docker_cli_swarm_test.go 2.5 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576
  1. // +build !windows
  2. package main
  3. import (
  4. "encoding/json"
  5. "time"
  6. "github.com/docker/docker/pkg/integration/checker"
  7. "github.com/docker/engine-api/types/swarm"
  8. "github.com/go-check/check"
  9. )
  10. func (s *DockerSwarmSuite) TestSwarmUpdate(c *check.C) {
  11. d := s.AddDaemon(c, true, true)
  12. getSpec := func() swarm.Spec {
  13. out, err := d.Cmd("swarm", "inspect")
  14. c.Assert(err, checker.IsNil)
  15. var sw []swarm.Swarm
  16. c.Assert(json.Unmarshal([]byte(out), &sw), checker.IsNil)
  17. c.Assert(len(sw), checker.Equals, 1)
  18. return sw[0].Spec
  19. }
  20. out, err := d.Cmd("swarm", "update", "--cert-expiry", "30h", "--dispatcher-heartbeat", "11s", "--auto-accept", "manager", "--auto-accept", "worker", "--secret", "foo")
  21. c.Assert(err, checker.IsNil, check.Commentf("out: %v", out))
  22. spec := getSpec()
  23. c.Assert(spec.CAConfig.NodeCertExpiry, checker.Equals, 30*time.Hour)
  24. c.Assert(spec.Dispatcher.HeartbeatPeriod, checker.Equals, uint64(11*time.Second))
  25. c.Assert(spec.AcceptancePolicy.Policies, checker.HasLen, 2)
  26. for _, p := range spec.AcceptancePolicy.Policies {
  27. c.Assert(p.Autoaccept, checker.Equals, true)
  28. c.Assert(p.Secret, checker.NotNil)
  29. c.Assert(*p.Secret, checker.Not(checker.Equals), "")
  30. }
  31. out, err = d.Cmd("swarm", "update", "--auto-accept", "none")
  32. c.Assert(err, checker.IsNil, check.Commentf("out: %v", out))
  33. spec = getSpec()
  34. c.Assert(spec.CAConfig.NodeCertExpiry, checker.Equals, 30*time.Hour)
  35. c.Assert(spec.Dispatcher.HeartbeatPeriod, checker.Equals, uint64(11*time.Second))
  36. c.Assert(spec.AcceptancePolicy.Policies, checker.HasLen, 2)
  37. for _, p := range spec.AcceptancePolicy.Policies {
  38. c.Assert(p.Autoaccept, checker.Equals, false)
  39. // secret is still set
  40. c.Assert(p.Secret, checker.NotNil)
  41. c.Assert(*p.Secret, checker.Not(checker.Equals), "")
  42. }
  43. out, err = d.Cmd("swarm", "update", "--auto-accept", "manager", "--secret", "")
  44. c.Assert(err, checker.IsNil, check.Commentf("out: %v", out))
  45. spec = getSpec()
  46. c.Assert(spec.AcceptancePolicy.Policies, checker.HasLen, 2)
  47. for _, p := range spec.AcceptancePolicy.Policies {
  48. c.Assert(p.Autoaccept, checker.Equals, p.Role == swarm.NodeRoleManager)
  49. // secret has been removed
  50. c.Assert(p.Secret, checker.IsNil)
  51. }
  52. // setting anything under 30m for cert-expiry is not allowed
  53. out, err = d.Cmd("swarm", "update", "--cert-expiry", "15m")
  54. c.Assert(err, checker.NotNil)
  55. c.Assert(out, checker.Contains, "minimum certificate expiry time")
  56. spec = getSpec()
  57. c.Assert(spec.CAConfig.NodeCertExpiry, checker.Equals, 30*time.Hour)
  58. }