blob: 1252f090e3df937caa3fcf9a8528d1ca9c309d60 [file] [log] [blame]
ZhiQiang Fan39f97222013-09-20 04:49:44 +08001# Copyright 2012 OpenStack Foundation
Sean Dague6dbc6da2013-05-08 17:49:46 -04002# Copyright 2013 IBM Corp.
3# All Rights Reserved.
4#
5# Licensed under the Apache License, Version 2.0 (the "License"); you may
6# not use this file except in compliance with the License. You may obtain
7# a copy of the License at
8#
9# http://www.apache.org/licenses/LICENSE-2.0
10#
11# Unless required by applicable law or agreed to in writing, software
12# distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
13# WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the
14# License for the specific language governing permissions and limitations
15# under the License.
16
Sean Dague6dbc6da2013-05-08 17:49:46 -040017import subprocess
18
Sean Dague6dbc6da2013-05-08 17:49:46 -040019import netaddr
Doug Hellmann583ce2c2015-03-11 14:55:46 +000020from oslo_log import log
Andrey Pavlovc8bd4b12015-08-17 10:20:17 +030021from oslo_serialization import jsonutils as json
Yatin Kumbhareee4924c2016-06-09 15:12:06 +053022from oslo_utils import netutils
Sean Dague6dbc6da2013-05-08 17:49:46 -040023
lanoux5fc14522015-09-21 08:17:35 +000024from tempest.common import compute
Ken'ichi Ohmichi01151e82016-06-10 11:19:52 -070025from tempest.common import image as common_image
Masayuki Igawa4ded9f02014-02-17 15:05:59 +090026from tempest.common.utils.linux import remote_client
Ihar Hrachyshkaf9227c02016-09-15 11:16:47 +000027from tempest.common.utils import net_utils
Ken'ichi Ohmichi0eb153c2015-07-13 02:18:25 +000028from tempest.common import waiters
Matthew Treinish6c072292014-01-29 19:15:52 +000029from tempest import config
Giulio Fidente92f77192013-08-26 17:13:28 +020030from tempest import exceptions
Ghanshyam Mann09c4eb92019-06-04 13:07:12 +000031from tempest.lib.common import api_microversion_fixture
32from tempest.lib.common import api_version_utils
Ken'ichi Ohmichibe4fb502017-03-10 10:04:48 -080033from tempest.lib.common.utils import data_utils
Jordan Pittier9e227c52016-02-09 14:35:18 +010034from tempest.lib.common.utils import test_utils
Andrea Frittoli (andreaf)db9672e2016-02-23 14:07:24 -050035from tempest.lib import exceptions as lib_exc
Sean Dague6dbc6da2013-05-08 17:49:46 -040036import tempest.test
Sean Dague6dbc6da2013-05-08 17:49:46 -040037
Matthew Treinish6c072292014-01-29 19:15:52 +000038CONF = config.CONF
Sean Dague6dbc6da2013-05-08 17:49:46 -040039
Attila Fazekasfb7552a2013-08-27 13:02:26 +020040LOG = log.getLogger(__name__)
41
Ghanshyam Mann09c4eb92019-06-04 13:07:12 +000042LATEST_MICROVERSION = 'latest'
43
Sean Dague6dbc6da2013-05-08 17:49:46 -040044
Andrea Frittoli2e733b52014-07-16 14:12:11 +010045class ScenarioTest(tempest.test.BaseTestCase):
Andrea Frittoli486ede72014-09-25 11:50:05 +010046 """Base class for scenario tests. Uses tempest own clients. """
Andrea Frittoli2e733b52014-07-16 14:12:11 +010047
Andrea Frittolib21de6c2015-02-06 20:12:38 +000048 credentials = ['primary']
Emily Hugenbruch5e2d2a22015-02-25 21:35:45 +000049
