ctl_v2_test.go 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539
  1. // Copyright 2016 The etcd Authors
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. //
  7. // http://www.apache.org/licenses/LICENSE-2.0
  8. //
  9. // Unless required by applicable law or agreed to in writing, software
  10. // distributed under the License is distributed on an "AS IS" BASIS,
  11. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. // See the License for the specific language governing permissions and
  13. // limitations under the License.
  14. package e2e
  15. import (
  16. "io/ioutil"
  17. "os"
  18. "strings"
  19. "testing"
  20. "time"
  21. "github.com/coreos/etcd/pkg/fileutil"
  22. "github.com/coreos/etcd/pkg/testutil"
  23. )
  24. func TestCtlV2Set(t *testing.T) { testCtlV2Set(t, &configNoTLS, false) }
  25. func TestCtlV2SetQuorum(t *testing.T) { testCtlV2Set(t, &configNoTLS, true) }
  26. func TestCtlV2SetClientTLS(t *testing.T) { testCtlV2Set(t, &configClientTLS, false) }
  27. func TestCtlV2SetPeerTLS(t *testing.T) { testCtlV2Set(t, &configPeerTLS, false) }
  28. func TestCtlV2SetTLS(t *testing.T) { testCtlV2Set(t, &configTLS, false) }
  29. func testCtlV2Set(t *testing.T, cfg *etcdProcessClusterConfig, quorum bool) {
  30. os.Setenv("ETCDCTL_API", "2")
  31. defer os.Unsetenv("ETCDCTL_API")
  32. defer testutil.AfterTest(t)
  33. epc := setupEtcdctlTest(t, cfg, quorum)
  34. defer func() {
  35. if errC := epc.Close(); errC != nil {
  36. t.Fatalf("error closing etcd processes (%v)", errC)
  37. }
  38. }()
  39. key, value := "foo", "bar"
  40. if err := etcdctlSet(epc, key, value); err != nil {
  41. t.Fatalf("failed set (%v)", err)
  42. }
  43. if err := etcdctlGet(epc, key, value, quorum); err != nil {
  44. t.Fatalf("failed get (%v)", err)
  45. }
  46. }
  47. func TestCtlV2Mk(t *testing.T) { testCtlV2Mk(t, &configNoTLS, false) }
  48. func TestCtlV2MkQuorum(t *testing.T) { testCtlV2Mk(t, &configNoTLS, true) }
  49. func TestCtlV2MkTLS(t *testing.T) { testCtlV2Mk(t, &configTLS, false) }
  50. func testCtlV2Mk(t *testing.T, cfg *etcdProcessClusterConfig, quorum bool) {
  51. os.Setenv("ETCDCTL_API", "2")
  52. defer os.Unsetenv("ETCDCTL_API")
  53. defer testutil.AfterTest(t)
  54. epc := setupEtcdctlTest(t, cfg, quorum)
  55. defer func() {
  56. if errC := epc.Close(); errC != nil {
  57. t.Fatalf("error closing etcd processes (%v)", errC)
  58. }
  59. }()
  60. key, value := "foo", "bar"
  61. if err := etcdctlMk(epc, key, value, true); err != nil {
  62. t.Fatalf("failed mk (%v)", err)
  63. }
  64. if err := etcdctlMk(epc, key, value, false); err != nil {
  65. t.Fatalf("failed mk (%v)", err)
  66. }
  67. if err := etcdctlGet(epc, key, value, quorum); err != nil {
  68. t.Fatalf("failed get (%v)", err)
  69. }
  70. }
  71. func TestCtlV2Rm(t *testing.T) { testCtlV2Rm(t, &configNoTLS) }
  72. func TestCtlV2RmTLS(t *testing.T) { testCtlV2Rm(t, &configTLS) }
  73. func testCtlV2Rm(t *testing.T, cfg *etcdProcessClusterConfig) {
