docker_cli_plugins_test.go 17 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461
  1. package main
  2. import (
  3. "fmt"
  4. "io/ioutil"
  5. "os"
  6. "path/filepath"
  7. "strings"
  8. "github.com/docker/docker/integration-cli/checker"
  9. icmd "github.com/docker/docker/pkg/testutil/cmd"
  10. "github.com/go-check/check"
  11. )
  12. var (
  13. pluginProcessName = "sample-volume-plugin"
  14. pName = "tiborvass/sample-volume-plugin"
  15. npName = "tiborvass/test-docker-netplugin"
  16. pTag = "latest"
  17. pNameWithTag = pName + ":" + pTag
  18. npNameWithTag = npName + ":" + pTag
  19. )
  20. func (s *DockerSuite) TestPluginBasicOps(c *check.C) {
  21. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  22. _, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", pNameWithTag)
  23. c.Assert(err, checker.IsNil)
  24. out, _, err := dockerCmdWithError("plugin", "ls")
  25. c.Assert(err, checker.IsNil)
  26. c.Assert(out, checker.Contains, pName)
  27. c.Assert(out, checker.Contains, pTag)
  28. c.Assert(out, checker.Contains, "true")
  29. id, _, err := dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", pNameWithTag)
  30. id = strings.TrimSpace(id)
  31. c.Assert(err, checker.IsNil)
  32. out, _, err = dockerCmdWithError("plugin", "remove", pNameWithTag)
  33. c.Assert(err, checker.NotNil)
  34. c.Assert(out, checker.Contains, "is enabled")
  35. _, _, err = dockerCmdWithError("plugin", "disable", pNameWithTag)
  36. c.Assert(err, checker.IsNil)
  37. out, _, err = dockerCmdWithError("plugin", "remove", pNameWithTag)
  38. c.Assert(err, checker.IsNil)
  39. c.Assert(out, checker.Contains, pNameWithTag)
  40. _, err = os.Stat(filepath.Join(testEnv.DockerBasePath(), "plugins", id))
  41. if !os.IsNotExist(err) {
  42. c.Fatal(err)
  43. }
  44. }
  45. func (s *DockerSuite) TestPluginForceRemove(c *check.C) {
  46. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  47. out, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", pNameWithTag)
  48. c.Assert(err, checker.IsNil)
  49. out, _, err = dockerCmdWithError("plugin", "remove", pNameWithTag)
  50. c.Assert(out, checker.Contains, "is enabled")
  51. out, _, err = dockerCmdWithError("plugin", "remove", "--force", pNameWithTag)
  52. c.Assert(err, checker.IsNil)
  53. c.Assert(out, checker.Contains, pNameWithTag)
  54. }
  55. func (s *DockerSuite) TestPluginActive(c *check.C) {
  56. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  57. _, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", pNameWithTag)
  58. c.Assert(err, checker.IsNil)
  59. _, _, err = dockerCmdWithError("volume", "create", "-d", pNameWithTag, "--name", "testvol1")
  60. c.Assert(err, checker.IsNil)
  61. out, _, err := dockerCmdWithError("plugin", "disable", pNameWithTag)
  62. c.Assert(out, checker.Contains, "in use")
  63. _, _, err = dockerCmdWithError("volume", "rm", "testvol1")
  64. c.Assert(err, checker.IsNil)
  65. _, _, err = dockerCmdWithError("plugin", "disable", pNameWithTag)
  66. c.Assert(err, checker.IsNil)
  67. out, _, err = dockerCmdWithError("plugin", "remove", pNameWithTag)
  68. c.Assert(err, checker.IsNil)
  69. c.Assert(out, checker.Contains, pNameWithTag)
  70. }
  71. func (s *DockerSuite) TestPluginActiveNetwork(c *check.C) {
  72. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  73. out, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", npNameWithTag)
  74. c.Assert(err, checker.IsNil)
  75. out, _, err = dockerCmdWithError("network", "create", "-d", npNameWithTag, "test")
  76. c.Assert(err, checker.IsNil)
  77. nID := strings.TrimSpace(out)
  78. out, _, err = dockerCmdWithError("plugin", "remove", npNameWithTag)
  79. c.Assert(out, checker.Contains, "is in use")
  80. _, _, err = dockerCmdWithError("network", "rm", nID)
  81. c.Assert(err, checker.IsNil)