Ghanshyam Mann09c4eb92019-06-04 13:07:12 +000050 compute_min_microversion = None
51 compute_max_microversion = LATEST_MICROVERSION
52 volume_min_microversion = None
53 volume_max_microversion = LATEST_MICROVERSION
54 placement_min_microversion = None
55 placement_max_microversion = LATEST_MICROVERSION
56
57 @classmethod
58 def skip_checks(cls):
59 super(ScenarioTest, cls).skip_checks()
60 api_version_utils.check_skip_with_microversion(
61 cls.compute_min_microversion, cls.compute_max_microversion,
62 CONF.compute.min_microversion, CONF.compute.max_microversion)
63 api_version_utils.check_skip_with_microversion(
64 cls.volume_min_microversion, cls.volume_max_microversion,
65 CONF.volume.min_microversion, CONF.volume.max_microversion)
66 api_version_utils.check_skip_with_microversion(
67 cls.placement_min_microversion, cls.placement_max_microversion,
68 CONF.placement.min_microversion, CONF.placement.max_microversion)
69
70 @classmethod
71 def resource_setup(cls):
72 super(ScenarioTest, cls).resource_setup()
73 cls.compute_request_microversion = (
74 api_version_utils.select_request_microversion(
75 cls.compute_min_microversion,
76 CONF.compute.min_microversion))
77 cls.volume_request_microversion = (
78 api_version_utils.select_request_microversion(
79 cls.volume_min_microversion,
80 CONF.volume.min_microversion))
81 cls.placement_request_microversion = (
82 api_version_utils.select_request_microversion(
83 cls.placement_min_microversion,
84 CONF.placement.min_microversion))
85
86 def setUp(self):
87 super(ScenarioTest, self).setUp()
88 self.useFixture(api_microversion_fixture.APIMicroversionFixture(
89 compute_microversion=self.compute_request_microversion,
90 volume_microversion=self.volume_request_microversion,
91 placement_microversion=self.placement_request_microversion))
92
Emily Hugenbruch5e2d2a22015-02-25 21:35:45 +000093 @classmethod
94 def setup_clients(cls):
95 super(ScenarioTest, cls).setup_clients()
Andrea Frittoli247058f2014-07-16 16:09:22 +010096 # Clients (in alphabetical order)
jeremy.zhang0343be52017-05-25 21:29:57 +080097 cls.flavors_client = cls.os_primary.flavors_client
John Warrene74890a2015-11-11 15:18:01 -050098 cls.compute_floating_ips_client = (
jeremy.zhang0343be52017-05-25 21:29:57 +080099 cls.os_primary.compute_floating_ips_client)
Jordan Pittier1d2e40f2016-01-05 18:49:14 +0100100 if CONF.service_available.glance:
Matt Riedemann2aa19d42016-06-06 17:45:41 -0400101 # Check if glance v1 is available to determine which client to use.
102 if CONF.image_feature_enabled.api_v1:
jeremy.zhang0343be52017-05-25 21:29:57 +0800103 cls.image_client = cls.os_primary.image_client
Matt Riedemann2aa19d42016-06-06 17:45:41 -0400104 elif CONF.image_feature_enabled.api_v2:
jeremy.zhang0343be52017-05-25 21:29:57 +0800105 cls.image_client = cls.os_primary.image_client_v2
Matt Riedemann2aa19d42016-06-06 17:45:41 -0400106 else:
Matthew Treinish4217a702016-10-07 17:27:11 -0400107 raise lib_exc.InvalidConfiguration(
Matt Riedemann2aa19d42016-06-06 17:45:41 -0400108 'Either api_v1 or api_v2 must be True in '
109 '[image-feature-enabled].')