  74. os.Setenv("ETCDCTL_API", "2")
  75. defer os.Unsetenv("ETCDCTL_API")
  76. defer testutil.AfterTest(t)
  77. epc := setupEtcdctlTest(t, cfg, true)
  78. defer func() {
  79. if errC := epc.Close(); errC != nil {
  80. t.Fatalf("error closing etcd processes (%v)", errC)
  81. }
  82. }()
  83. key, value := "foo", "bar"
  84. if err := etcdctlSet(epc, key, value); err != nil {
  85. t.Fatalf("failed set (%v)", err)
  86. }
  87. if err := etcdctlRm(epc, key, value, true); err != nil {
  88. t.Fatalf("failed rm (%v)", err)
  89. }
  90. if err := etcdctlRm(epc, key, value, false); err != nil {
  91. t.Fatalf("failed rm (%v)", err)
  92. }
  93. }
  94. func TestCtlV2Ls(t *testing.T) { testCtlV2Ls(t, &configNoTLS, false) }
  95. func TestCtlV2LsQuorum(t *testing.T) { testCtlV2Ls(t, &configNoTLS, true) }
  96. func TestCtlV2LsTLS(t *testing.T) { testCtlV2Ls(t, &configTLS, false) }
  97. func testCtlV2Ls(t *testing.T, cfg *etcdProcessClusterConfig, quorum bool) {
  98. os.Setenv("ETCDCTL_API", "2")
  99. defer os.Unsetenv("ETCDCTL_API")
  100. defer testutil.AfterTest(t)
  101. epc := setupEtcdctlTest(t, cfg, quorum)
  102. defer func() {
  103. if errC := epc.Close(); errC != nil {
  104. t.Fatalf("error closing etcd processes (%v)", errC)
  105. }
  106. }()
  107. key, value := "foo", "bar"
  108. if err := etcdctlSet(epc, key, value); err != nil {
  109. t.Fatalf("failed set (%v)", err)
  110. }
  111. if err := etcdctlLs(epc, key, quorum); err != nil {
  112. t.Fatalf("failed ls (%v)", err)
  113. }
  114. }
  115. func TestCtlV2Watch(t *testing.T) { testCtlV2Watch(t, &configNoTLS, false) }
  116. func TestCtlV2WatchTLS(t *testing.T) { testCtlV2Watch(t, &configTLS, false) }
  117. func testCtlV2Watch(t *testing.T, cfg *etcdProcessClusterConfig, noSync bool) {
  118. os.Setenv("ETCDCTL_API", "2")
  119. defer os.Unsetenv("ETCDCTL_API")
  120. defer testutil.AfterTest(t)
  121. epc := setupEtcdctlTest(t, cfg, true)
  122. defer func() {
  123. if errC := epc.Close(); errC != nil {
  124. t.Fatalf("error closing etcd processes (%v)", errC)
  125. }
  126. }()
  127. key, value := "foo", "bar"
  128. errc := etcdctlWatch(epc, key, value, noSync)
  129. if err := etcdctlSet(epc, key, value); err != nil {
  130. t.Fatalf("failed set (%v)", err)
  131. }
  132. select {
  133. case err := <-errc:
  134. if err != nil {
  135. t.Fatalf("failed watch (%v)", err)
  136. }
  137. case <-time.After(5 * time.Second):
  138. t.Fatalf("watch timed out")
  139. }
  140. }
  141. func TestCtlV2GetRoleUser(t *testing.T) {
  142. os.Setenv("ETCDCTL_API", "2")
  143. defer os.Unsetenv("ETCDCTL_API")
  144. defer testutil.AfterTest(t)
  145. epc := setupEtcdctlTest(t, &configNoTLS, false)
  146. defer func() {
  147. if err := epc.Close(); err != nil {
  148. t.Fatalf("error closing etcd processes (%v)", err)
  149. }
  150. }()
  151. if err := etcdctlRoleAdd(epc, "foo"); err != nil {
  152. t.Fatalf("failed to add role (%v)", err)
  153. }