  82. out, _, err = dockerCmdWithError("plugin", "remove", npNameWithTag)
  83. c.Assert(out, checker.Contains, "is enabled")
  84. _, _, err = dockerCmdWithError("plugin", "disable", npNameWithTag)
  85. c.Assert(err, checker.IsNil)
  86. out, _, err = dockerCmdWithError("plugin", "remove", npNameWithTag)
  87. c.Assert(err, checker.IsNil)
  88. c.Assert(out, checker.Contains, npNameWithTag)
  89. }
  90. func (s *DockerSuite) TestPluginInstallDisable(c *check.C) {
  91. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  92. out, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", "--disable", pName)
  93. c.Assert(err, checker.IsNil)
  94. c.Assert(strings.TrimSpace(out), checker.Contains, pName)
  95. out, _, err = dockerCmdWithError("plugin", "ls")
  96. c.Assert(err, checker.IsNil)
  97. c.Assert(out, checker.Contains, "false")
  98. out, _, err = dockerCmdWithError("plugin", "enable", pName)
  99. c.Assert(err, checker.IsNil)
  100. c.Assert(strings.TrimSpace(out), checker.Contains, pName)
  101. out, _, err = dockerCmdWithError("plugin", "disable", pName)
  102. c.Assert(err, checker.IsNil)
  103. c.Assert(strings.TrimSpace(out), checker.Contains, pName)
  104. out, _, err = dockerCmdWithError("plugin", "remove", pName)
  105. c.Assert(err, checker.IsNil)
  106. c.Assert(strings.TrimSpace(out), checker.Contains, pName)
  107. }
  108. func (s *DockerSuite) TestPluginInstallDisableVolumeLs(c *check.C) {
  109. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  110. out, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", "--disable", pName)
  111. c.Assert(err, checker.IsNil)
  112. c.Assert(strings.TrimSpace(out), checker.Contains, pName)
  113. dockerCmd(c, "volume", "ls")
  114. }
  115. func (s *DockerSuite) TestPluginSet(c *check.C) {
  116. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  117. out, _ := dockerCmd(c, "plugin", "install", "--grant-all-permissions", "--disable", pName)
  118. c.Assert(strings.TrimSpace(out), checker.Contains, pName)
  119. env, _ := dockerCmd(c, "plugin", "inspect", "-f", "{{.Settings.Env}}", pName)
  120. c.Assert(strings.TrimSpace(env), checker.Equals, "[DEBUG=0]")
  121. dockerCmd(c, "plugin", "set", pName, "DEBUG=1")
  122. env, _ = dockerCmd(c, "plugin", "inspect", "-f", "{{.Settings.Env}}", pName)
  123. c.Assert(strings.TrimSpace(env), checker.Equals, "[DEBUG=1]")
  124. }
  125. func (s *DockerSuite) TestPluginInstallArgs(c *check.C) {
  126. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  127. out, _ := dockerCmd(c, "plugin", "install", "--grant-all-permissions", "--disable", pName, "DEBUG=1")
  128. c.Assert(strings.TrimSpace(out), checker.Contains, pName)
  129. env, _ := dockerCmd(c, "plugin", "inspect", "-f", "{{.Settings.Env}}", pName)
  130. c.Assert(strings.TrimSpace(env), checker.Equals, "[DEBUG=1]")
  131. }
  132. func (s *DockerRegistrySuite) TestPluginInstallImage(c *check.C) {
  133. testRequires(c, DaemonIsLinux, IsAmd64)
  134. repoName := fmt.Sprintf("%v/dockercli/busybox", privateRegistryURL)
  135. // tag the image to upload it to the private registry
  136. dockerCmd(c, "tag", "busybox", repoName)
  137. // push the image to the registry
  138. dockerCmd(c, "push", repoName)
  139. out, _, err := dockerCmdWithError("plugin", "install", repoName)
  140. c.Assert(err, checker.NotNil)
  141. c.Assert(out, checker.Contains, "target is image")
  142. }
  143. func (s *DockerSuite) TestPluginEnableDisableNegative(c *check.C) {
  144. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  145. out, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", pName)
  146. c.Assert(err, checker.IsNil)
  147. c.Assert(strings.TrimSpace(out), checker.Contains, pName)
  148. out, _, err = dockerCmdWithError("plugin", "enable", pName)
  149. c.Assert(err, checker.NotNil)