nithya-ganesan882595e2014-07-29 18:51:07 +0000110 # Compute image client
jeremy.zhang0343be52017-05-25 21:29:57 +0800111 cls.compute_images_client = cls.os_primary.compute_images_client
112 cls.keypairs_client = cls.os_primary.keypairs_client
Andrea Frittoli247058f2014-07-16 16:09:22 +0100113 # Nova security groups client
John Warrenf2345512015-12-10 13:39:30 -0500114 cls.compute_security_groups_client = (
jeremy.zhang0343be52017-05-25 21:29:57 +0800115 cls.os_primary.compute_security_groups_client)
John Warren5cdbf422016-01-05 12:42:43 -0500116 cls.compute_security_group_rules_client = (
jeremy.zhang0343be52017-05-25 21:29:57 +0800117 cls.os_primary.compute_security_group_rules_client)
118 cls.servers_client = cls.os_primary.servers_client
119 cls.interface_client = cls.os_primary.interfaces_client
Yair Fried1fc32a12014-08-04 09:11:30 +0300120 # Neutron network client
jeremy.zhang0343be52017-05-25 21:29:57 +0800121 cls.networks_client = cls.os_primary.networks_client
122 cls.ports_client = cls.os_primary.ports_client
123 cls.routers_client = cls.os_primary.routers_client
124 cls.subnets_client = cls.os_primary.subnets_client
125 cls.floating_ips_client = cls.os_primary.floating_ips_client
126 cls.security_groups_client = cls.os_primary.security_groups_client
John Warren456d9ae2016-01-12 15:36:33 -0500127 cls.security_group_rules_client = (
jeremy.zhang0343be52017-05-25 21:29:57 +0800128 cls.os_primary.security_group_rules_client)
Andrea Frittolia6b30152017-08-04 10:46:10 +0100129 # Use the latest available volume clients
130 if CONF.service_available.cinder:
131 cls.volumes_client = cls.os_primary.volumes_client_latest
132 cls.snapshots_client = cls.os_primary.snapshots_client_latest
lkuchlane20e6a82018-05-08 11:28:46 +0300133 cls.backups_client = cls.os_primary.backups_client_latest
Ivan Kolodyazhnybcfc32e2015-08-06 13:31:36 +0300134
Jordan Pittierf672b7d2016-06-20 18:50:40 +0200135 # ## Test functions library
136 #
137 # The create_[resource] functions only return body and discard the
138 # resp part which is not used in scenario tests
Andrea Frittoli247058f2014-07-16 16:09:22 +0100139
zhufl1e446b52017-10-16 16:54:57 +0800140 def create_port(self, network_id, client=None, **kwargs):
Lenny Verkhovsky136376f2016-06-29 14:33:34 +0300141 if not client:
142 client = self.ports_client
zhufl1e446b52017-10-16 16:54:57 +0800143 name = data_utils.rand_name(self.__class__.__name__)
Edan David408a97b2018-01-15 03:52:15 -0500144 if CONF.network.port_vnic_type and 'binding:vnic_type' not in kwargs:
145 kwargs['binding:vnic_type'] = CONF.network.port_vnic_type
146 if CONF.network.port_profile and 'binding:profile' not in kwargs:
147 kwargs['binding:profile'] = CONF.network.port_profile
Lenny Verkhovsky136376f2016-06-29 14:33:34 +0300148 result = client.create_port(
149 name=name,
150 network_id=network_id,
151 **kwargs)
Lenny Verkhovsky136376f2016-06-29 14:33:34 +0300152 port = result['port']
153 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
154 client.delete_port, port['id'])
155 return port
156
Yair Frieddb6c9e92014-08-06 08:53:13 +0300157 def create_keypair(self, client=None):
158 if not client:
159 client = self.keypairs_client
Andrea Frittoli247058f2014-07-16 16:09:22 +0100160 name = data_utils.rand_name(self.__class__.__name__)
161 # We don't need to create a keypair by pubkey in scenario
Ken'ichi Ohmichie364bce2015-07-17 10:27:59 +0000162 body = client.create_keypair(name=name)
Yair Frieddb6c9e92014-08-06 08:53:13 +0300163 self.addCleanup(client.delete_keypair, name)
ghanshyamdee01f22015-08-17 11:41:47 +0900164 return body['keypair']
Andrea Frittoli247058f2014-07-16 16:09:22 +0100165
Anusha Ramineni9aaef8b2016-01-19 10:56:40 +0530166 def create_server(self, name=None, image_id=None, flavor=None,
zhufl13c9c892017-02-10 12:04:07 +0800167 validatable=False, wait_until='ACTIVE',
Jordan Pittierf672b7d2016-06-20 18:50:40 +0200168 clients=None, **kwargs):
lanoux5fc14522015-09-21 08:17:35 +0000169 """Wrapper utility that returns a test server.