  154. if err := etcdctlUserAdd(epc, "username", "password"); err != nil {
  155. t.Fatalf("failed to add user (%v)", err)
  156. }
  157. if err := etcdctlUserGrant(epc, "username", "foo"); err != nil {
  158. t.Fatalf("failed to grant role (%v)", err)
  159. }
  160. if err := etcdctlUserGet(epc, "username"); err != nil {
  161. t.Fatalf("failed to get user (%v)", err)
  162. }
  163. // ensure double grant gives an error; was crashing in 2.3.1
  164. regrantArgs := etcdctlPrefixArgs(epc)
  165. regrantArgs = append(regrantArgs, "user", "grant", "--roles", "foo", "username")
  166. if err := spawnWithExpect(regrantArgs, "duplicate"); err != nil {
  167. t.Fatalf("missing duplicate error on double grant role (%v)", err)
  168. }
  169. }
  170. func TestCtlV2UserListUsername(t *testing.T) { testCtlV2UserList(t, "username") }
  171. func TestCtlV2UserListRoot(t *testing.T) { testCtlV2UserList(t, "root") }
  172. func testCtlV2UserList(t *testing.T, username string) {
  173. os.Setenv("ETCDCTL_API", "2")
  174. defer os.Unsetenv("ETCDCTL_API")
  175. defer testutil.AfterTest(t)
  176. epc := setupEtcdctlTest(t, &configNoTLS, false)
  177. defer func() {
  178. if err := epc.Close(); err != nil {
  179. t.Fatalf("error closing etcd processes (%v)", err)
  180. }
  181. }()
  182. if err := etcdctlUserAdd(epc, username, "password"); err != nil {
  183. t.Fatalf("failed to add user (%v)", err)
  184. }
  185. if err := etcdctlUserList(epc, username); err != nil {
  186. t.Fatalf("failed to list users (%v)", err)
  187. }
  188. }
  189. func TestCtlV2RoleList(t *testing.T) {
  190. os.Setenv("ETCDCTL_API", "2")
  191. defer os.Unsetenv("ETCDCTL_API")
  192. defer testutil.AfterTest(t)
  193. epc := setupEtcdctlTest(t, &configNoTLS, false)
  194. defer func() {
  195. if err := epc.Close(); err != nil {
  196. t.Fatalf("error closing etcd processes (%v)", err)
  197. }
  198. }()
  199. if err := etcdctlRoleAdd(epc, "foo"); err != nil {
  200. t.Fatalf("failed to add role (%v)", err)
  201. }
  202. if err := etcdctlRoleList(epc, "foo"); err != nil {
  203. t.Fatalf("failed to list roles (%v)", err)
  204. }
  205. }
  206. func TestCtlV2Backup(t *testing.T) { testCtlV2Backup(t, 0, false) }
  207. func TestCtlV2BackupSnapshot(t *testing.T) { testCtlV2Backup(t, 1, false) }
  208. func TestCtlV2BackupV3(t *testing.T) { testCtlV2Backup(t, 0, true) }
  209. func TestCtlV2BackupV3Snapshot(t *testing.T) { testCtlV2Backup(t, 1, true) }
  210. func testCtlV2Backup(t *testing.T, snapCount int, v3 bool) {
  211. os.Setenv("ETCDCTL_API", "2")
  212. defer os.Unsetenv("ETCDCTL_API")
  213. defer testutil.AfterTest(t)
  214. backupDir, err := ioutil.TempDir("", "testbackup0.etcd")
  215. if err != nil {
  216. t.Fatal(err)
  217. }
  218. defer os.RemoveAll(backupDir)
  219. etcdCfg := configNoTLS
  220. etcdCfg.snapshotCount = snapCount
  221. epc1 := setupEtcdctlTest(t, &etcdCfg, false)
  222. // v3 put before v2 set so snapshot happens after v3 operations to confirm
  223. // v3 data is preserved after snapshot.