  150. c.Assert(strings.TrimSpace(out), checker.Contains, "already enabled")
  151. _, _, err = dockerCmdWithError("plugin", "disable", pName)
  152. c.Assert(err, checker.IsNil)
  153. out, _, err = dockerCmdWithError("plugin", "disable", pName)
  154. c.Assert(err, checker.NotNil)
  155. c.Assert(strings.TrimSpace(out), checker.Contains, "already disabled")
  156. _, _, err = dockerCmdWithError("plugin", "remove", pName)
  157. c.Assert(err, checker.IsNil)
  158. }
  159. func (s *DockerSuite) TestPluginCreate(c *check.C) {
  160. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  161. name := "foo/bar-driver"
  162. temp, err := ioutil.TempDir("", "foo")
  163. c.Assert(err, checker.IsNil)
  164. defer os.RemoveAll(temp)
  165. data := `{"description": "foo plugin"}`
  166. err = ioutil.WriteFile(filepath.Join(temp, "config.json"), []byte(data), 0644)
  167. c.Assert(err, checker.IsNil)
  168. err = os.MkdirAll(filepath.Join(temp, "rootfs"), 0700)
  169. c.Assert(err, checker.IsNil)
  170. out, _, err := dockerCmdWithError("plugin", "create", name, temp)
  171. c.Assert(err, checker.IsNil)
  172. c.Assert(out, checker.Contains, name)
  173. out, _, err = dockerCmdWithError("plugin", "ls")
  174. c.Assert(err, checker.IsNil)
  175. c.Assert(out, checker.Contains, name)
  176. out, _, err = dockerCmdWithError("plugin", "create", name, temp)
  177. c.Assert(err, checker.NotNil)
  178. c.Assert(out, checker.Contains, "already exist")
  179. out, _, err = dockerCmdWithError("plugin", "ls")
  180. c.Assert(err, checker.IsNil)
  181. c.Assert(out, checker.Contains, name)
  182. // The output will consists of one HEADER line and one line of foo/bar-driver
  183. c.Assert(len(strings.Split(strings.TrimSpace(out), "\n")), checker.Equals, 2)
  184. }
  185. func (s *DockerSuite) TestPluginInspect(c *check.C) {
  186. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  187. _, _, err := dockerCmdWithError("plugin", "install", "--grant-all-permissions", pNameWithTag)
  188. c.Assert(err, checker.IsNil)
  189. out, _, err := dockerCmdWithError("plugin", "ls")
  190. c.Assert(err, checker.IsNil)
  191. c.Assert(out, checker.Contains, pName)
  192. c.Assert(out, checker.Contains, pTag)
  193. c.Assert(out, checker.Contains, "true")
  194. // Find the ID first
  195. out, _, err = dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", pNameWithTag)
  196. c.Assert(err, checker.IsNil)
  197. id := strings.TrimSpace(out)
  198. c.Assert(id, checker.Not(checker.Equals), "")
  199. // Long form
  200. out, _, err = dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", id)
  201. c.Assert(err, checker.IsNil)
  202. c.Assert(strings.TrimSpace(out), checker.Equals, id)
  203. // Short form
  204. out, _, err = dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", id[:5])
  205. c.Assert(err, checker.IsNil)
  206. c.Assert(strings.TrimSpace(out), checker.Equals, id)
  207. // Name with tag form
  208. out, _, err = dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", pNameWithTag)
  209. c.Assert(err, checker.IsNil)
  210. c.Assert(strings.TrimSpace(out), checker.Equals, id)
  211. // Name without tag form
  212. out, _, err = dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", pName)
  213. c.Assert(err, checker.IsNil)
  214. c.Assert(strings.TrimSpace(out), checker.Equals, id)
  215. _, _, err = dockerCmdWithError("plugin", "disable", pNameWithTag)
  216. c.Assert(err, checker.IsNil)
  217. out, _, err = dockerCmdWithError("plugin", "remove", pNameWithTag)
  218. c.Assert(err, checker.IsNil)
  219. c.Assert(out, checker.Contains, pNameWithTag)
  220. // After remove nothing should be found
  221. _, _, err = dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", id[:5])
  222. c.Assert(err, checker.NotNil)
  223. }