Andrea Frittoli247058f2014-07-16 16:09:22 +0100170
lanoux5fc14522015-09-21 08:17:35 +0000171 This wrapper utility calls the common create test server and
172 returns a test server. The purpose of this wrapper is to minimize
173 the impact on the code of the tests already using this
174 function.
Noam Angel6e309952019-01-27 05:52:40 +0000175
176 :param **kwargs:
177 See extra parameters below
178
179 :Keyword Arguments:
180 * *vnic_type* (``string``) --
181 used when launching instances with pre-configured ports.
182 Examples:
183 normal: a traditional virtual port that is either attached
184 to a linux bridge or an openvswitch bridge on a
185 compute node.
186 direct: an SR-IOV port that is directly attached to a VM
187 macvtap: an SR-IOV port that is attached to a VM via a macvtap
188 device.
189 Defaults to ``CONF.network.port_vnic_type``.
190 * *port_profile* (``dict``) --
191 This attribute is a dictionary that can be used (with admin
192 credentials) to supply information influencing the binding of
193 the port.
194 example: port_profile = "capabilities:[switchdev]"
195 Defaults to ``CONF.network.port_profile``.
Andrea Frittoli247058f2014-07-16 16:09:22 +0100196 """
Andrea Frittoli247058f2014-07-16 16:09:22 +0100197
lanoux5fc14522015-09-21 08:17:35 +0000198 # NOTE(jlanoux): As a first step, ssh checks in the scenario
199 # tests need to be run regardless of the run_validation and
200 # validatable parameters and thus until the ssh validation job
201 # becomes voting in CI. The test resources management and IP
202 # association are taken care of in the scenario tests.
203 # Therefore, the validatable parameter is set to false in all
204 # those tests. In this way create_server just return a standard
205 # server and the scenario tests always perform ssh checks.
206
207 # Needed for the cross_tenant_traffic test:
208 if clients is None:
jeremy.zhang0343be52017-05-25 21:29:57 +0800209 clients = self.os_primary
lanoux5fc14522015-09-21 08:17:35 +0000210
zhufl24208c22016-10-25 15:23:48 +0800211 if name is None:
212 name = data_utils.rand_name(self.__class__.__name__ + "-server")
213
Noam Angel6e309952019-01-27 05:52:40 +0000214 vnic_type = kwargs.pop('vnic_type', CONF.network.port_vnic_type)
215 profile = kwargs.pop('port_profile', CONF.network.port_profile)
lanoux5fc14522015-09-21 08:17:35 +0000216
Lenny Verkhovskyfe3a03f2018-02-28 10:19:37 +0000217 # If vnic_type or profile are configured create port for
lanoux5fc14522015-09-21 08:17:35 +0000218 # every network
Lenny Verkhovskyfe3a03f2018-02-28 10:19:37 +0000219 if vnic_type or profile:
lanoux5fc14522015-09-21 08:17:35 +0000220 ports = []
Lenny Verkhovskyfe3a03f2018-02-28 10:19:37 +0000221 create_port_body = {}
Lenny Verkhovsky69363502016-07-17 16:33:33 +0300222
Lenny Verkhovskyfe3a03f2018-02-28 10:19:37 +0000223 if vnic_type:
224 create_port_body['binding:vnic_type'] = vnic_type
225
226 if profile:
227 create_port_body['binding:profile'] = profile
228
lanoux5fc14522015-09-21 08:17:35 +0000229 if kwargs:
230 # Convert security group names to security group ids
231 # to pass to create_port
232 if 'security_groups' in kwargs:
Thiago Paiva66cded22016-08-15 14:55:58 -0300233 security_groups = \
John Warrenf9606e92015-12-10 12:12:42 -0500234 clients.security_groups_client.list_security_groups(
lanoux5fc14522015-09-21 08:17:35 +0000235 ).get('security_groups')
236 sec_dict = dict([(s['name'], s['id'])
afazekas40fcb9b2019-03-08 11:25:11 +0100237 for s in security_groups])
lanoux5fc14522015-09-21 08:17:35 +0000238
239 sec_groups_names = [s['name'] for s in kwargs.pop(
240 'security_groups')]
241 security_groups_ids = [sec_dict[s]
242 for s in sec_groups_names]
243
244 if security_groups_ids:
245 create_port_body[
246 'security_groups'] = security_groups_ids
Lenny Verkhovsky69363502016-07-17 16:33:33 +0300247 networks = kwargs.pop('networks', [])
248 else:
249 networks = []
lanoux5fc14522015-09-21 08:17:35 +0000250
251 # If there are no networks passed to us we look up
Lenny Verkhovsky136376f2016-06-29 14:33:34 +0300252 # for the project's private networks and create a port.