  224. os.Setenv("ETCDCTL_API", "3")
  225. if err := ctlV3Put(ctlCtx{t: t, epc: epc1}, "v3key", "123", ""); err != nil {
  226. t.Fatal(err)
  227. }
  228. os.Setenv("ETCDCTL_API", "2")
  229. if err := etcdctlSet(epc1, "foo1", "bar1"); err != nil {
  230. t.Fatal(err)
  231. }
  232. if v3 {
  233. // v3 must lock the db to backup, so stop process
  234. if err := epc1.Stop(); err != nil {
  235. t.Fatal(err)
  236. }
  237. }
  238. if err := etcdctlBackup(epc1, epc1.procs[0].Config().dataDirPath, backupDir, v3); err != nil {
  239. t.Fatal(err)
  240. }
  241. if err := epc1.Close(); err != nil {
  242. t.Fatalf("error closing etcd processes (%v)", err)
  243. }
  244. // restart from the backup directory
  245. cfg2 := configNoTLS
  246. cfg2.dataDirPath = backupDir
  247. cfg2.keepDataDir = true
  248. cfg2.forceNewCluster = true
  249. epc2 := setupEtcdctlTest(t, &cfg2, false)
  250. // check if backup went through correctly
  251. if err := etcdctlGet(epc2, "foo1", "bar1", false); err != nil {
  252. t.Fatal(err)
  253. }
  254. os.Setenv("ETCDCTL_API", "3")
  255. ctx2 := ctlCtx{t: t, epc: epc2}
  256. if v3 {
  257. if err := ctlV3Get(ctx2, []string{"v3key"}, kv{"v3key", "123"}); err != nil {
  258. t.Fatal(err)
  259. }
  260. } else {
  261. if err := ctlV3Get(ctx2, []string{"v3key"}); err != nil {
  262. t.Fatal(err)
  263. }
  264. }
  265. os.Setenv("ETCDCTL_API", "2")
  266. // check if it can serve client requests
  267. if err := etcdctlSet(epc2, "foo2", "bar2"); err != nil {
  268. t.Fatal(err)
  269. }
  270. if err := etcdctlGet(epc2, "foo2", "bar2", false); err != nil {
  271. t.Fatal(err)
  272. }
  273. if err := epc2.Close(); err != nil {
  274. t.Fatalf("error closing etcd processes (%v)", err)
  275. }
  276. }
  277. func TestCtlV2AuthWithCommonName(t *testing.T) {
  278. os.Setenv("ETCDCTL_API", "2")
  279. defer os.Unsetenv("ETCDCTL_API")
  280. defer testutil.AfterTest(t)
  281. copiedCfg := configClientTLS
  282. copiedCfg.clientCertAuthEnabled = true
  283. epc := setupEtcdctlTest(t, &copiedCfg, false)
  284. defer func() {
  285. if err := epc.Close(); err != nil {
  286. t.Fatalf("error closing etcd processes (%v)", err)
  287. }
  288. }()
  289. if err := etcdctlRoleAdd(epc, "testrole"); err != nil {
  290. t.Fatalf("failed to add role (%v)", err)
  291. }
  292. if err := etcdctlRoleGrant(epc, "testrole", "--rw", "--path=/foo"); err != nil {
  293. t.Fatalf("failed to grant role (%v)", err)
  294. }
  295. if err := etcdctlUserAdd(epc, "root", "123"); err != nil {
  296. t.Fatalf("failed to add user (%v)", err)
  297. }
  298. if err := etcdctlUserAdd(epc, "Autogenerated CA", "123"); err != nil {
  299. t.Fatalf("failed to add user (%v)", err)
  300. }
  301. if err := etcdctlUserGrant(epc, "Autogenerated CA", "testrole"); err != nil {
  302. t.Fatalf("failed to grant role (%v)", err)
  303. }
  304. if err := etcdctlAuthEnable(epc); err != nil {
  305. t.Fatalf("failed to enable auth (%v)", err)
  306. }
  307. if err := etcdctlSet(epc, "foo", "bar"); err != nil {
  308. t.Fatalf("failed to write (%v)", err)
  309. }
  310. }
  311. func TestCtlV2ClusterHealth(t *testing.T) {
  312. os.Setenv("ETCDCTL_API", "2")
  313. defer os.Unsetenv("ETCDCTL_API")
  314. defer testutil.AfterTest(t)
  315. epc := setupEtcdctlTest(t, &configNoTLS, true)
  316. defer func() {
  317. if err := epc.Close(); err != nil {
  318. t.Fatalf("error closing etcd processes (%v)", err)
  319. }
  320. }()
  321. // all members available
