker.Contains, "already enabled")
- _, _, err = dockerCmdWithError("plugin", "disable", pName)
- c.Assert(err, checker.IsNil)
- out, _, err = dockerCmdWithError("plugin", "disable", pName)
- c.Assert(err, checker.NotNil)
- c.Assert(strings.TrimSpace(out), checker.Contains, "already disabled")
- _, _, err = dockerCmdWithError("plugin", "remove", pName)
- c.Assert(err, checker.IsNil)
- }
- func (s *DockerSuite) TestPluginCreate(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- name := "foo/bar-driver"
- temp, err := ioutil.TempDir("", "foo")
- c.Assert(err, checker.IsNil)
- defer os.RemoveAll(temp)
- data := `{"description": "foo plugin"}`
- err = ioutil.WriteFile(filepath.Join(temp, "config.json"), []byte(data), 0644)
- c.Assert(err, checker.IsNil)
- err = os.MkdirAll(filepath.Join(temp, "rootfs"), 0700)
- c.Assert(err, checker.IsNil)
- out, _, err := dockerCmdWithError("plugin", "create", name, temp)
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, name)
- out, _, err = dockerCmdWithError("plugin", "ls")
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, name)
- out, _, err = dockerCmdWithError("plugin", "create", name, temp)
- c.Assert(err, checker.NotNil)
- c.Assert(out, checker.Contains, "already exist")
- out, _, err = dockerCmdWithError("plugin", "ls")
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, name)
- // The output will consists of one HEADER line and one line of foo/bar-driver
- c.Assert(len(strings.Split(strings.TrimSpace(out), "\n")), checker.Equals, 2)
- }
- func (s *DockerSuite) TestPluginInspect(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- _, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", pNameWithTag)
- c.Assert(err, checker.IsNil)
- out, _, err := dockerCmdWithError("plugin", "ls")
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, pName)
- c.Assert(out, checker.Contains, pTag)
- c.Assert(out, checker.Contains, "true")
- // Find the ID first
- out, _, err = dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", pNameWithTag)
- c.Assert(err, checker.IsNil)
- id := strings.TrimSpace(out)
- c.Assert(id, checker.Not(checker.Equals), "")
- // Long form
- out, _, err = dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", id)
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Equals, id)
- // Short form
- out, _, err = dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", id[:5])
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Equals, id)
- // Name with tag form
- out, _, err = dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", pNameWithTag)
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Equals, id)
- // Name without tag form
- out, _, err = dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", pName)
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Equals, id)
- _, _, err = dockerCmdWithError("plugin", "disable", pNameWithTag)
- c.Assert(err, checker.IsNil)
- out, _, err = dockerCmdWithError("plugin", "remove", pNameWithTag)
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, pNameWithTag)
- // After remove nothing should be found
- _, _, err = dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", id[:5])
- c.Assert(err, checker.NotNil)
- }
- // Test case for https://github.com/docker/docker/pull/29186#discussion_r91277345
- func (s *DockerSuite) TestPluginInspectOnWindows(c *check.C) {
- // This test should work on Windows only
- testRequires(c, DaemonIsWindows)
- out, _, err := dockerCmdWithError("plugin", "inspect", "foobar")
- c.Assert(err, checker.NotNil)
- c.Assert(out, checker.Contains, "plugins are not supported on this platform")
- c.Assert(err.Error(), checker.Contains, "plugins are not supported on this platform")
- }
- func (s *DockerTrustSuite) TestPluginTrustedInstall(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- trustedName := s.setupTrustedplugin(c, pNameWithTag, "trusted-plugin-install")
- icmd.RunCmd(icmd.Command(dockerBinary, "plugin", "install", "--grant-all-permissions", trustedName), trustedCmd).Assert(c, icmd.Expected{
- Out: trustedName,
- })
- out, _, err := dockerCmdWithError("plugin", "ls")
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, "true")
- out, _, err = dockerCmdWithError("plugin", "disable", trustedName)
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Contains, trustedName)
- out, _, err = dockerCmdWithError("plugin", "enable", trustedName)
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Contains, trustedName)
- out, _, err = dockerCmdWithError("plugin", "rm", "-f", trustedName)
- c.Assert(err, checker.IsNil)
- c.Assert(strings.TrimSpace(out), checker.Contains, trustedName)
- // Try untrusted pull to ensure we pushed the tag to the registry
- icmd.RunCmd(icmd.Command(dockerBinary, "plugin", "install", "--disable-content-trust=true", "--grant-all-permissions", trustedName), trustedCmd).Assert(c, SuccessDownloaded)
- out, _, err = dockerCmdWithError("plugin", "ls")
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, "true")
- }