  224. // Test case for https://github.com/docker/docker/pull/29186#discussion_r91277345
  225. func (s *DockerSuite) TestPluginInspectOnWindows(c *check.C) {
  226. // This test should work on Windows only
  227. testRequires(c, DaemonIsWindows)
  228. out, _, err := dockerCmdWithError("plugin", "inspect", "foobar")
  229. c.Assert(err, checker.NotNil)
  230. c.Assert(out, checker.Contains, "plugins are not supported on this platform")
  231. c.Assert(err.Error(), checker.Contains, "plugins are not supported on this platform")
  232. }
  233. func (s *DockerTrustSuite) TestPluginTrustedInstall(c *check.C) {
  234. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  235. trustedName := s.setupTrustedplugin(c, pNameWithTag, "trusted-plugin-install")
  236. icmd.RunCmd(icmd.Command(dockerBinary, "plugin", "install", "--grant-all-permissions", trustedName), trustedCmd).Assert(c, icmd.Expected{
  237. Out: trustedName,
  238. })
  239. out, _, err := dockerCmdWithError("plugin", "ls")
  240. c.Assert(err, checker.IsNil)
  241. c.Assert(out, checker.Contains, "true")
  242. out, _, err = dockerCmdWithError("plugin", "disable", trustedName)
  243. c.Assert(err, checker.IsNil)
  244. c.Assert(strings.TrimSpace(out), checker.Contains, trustedName)
  245. out, _, err = dockerCmdWithError("plugin", "enable", trustedName)
  246. c.Assert(err, checker.IsNil)
  247. c.Assert(strings.TrimSpace(out), checker.Contains, trustedName)
  248. out, _, err = dockerCmdWithError("plugin", "rm", "-f", trustedName)
  249. c.Assert(err, checker.IsNil)
  250. c.Assert(strings.TrimSpace(out), checker.Contains, trustedName)
  251. // Try untrusted pull to ensure we pushed the tag to the registry
  252. icmd.RunCmd(icmd.Command(dockerBinary, "plugin", "install", "--disable-content-trust=true", "--grant-all-permissions", trustedName), trustedCmd).Assert(c, SuccessDownloaded)
  253. out, _, err = dockerCmdWithError("plugin", "ls")
  254. c.Assert(err, checker.IsNil)
  255. c.Assert(out, checker.Contains, "true")
  256. }
  257. func (s *DockerTrustSuite) TestPluginUntrustedInstall(c *check.C) {
  258. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  259. pluginName := fmt.Sprintf("%v/dockercliuntrusted/plugintest:latest", privateRegistryURL)
  260. // install locally and push to private registry
  261. dockerCmd(c, "plugin", "install", "--grant-all-permissions", "--alias", pluginName, pNameWithTag)
  262. dockerCmd(c, "plugin", "push", pluginName)
  263. dockerCmd(c, "plugin", "rm", "-f", pluginName)
  264. // Try trusted install on untrusted plugin
  265. icmd.RunCmd(icmd.Command(dockerBinary, "plugin", "install", "--grant-all-permissions", pluginName), trustedCmd).Assert(c, icmd.Expected{
  266. ExitCode: 1,
  267. Err: "Error: remote trust data does not exist",
  268. })
  269. }
  270. func (s *DockerSuite) TestPluginIDPrefix(c *check.C) {
  271. testRequires(c, DaemonIsLinux, IsAmd64, Network)
  272. _, _, err := dockerCmdWithError("plugin", "install", "--disable", "--grant-all-permissions", pNameWithTag)
  273. c.Assert(err, checker.IsNil)
  274. // Find ID first
  275. id, _, err := dockerCmdWithError("plugin", "inspect", "-f", "{{.Id}}", pNameWithTag)
  276. id = strings.TrimSpace(id)
  277. c.Assert(err, checker.IsNil)
  278. // List current state
  279. out, _, err := dockerCmdWithError("plugin", "ls")
  280. c.Assert(err, checker.IsNil)
  281. c.Assert(out, checker.Contains, pName)
  282. c.Assert(out, checker.Contains, pTag)
  283. c.Assert(out, checker.Contains, "false")
  284. env, _ := dockerCmd(c, "plugin", "inspect", "-f", "{{.Settings.Env}}", id[:5])
  285. c.Assert(strings.TrimSpace(env), checker.Equals, "[DEBUG=0]")
  286. dockerCmd(c, "plugin", "set", id[:5], "DEBUG=1")
  287. env, _ = dockerCmd(c, "plugin", "inspect", "-f", "{{.Settings.Env}}", id[:5])