253 # The same behaviour as we would expect when passing
254 # the call to the clients with no networks
lanoux5fc14522015-09-21 08:17:35 +0000255 if not networks:
256 networks = clients.networks_client.list_networks(
Lenny Verkhovsky136376f2016-06-29 14:33:34 +0300257 **{'router:external': False, 'fields': 'id'})['networks']
258
259 # It's net['uuid'] if networks come from kwargs
260 # and net['id'] if they come from
261 # clients.networks_client.list_networks
lanoux5fc14522015-09-21 08:17:35 +0000262 for net in networks:
Lenny Verkhovsky97f7cea2016-08-15 13:29:48 +0000263 net_id = net.get('uuid', net.get('id'))
Lenny Verkhovsky69363502016-07-17 16:33:33 +0300264 if 'port' not in net:
zhufl1e446b52017-10-16 16:54:57 +0800265 port = self.create_port(network_id=net_id,
266 client=clients.ports_client,
267 **create_port_body)
Lenny Verkhovsky69363502016-07-17 16:33:33 +0300268 ports.append({'port': port['id']})
269 else:
270 ports.append({'port': net['port']})
lanoux5fc14522015-09-21 08:17:35 +0000271 if ports:
272 kwargs['networks'] = ports
273 self.ports = ports
274
275 tenant_network = self.get_tenant_network()
276
Marc Koderer979e4942016-12-08 10:07:59 +0100277 if CONF.compute.compute_volume_common_az:
278 kwargs.setdefault('availability_zone',
279 CONF.compute.compute_volume_common_az)
280
Ferenc Horváthbce1fcf2017-06-07 11:19:51 +0200281 body, _ = compute.create_test_server(
lanoux5fc14522015-09-21 08:17:35 +0000282 clients,
283 tenant_network=tenant_network,
284 wait_until=wait_until,
Anusha Ramineni9aaef8b2016-01-19 10:56:40 +0530285 name=name, flavor=flavor,
286 image_id=image_id, **kwargs)
lanoux5fc14522015-09-21 08:17:35 +0000287
Jordan Pittierf672b7d2016-06-20 18:50:40 +0200288 self.addCleanup(waiters.wait_for_server_termination,
289 clients.servers_client, body['id'])
290 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
291 clients.servers_client.delete_server, body['id'])
lanoux5fc14522015-09-21 08:17:35 +0000292 server = clients.servers_client.show_server(body['id'])['server']
Andrea Frittoli247058f2014-07-16 16:09:22 +0100293 return server
294
Markus Zoeller3d2a21c2015-02-27 12:04:22 +0100295 def create_volume(self, size=None, name=None, snapshot_id=None,
Jordan Pittier5e1741c2016-03-02 18:25:51 +0100296 imageRef=None, volume_type=None):
Ken'ichi Ohmichiadb905e2016-08-26 15:16:23 -0700297 if size is None:
298 size = CONF.volume.volume_size
Nuno Santosb746d992016-11-17 15:41:55 -0500299 if imageRef:
zhufl66275c22018-03-28 15:32:14 +0800300 if CONF.image_feature_enabled.api_v1:
301 resp = self.image_client.check_image(imageRef)
302 image = common_image.get_image_meta_from_headers(resp)
303 else:
304 image = self.image_client.show_image(imageRef)
305 min_disk = image.get('min_disk')
Nuno Santosb746d992016-11-17 15:41:55 -0500306 size = max(size, min_disk)
Andrea Frittoli247058f2014-07-16 16:09:22 +0100307 if name is None:
zhuflf9d95722016-10-19 16:06:17 +0800308 name = data_utils.rand_name(self.__class__.__name__ + "-volume")
Ghanshyam8fc0ed22015-12-18 10:25:14 +0900309 kwargs = {'display_name': name,
310 'snapshot_id': snapshot_id,
311 'imageRef': imageRef,
Ken'ichi Ohmichiadb905e2016-08-26 15:16:23 -0700312 'volume_type': volume_type,
313 'size': size}
Marc Koderer979e4942016-12-08 10:07:59 +0100314
315 if CONF.compute.compute_volume_common_az:
316 kwargs.setdefault('availability_zone',
317 CONF.compute.compute_volume_common_az)
318
Ghanshyam8fc0ed22015-12-18 10:25:14 +0900319 volume = self.volumes_client.create_volume(**kwargs)['volume']
Matt Riedemanne85c2702014-09-10 11:50:13 -0700320
Jordan Pittier5e1741c2016-03-02 18:25:51 +0100321 self.addCleanup(self.volumes_client.wait_for_resource_deletion,
322 volume['id'])
Jordan Pittier9e227c52016-02-09 14:35:18 +0100323 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
Jordan Pittier5e1741c2016-03-02 18:25:51 +0100324 self.volumes_client.delete_volume, volume['id'])
lkuchlan5cbc00a2017-03-26 11:49:54 +0300325 self.assertEqual(name, volume['name'])
lkuchlan52d7b0d2016-11-07 20:53:19 +0200326 waiters.wait_for_volume_resource_status(self.volumes_client,
327 volume['id'], 'available')
Andrea Frittoli247058f2014-07-16 16:09:22 +0100328 # The volume retrieved on creation has a non-up-to-date status.
329 # Retrieval after it becomes active ensures correct details.
John Warren6177c9e2015-08-19 20:00:17 +0000330 volume = self.volumes_client.show_volume(volume['id'])['volume']
Andrea Frittoli247058f2014-07-16 16:09:22 +0100331 return volume
332
lkuchlane20e6a82018-05-08 11:28:46 +0300333 def create_backup(self, volume_id, name=None, description=None,
334 force=False, snapshot_id=None, incremental=False,
335 container=None):
336
337 name = name or data_utils.rand_name(
338 self.__class__.__name__ + "-backup")
339 kwargs = {'name': name,
340 'description': description,
341 'force': force,
342 'snapshot_id': snapshot_id,
343 'incremental': incremental,
344 'container': container}
345 backup = self.backups_client.create_backup(volume_id=volume_id,
346 **kwargs)['backup']
347 self.addCleanup(self.backups_client.delete_backup, backup['id'])
348 waiters.wait_for_volume_resource_status(self.backups_client,
349 backup['id'], 'available')
350 return backup
351
352 def restore_backup(self, backup_id):
353 restore = self.backups_client.restore_backup(backup_id)['restore']
354 self.addCleanup(self.volumes_client.delete_volume,
355 restore['volume_id'])
356 waiters.wait_for_volume_resource_status(self.backups_client,
357 backup_id, 'available')
358 waiters.wait_for_volume_resource_status(self.volumes_client,
359 restore['volume_id'],
360 'available')
361 self.assertEqual(backup_id, restore['backup_id'])
362 return restore
363
lkuchlan73ed1f32017-07-06 16:22:12 +0300364 def create_volume_snapshot(self, volume_id, name=None, description=None,
365 metadata=None, force=False):
366 name = name or data_utils.rand_name(
367 self.__class__.__name__ + '-snapshot')
368 snapshot = self.snapshots_client.create_snapshot(
369 volume_id=volume_id,
370 force=force,
371 display_name=name,
372 description=description,
373 metadata=metadata)['snapshot']
374 self.addCleanup(self.snapshots_client.wait_for_resource_deletion,
375 snapshot['id'])
376 self.addCleanup(self.snapshots_client.delete_snapshot, snapshot['id'])
377 waiters.wait_for_volume_resource_status(self.snapshots_client,
378 snapshot['id'], 'available')
Benny Kopilov11b28002017-12-19 12:46:19 +0200379 snapshot = self.snapshots_client.show_snapshot(
380 snapshot['id'])['snapshot']
lkuchlan73ed1f32017-07-06 16:22:12 +0300381 return snapshot
382
Lee Yarwoodbe64e1a2019-04-09 14:02:12 +0100383 def _cleanup_volume_type(self, volume_type):
384 """Clean up a given volume type.