  322. if err := etcdctlClusterHealth(epc, "cluster is healthy"); err != nil {
  323. t.Fatalf("cluster-health expected to be healthy (%v)", err)
  324. }
  325. // missing members, has quorum
  326. epc.procs[0].Stop()
  327. for i := 0; i < 3; i++ {
  328. err := etcdctlClusterHealth(epc, "cluster is degraded")
  329. if err == nil {
  330. break
  331. } else if i == 2 {
  332. t.Fatalf("cluster-health expected to be degraded (%v)", err)
  333. }
  334. // possibly no leader yet; retry
  335. time.Sleep(time.Second)
  336. }
  337. // no quorum
  338. epc.procs[1].Stop()
  339. if err := etcdctlClusterHealth(epc, "cluster is unavailable"); err != nil {
  340. t.Fatalf("cluster-health expected to be unavailable (%v)", err)
  341. }
  342. epc.procs[0], epc.procs[1] = nil, nil
  343. }
  344. func etcdctlPrefixArgs(clus *etcdProcessCluster) []string {
  345. endpoints := strings.Join(clus.EndpointsV2(), ",")
  346. cmdArgs := []string{ctlBinPath, "--endpoints", endpoints}
  347. if clus.cfg.clientTLS == clientTLS {
  348. cmdArgs = append(cmdArgs, "--ca-file", caPath, "--cert-file", certPath, "--key-file", privateKeyPath)
  349. }
  350. return cmdArgs
  351. }
  352. func etcdctlClusterHealth(clus *etcdProcessCluster, val string) error {
  353. cmdArgs := append(etcdctlPrefixArgs(clus), "cluster-health")
  354. return spawnWithExpect(cmdArgs, val)
  355. }
  356. func etcdctlSet(clus *etcdProcessCluster, key, value string) error {
  357. cmdArgs := append(etcdctlPrefixArgs(clus), "set", key, value)
  358. return spawnWithExpect(cmdArgs, value)
  359. }
  360. func etcdctlMk(clus *etcdProcessCluster, key, value string, first bool) error {
  361. cmdArgs := append(etcdctlPrefixArgs(clus), "mk", key, value)
  362. if first {
  363. return spawnWithExpect(cmdArgs, value)
  364. }
  365. return spawnWithExpect(cmdArgs, "Error: 105: Key already exists")
  366. }
  367. func etcdctlGet(clus *etcdProcessCluster, key, value string, quorum bool) error {
  368. cmdArgs := append(etcdctlPrefixArgs(clus), "get", key)
  369. if quorum {
  370. cmdArgs = append(cmdArgs, "--quorum")
  371. }
  372. return spawnWithExpect(cmdArgs, value)
  373. }
  374. func etcdctlRm(clus *etcdProcessCluster, key, value string, first bool) error {
  375. cmdArgs := append(etcdctlPrefixArgs(clus), "rm", key)
  376. if first {
  377. return spawnWithExpect(cmdArgs, "PrevNode.Value: "+value)
  378. }
  379. return spawnWithExpect(cmdArgs, "Error: 100: Key not found")
  380. }
  381. func etcdctlLs(clus *etcdProcessCluster, key string, quorum bool) error {
  382. cmdArgs := append(etcdctlPrefixArgs(clus), "ls")
  383. if quorum {
  384. cmdArgs = append(cmdArgs, "--quorum")
  385. }
  386. return spawnWithExpect(cmdArgs, key)
  387. }
  388. func etcdctlWatch(clus *etcdProcessCluster, key, value string, noSync bool) <-chan error {
  389. cmdArgs := append(etcdctlPrefixArgs(clus), "watch", "--after-index=1", key)
  390. if noSync {
  391. cmdArgs = append(cmdArgs, "--no-sync")
  392. }
  393. errc := make(chan error, 1)
  394. go func() {
  395. errc <- spawnWithExpect(cmdArgs, value)
  396. }()
  397. return errc
  398. }
  399. func etcdctlRoleAdd(clus *etcdProcessCluster, role string) error {
  400. cmdArgs := append(etcdctlPrefixArgs(clus), "role", "add", role)
  401. return spawnWithExpect(cmdArgs, role)
  402. }
  403. func etcdctlRoleGrant(clus *etcdProcessCluster, role string, perms ...string) error {
  404. cmdArgs := append(etcdctlPrefixArgs(clus), "role", "grant")
  405. cmdArgs = append(cmdArgs, perms...)