  288. c.Assert(strings.TrimSpace(env), checker.Equals, "[DEBUG=1]")
  289. // Enable
  290. _, _, err = dockerCmdWithError("plugin", "enable", id[:5])
  291. c.Assert(err, checker.IsNil)
  292. out, _, err = dockerCmdWithError("plugin", "ls")
  293. c.Assert(err, checker.IsNil)
  294. c.Assert(out, checker.Contains, pName)
  295. c.Assert(out, checker.Contains, pTag)
  296. c.Assert(out, checker.Contains, "true")
  297. // Disable
  298. _, _, err = dockerCmdWithError("plugin", "disable", id[:5])
  299. c.Assert(err, checker.IsNil)
  300. out, _, err = dockerCmdWithError("plugin", "ls")
  301. c.Assert(err, checker.IsNil)
  302. c.Assert(out, checker.Contains, pName)
  303. c.Assert(out, checker.Contains, pTag)
  304. c.Assert(out, checker.Contains, "false")
  305. // Remove
  306. out, _, err = dockerCmdWithError("plugin", "remove", id[:5])
  307. c.Assert(err, checker.IsNil)
  308. // List returns none
  309. out, _, err = dockerCmdWithError("plugin", "ls")
  310. c.Assert(err, checker.IsNil)
  311. c.Assert(out, checker.Not(checker.Contains), pName)
  312. c.Assert(out, checker.Not(checker.Contains), pTag)
  313. }
  314. func (s *DockerSuite) TestPluginListDefaultFormat(c *check.C) {
  315. testRequires(c, DaemonIsLinux, Network, IsAmd64)
  316. config, err := ioutil.TempDir("", "config-file-")
  317. c.Assert(err, check.IsNil)
  318. defer os.RemoveAll(config)
  319. err = ioutil.WriteFile(filepath.Join(config, "config.json"), []byte(`{"pluginsFormat": "raw"}`), 0644)
  320. c.Assert(err, check.IsNil)
  321. out, _ := dockerCmd(c, "plugin", "install", "--grant-all-permissions", pName)
  322. c.Assert(strings.TrimSpace(out), checker.Contains, pName)
  323. out, _ = dockerCmd(c, "plugin", "inspect", "--format", "{{.ID}}", pNameWithTag)
  324. id := strings.TrimSpace(out)
  325. // We expect the format to be in `raw + --no-trunc`
  326. expectedOutput := fmt.Sprintf(`plugin_id: %s
  327. name: %s
  328. description: A sample volume plugin for Docker
  329. enabled: true`, id, pNameWithTag)
  330. out, _ = dockerCmd(c, "--config", config, "plugin", "ls", "--no-trunc")
  331. c.Assert(strings.TrimSpace(out), checker.Contains, expectedOutput)
  332. }
  333. func (s *DockerSuite) TestPluginUpgrade(c *check.C) {
  334. testRequires(c, DaemonIsLinux, Network, SameHostDaemon, IsAmd64)
  335. plugin := "cpuguy83/docker-volume-driver-plugin-local:latest"
  336. pluginV2 := "cpuguy83/docker-volume-driver-plugin-local:v2"
  337. dockerCmd(c, "plugin", "install", "--grant-all-permissions", plugin)
  338. dockerCmd(c, "volume", "create", "--driver", plugin, "bananas")
  339. dockerCmd(c, "run", "--rm", "-v", "bananas:/apple", "busybox", "sh", "-c", "touch /apple/core")
  340. out, _, err := dockerCmdWithError("plugin", "upgrade", "--grant-all-permissions", plugin, pluginV2)
  341. c.Assert(err, checker.NotNil, check.Commentf(out))
  342. c.Assert(out, checker.Contains, "disabled before upgrading")
  343. out, _ = dockerCmd(c, "plugin", "inspect", "--format={{.ID}}", plugin)
  344. id := strings.TrimSpace(out)
  345. // make sure "v2" does not exists
  346. _, err = os.Stat(filepath.Join(testEnv.DockerBasePath(), "plugins", id, "rootfs", "v2"))
  347. c.Assert(os.IsNotExist(err), checker.True, check.Commentf(out))
  348. dockerCmd(c, "plugin", "disable", "-f", plugin)
  349. dockerCmd(c, "plugin", "upgrade", "--grant-all-permissions", "--skip-remote-check", plugin, pluginV2)
  350. // make sure "v2" file exists
  351. _, err = os.Stat(filepath.Join(testEnv.DockerBasePath(), "plugins", id, "rootfs", "v2"))
  352. c.Assert(err, checker.IsNil)
  353. dockerCmd(c, "plugin", "enable", plugin)
  354. dockerCmd(c, "volume", "inspect", "bananas")
  355. dockerCmd(c, "run", "--rm", "-v", "bananas:/apple", "busybox", "sh", "-c", "ls -lh /apple/core")
  356. }