sandbox_linux_test.go 5.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234
  1. package osl
  2. import (
  3. "crypto/rand"
  4. "encoding/hex"
  5. "io"
  6. "net"
  7. "os"
  8. "path/filepath"
  9. "runtime"
  10. "syscall"
  11. "testing"
  12. "time"
  13. "github.com/docker/libnetwork/testutils"
  14. "github.com/docker/libnetwork/types"
  15. "github.com/vishvananda/netlink"
  16. "github.com/vishvananda/netlink/nl"
  17. "github.com/vishvananda/netns"
  18. )
  19. const (
  20. vethName1 = "wierdlongname1"
  21. vethName2 = "wierdlongname2"
  22. vethName3 = "wierdlongname3"
  23. vethName4 = "wierdlongname4"
  24. sboxIfaceName = "containername"
  25. )
  26. func generateRandomName(prefix string, size int) (string, error) {
  27. id := make([]byte, 32)
  28. if _, err := io.ReadFull(rand.Reader, id); err != nil {
  29. return "", err
  30. }
  31. return prefix + hex.EncodeToString(id)[:size], nil
  32. }
  33. func newKey(t *testing.T) (string, error) {
  34. name, err := generateRandomName("netns", 12)
  35. if err != nil {
  36. return "", err
  37. }
  38. name = filepath.Join("/tmp", name)
  39. if _, err := os.Create(name); err != nil {
  40. return "", err
  41. }
  42. // Set the rpmCleanupPeriod to be low to make the test run quicker
  43. gpmLock.Lock()
  44. gpmCleanupPeriod = 2 * time.Second
  45. gpmLock.Unlock()
  46. return name, nil
  47. }
  48. func newInfo(t *testing.T) (Sandbox, error) {
  49. veth := &netlink.Veth{
  50. LinkAttrs: netlink.LinkAttrs{Name: vethName1, TxQLen: 0},
  51. PeerName: vethName2}
  52. if err := netlink.LinkAdd(veth); err != nil {
  53. return nil, err
  54. }
  55. // Store the sandbox side pipe interface
  56. // This is needed for cleanup on DeleteEndpoint()
  57. intf1 := &nwIface{}
  58. intf1.srcName = vethName2
  59. intf1.dstName = sboxIfaceName
  60. ip4, addr, err := net.ParseCIDR("192.168.1.100/24")
  61. if err != nil {
  62. return nil, err
  63. }
  64. intf1.address = addr
  65. intf1.address.IP = ip4
  66. // ip6, addrv6, err := net.ParseCIDR("2001:DB8::ABCD/48")
  67. ip6, addrv6, err := net.ParseCIDR("fe80::2/64")
  68. if err != nil {
  69. return nil, err
  70. }
  71. intf1.addressIPv6 = addrv6
  72. intf1.addressIPv6.IP = ip6
  73. _, route, err := net.ParseCIDR("192.168.2.1/32")
  74. if err != nil {
  75. return nil, err
  76. }
  77. intf1.routes = []*net.IPNet{route}
  78. intf2 := &nwIface{}
  79. intf2.srcName = "testbridge"
  80. intf2.dstName = sboxIfaceName
  81. intf2.bridge = true
  82. veth = &netlink.Veth{
  83. LinkAttrs: netlink.LinkAttrs{Name: vethName3, TxQLen: 0},
  84. PeerName: vethName4}
  85. if err := netlink.LinkAdd(veth); err != nil {
  86. return nil, err
  87. }
  88. intf3 := &nwIface{}
  89. intf3.srcName = vethName4
  90. intf3.dstName = sboxIfaceName
  91. intf3.master = "testbridge"
  92. info := &networkNamespace{iFaces: []*nwIface{intf1, intf2, intf3}}
  93. info.gw = net.ParseIP("192.168.1.1")
  94. // sinfo.GatewayIPv6 = net.ParseIP("2001:DB8::1")
  95. info.gwv6 = net.ParseIP("fe80::1")
  96. return info, nil
  97. }
  98. func verifySandbox(t *testing.T, s Sandbox, ifaceSuffixes []string) {
  99. _, ok := s.(*networkNamespace)
  100. if !ok {
  101. t.Fatalf("The sandox interface returned is not of type networkNamespace")
  102. }
  103. origns, err := netns.Get()
  104. if err != nil {