  406. cmdArgs = append(cmdArgs, role)
  407. return spawnWithExpect(cmdArgs, role)
  408. }
  409. func etcdctlRoleList(clus *etcdProcessCluster, expectedRole string) error {
  410. cmdArgs := append(etcdctlPrefixArgs(clus), "role", "list")
  411. return spawnWithExpect(cmdArgs, expectedRole)
  412. }
  413. func etcdctlUserAdd(clus *etcdProcessCluster, user, pass string) error {
  414. cmdArgs := append(etcdctlPrefixArgs(clus), "user", "add", user+":"+pass)
  415. return spawnWithExpect(cmdArgs, "User "+user+" created")
  416. }
  417. func etcdctlUserGrant(clus *etcdProcessCluster, user, role string) error {
  418. cmdArgs := append(etcdctlPrefixArgs(clus), "user", "grant", "--roles", role, user)
  419. return spawnWithExpect(cmdArgs, "User "+user+" updated")
  420. }
  421. func etcdctlUserGet(clus *etcdProcessCluster, user string) error {
  422. cmdArgs := append(etcdctlPrefixArgs(clus), "user", "get", user)
  423. return spawnWithExpect(cmdArgs, "User: "+user)
  424. }
  425. func etcdctlUserList(clus *etcdProcessCluster, expectedUser string) error {
  426. cmdArgs := append(etcdctlPrefixArgs(clus), "user", "list")
  427. return spawnWithExpect(cmdArgs, expectedUser)
  428. }
  429. func etcdctlAuthEnable(clus *etcdProcessCluster) error {
  430. cmdArgs := append(etcdctlPrefixArgs(clus), "auth", "enable")
  431. return spawnWithExpect(cmdArgs, "Authentication Enabled")
  432. }
  433. func etcdctlBackup(clus *etcdProcessCluster, dataDir, backupDir string, v3 bool) error {
  434. cmdArgs := append(etcdctlPrefixArgs(clus), "backup", "--data-dir", dataDir, "--backup-dir", backupDir)
  435. if v3 {
  436. cmdArgs = append(cmdArgs, "--with-v3")
  437. }
  438. proc, err := spawnCmd(cmdArgs)
  439. if err != nil {
  440. return err
  441. }
  442. return proc.Close()
  443. }
  444. func mustEtcdctl(t *testing.T) {
  445. if !fileutil.Exist(binDir + "/etcdctl") {
  446. t.Fatalf("could not find etcdctl binary")
  447. }
  448. }
  449. func setupEtcdctlTest(t *testing.T, cfg *etcdProcessClusterConfig, quorum bool) *etcdProcessCluster {
  450. mustEtcdctl(t)
  451. if !quorum {
  452. cfg = configStandalone(*cfg)
  453. }
  454. epc, err := newEtcdProcessCluster(cfg)
  455. if err != nil {
  456. t.Fatalf("could not start etcd process cluster (%v)", err)
  457. }
  458. return epc
  459. }