- func (s *DockerTrustSuite) TestPluginUntrustedInstall(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- pluginName := fmt.Sprintf("%v/dockercliuntrusted/plugintest:latest", privateRegistryURL)
- // install locally and push to private registry
- dockerCmd(c, "plugin", "install", "--grant-all-permissions", "--alias", pluginName, pNameWithTag)
- dockerCmd(c, "plugin", "push", pluginName)
- dockerCmd(c, "plugin", "rm", "-f", pluginName)
- // Try trusted install on untrusted plugin
- icmd.RunCmd(icmd.Command(dockerBinary, "plugin", "install", "--grant-all-permissions", pluginName), trustedCmd).Assert(c, icmd.Expected{
- ExitCode: 1,
- Err: "Error: remote trust data does not exist",
- })
- }
- func (s *DockerSuite) TestPluginIDPrefix(c *check.C) {
- testRequires(c, DaemonIsLinux, IsAmd64, Network)
- _, _, err := dockerCmdWithError("plugin", "install", "--disable", "--grant-all-permissions", pNameWithTag)
- c.Assert(err, checker.IsNil)
- // Find ID first
- id, _, err := dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", pNameWithTag)
- id = strings.TrimSpace(id)
- c.Assert(err, checker.IsNil)
- // List current state
- out, _, err := dockerCmdWithError("plugin", "ls")
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, pName)
- c.Assert(out, checker.Contains, pTag)
- c.Assert(out, checker.Contains, "false")
- env, _ := dockerCmd(c, "plugin", "inspect", "-f", "{{.Settings.Env}}", id[:5])
- c.Assert(strings.TrimSpace(env), checker.Equals, "[DEBUG=0]")
- dockerCmd(c, "plugin", "set", id[:5], "DEBUG=1")
- env, _ = dockerCmd(c, "plugin", "inspect", "-f", "{{.Settings.Env}}", id[:5])
- c.Assert(strings.TrimSpace(env), checker.Equals, "[DEBUG=1]")
- // Enable
- _, _, err = dockerCmdWithError("plugin", "enable", id[:5])
- c.Assert(err, checker.IsNil)
- out, _, err = dockerCmdWithError("plugin", "ls")
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, pName)
- c.Assert(out, checker.Contains, pTag)
- c.Assert(out, checker.Contains, "true")
- // Disable
- _, _, err = dockerCmdWithError("plugin", "disable", id[:5])
- c.Assert(err, checker.IsNil)
- out, _, err = dockerCmdWithError("plugin", "ls")
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Contains, pName)
- c.Assert(out, checker.Contains, pTag)
- c.Assert(out, checker.Contains, "false")
- // Remove
- out, _, err = dockerCmdWithError("plugin", "remove", id[:5])
- c.Assert(err, checker.IsNil)
- // List returns none
- out, _, err = dockerCmdWithError("plugin", "ls")
- c.Assert(err, checker.IsNil)
- c.Assert(out, checker.Not(checker.Contains), pName)
- c.Assert(out, checker.Not(checker.Contains), pTag)
- }
- func (s *DockerSuite) TestPluginListDefaultFormat(c *check.C) {
- testRequires(c, DaemonIsLinux, Network, IsAmd64)
- config, err := ioutil.TempDir("", "config-file-")
- c.Assert(err, check.IsNil)
- defer os.RemoveAll(config)
- err = ioutil.WriteFile(filepath.Join(config, "config.json"), []byte(`{"pluginsFormat": "raw"}`), 0644)
- c.Assert(err, check.IsNil)
- out, _ := dockerCmd(c, "plugin", "install", "--grant-all-permissions", pName)
- c.Assert(strings.TrimSpace(out), checker.Contains, pName)
- out, _ = dockerCmd(c, "plugin", "inspect", "--format", "{{.ID}}", pNameWithTag)
- id := strings.TrimSpace(out)
- // We expect the format to be in `raw + --no-trunc`
- expectedOutput := fmt.Sprintf(`plugin_id: %s
- name: %s
- description: A sample volume plugin for Docker
- enabled: true`, id, pNameWithTag)
- out, _ = dockerCmd(c, "--config", config, "plugin", "ls", "--no-trunc")
- c.Assert(strings.TrimSpace(out), checker.Contains, expectedOutput)
- }
- func (s *DockerSuite) TestPluginUpgrade(c *check.C) {
- testRequires(c, DaemonIsLinux, Network, SameHostDaemon, IsAmd64)
- plugin := "cpuguy83/docker-volume-driver-plugin-local:latest"
- pluginV2 := "cpuguy83/docker-volume-driver-plugin-local:v2"
- dockerCmd(c, "plugin", "install", "--grant-all-permissions", plugin)
- dockerCmd(c, "volume", "create", "--driver", plugin, "bananas")
- dockerCmd(c, "run", "--rm", "-v", "bananas:/apple", "busybox", "sh", "-c", "touch /apple/core")
- out, _, err := dockerCmdWithError("plugin", "upgrade", "--grant-all-permissions", plugin, pluginV2)
- c.Assert(err, checker.NotNil, check.Commentf(out))
- c.Assert(out, checker.Contains, "disabled before upgrading")
- out, _ = dockerCmd(c, "plugin", "inspect", "--format={{.ID}}", plugin)
- id := strings.TrimSpace(out)
- // make sure "v2" does not exists
- _, err = os.Stat(filepath.Join(testEnv.DockerBasePath(), "plugins", id, "rootfs", "v2"))
- c.Assert(os.IsNotExist(err), checker.True, check.Commentf(out))
- dockerCmd(c, "plugin", "disable", "-f", plugin)
- dockerCmd(c, "plugin", "upgrade", "--grant-all-permissions", "--skip-remote-check", plugin, pluginV2)
- // make sure "v2" file exists
- _, err = os.Stat(filepath.Join(testEnv.DockerBasePath(), "plugins", id, "rootfs", "v2"))
- c.Assert(err, checker.IsNil)
- dockerCmd(c, "plugin", "enable", plugin)
- dockerCmd(c, "volume", "inspect", "bananas")
- dockerCmd(c, "run", "--rm", "-v", "bananas:/apple", "busybox", "sh", "-c", "ls -lh /apple/core")
- }
|