  105. t.Fatalf("Could not get the current netns: %v", err)
  106. }
  107. defer origns.Close()
  108. f, err := os.OpenFile(s.Key(), os.O_RDONLY, 0)
  109. if err != nil {
  110. t.Fatalf("Failed top open network namespace path %q: %v", s.Key(), err)
  111. }
  112. defer f.Close()
  113. runtime.LockOSThread()
  114. defer runtime.UnlockOSThread()
  115. nsFD := f.Fd()
  116. if err = netns.Set(netns.NsHandle(nsFD)); err != nil {
  117. t.Fatalf("Setting to the namespace pointed to by the sandbox %s failed: %v", s.Key(), err)
  118. }
  119. defer netns.Set(origns)
  120. for _, suffix := range ifaceSuffixes {
  121. _, err = netlink.LinkByName(sboxIfaceName + suffix)
  122. if err != nil {
  123. t.Fatalf("Could not find the interface %s inside the sandbox: %v",
  124. sboxIfaceName+suffix, err)
  125. }
  126. }
  127. }
  128. func verifyCleanup(t *testing.T, s Sandbox, wait bool) {
  129. if wait {
  130. time.Sleep(time.Duration(gpmCleanupPeriod * 2))
  131. }
  132. if _, err := os.Stat(s.Key()); err == nil {
  133. if wait {
  134. t.Fatalf("The sandbox path %s is not getting cleaned up even after twice the cleanup period", s.Key())
  135. } else {
  136. t.Fatalf("The sandbox path %s is not cleaned up after running gc", s.Key())
  137. }
  138. }
  139. }
  140. func TestScanStatistics(t *testing.T) {
  141. data :=
  142. "Inter-| Receive | Transmit\n" +
  143. " face |bytes packets errs drop fifo frame compressed multicast|bytes packets errs drop fifo colls carrier compressed\n" +
  144. " eth0: 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0\n" +
  145. " wlan0: 7787685 11141 0 0 0 0 0 0 1681390 7220 0 0 0 0 0 0\n" +
  146. " lo: 783782 1853 0 0 0 0 0 0 783782 1853 0 0 0 0 0 0\n" +
  147. "lxcbr0: 0 0 0 0 0 0 0 0 9006 61 0 0 0 0 0 0\n"
  148. i := &types.InterfaceStatistics{}
  149. if err := scanInterfaceStats(data, "wlan0", i); err != nil {
  150. t.Fatal(err)
  151. }
  152. if i.TxBytes != 1681390 || i.TxPackets != 7220 || i.RxBytes != 7787685 || i.RxPackets != 11141 {
  153. t.Fatalf("Error scanning the statistics")
  154. }
  155. if err := scanInterfaceStats(data, "lxcbr0", i); err != nil {
  156. t.Fatal(err)
  157. }
  158. if i.TxBytes != 9006 || i.TxPackets != 61 || i.RxBytes != 0 || i.RxPackets != 0 {
  159. t.Fatalf("Error scanning the statistics")
  160. }
  161. }
  162. func TestDisableIPv6DAD(t *testing.T) {
  163. if testutils.RunningOnCircleCI() {
  164. t.Skipf("Skipping as not supported on CIRCLE CI kernel")
  165. }
  166. defer testutils.SetupTestOSContext(t)()
  167. ipv6, _ := types.ParseCIDR("2001:db8::44/64")
  168. iface := &nwIface{addressIPv6: ipv6}
  169. veth := &netlink.Veth{
  170. LinkAttrs: netlink.LinkAttrs{Name: "sideA"},
  171. PeerName: "sideB",
  172. }
  173. err := netlink.LinkAdd(veth)
  174. if err != nil {
  175. t.Fatal(err)
  176. }
  177. link, err := netlink.LinkByName("sideA")
  178. if err != nil {
  179. t.Fatal(err)
  180. }
  181. err = setInterfaceIPv6(link, iface)
  182. if err != nil {
  183. t.Fatal(err)
  184. }
  185. addrList, err := netlink.AddrList(link, nl.FAMILY_V6)
  186. if err != nil {
  187. t.Fatal(err)
  188. }
  189. if addrList[0].Flags&syscall.IFA_F_NODAD == 0 {
  190. t.Fatalf("Unexpected interface flags: 0x%x. Expected to contain 0x%x", addrList[0].Flags, syscall.IFA_F_NODAD)
  191. }
  192. }