385
386 Ensuring all volumes associated to a type are first removed before
387 attempting to remove the type itself. This includes any image volume
388 cache volumes stored in a separate tenant to the original volumes
389 created from the type.
390 """
391 admin_volume_type_client = self.os_admin.volume_types_client_latest
392 admin_volumes_client = self.os_admin.volumes_client_latest
393 volumes = admin_volumes_client.list_volumes(
394 detail=True, params={'all_tenants': 1})['volumes']
395 type_name = volume_type['name']
396 for volume in [v for v in volumes if v['volume_type'] == type_name]:
397 test_utils.call_and_ignore_notfound_exc(
398 admin_volumes_client.delete_volume, volume['id'])
399 admin_volumes_client.wait_for_resource_deletion(volume['id'])
400 admin_volume_type_client.delete_volume_type(volume_type['id'])
401
scottda61f68ac2016-06-07 12:07:55 -0600402 def create_volume_type(self, client=None, name=None, backend_name=None):
403 if not client:
ghanshyam6c682ff2018-08-06 09:54:45 +0000404 client = self.os_admin.volume_types_client_latest
Matt Riedemann514495b2019-05-04 17:34:12 +0000405 if not name:
406 class_name = self.__class__.__name__
407 name = data_utils.rand_name(class_name + '-volume-type')
408 randomized_name = data_utils.rand_name('scenario-type-' + name)
scottda61f68ac2016-06-07 12:07:55 -0600409
410 LOG.debug("Creating a volume type: %s on backend %s",
411 randomized_name, backend_name)
412 extra_specs = {}
413 if backend_name:
414 extra_specs = {"volume_backend_name": backend_name}
415
lkuchlanbbabe542017-09-26 10:47:23 +0300416 volume_type = client.create_volume_type(
417 name=randomized_name, extra_specs=extra_specs)['volume_type']
Lee Yarwoodbe64e1a2019-04-09 14:02:12 +0100418 self.addCleanup(self._cleanup_volume_type, volume_type)
scottda61f68ac2016-06-07 12:07:55 -0600419 return volume_type
420
Yair Fried1fc32a12014-08-04 09:11:30 +0300421 def _create_loginable_secgroup_rule(self, secgroup_id=None):
John Warrenf2345512015-12-10 13:39:30 -0500422 _client = self.compute_security_groups_client
John Warren5cdbf422016-01-05 12:42:43 -0500423 _client_rules = self.compute_security_group_rules_client
Andrea Frittoli247058f2014-07-16 16:09:22 +0100424 if secgroup_id is None:
ghanshyamb610b772015-08-24 17:29:38 +0900425 sgs = _client.list_security_groups()['security_groups']
Andrea Frittoli247058f2014-07-16 16:09:22 +0100426 for sg in sgs:
427 if sg['name'] == 'default':
428 secgroup_id = sg['id']
429
430 # These rules are intended to permit inbound ssh and icmp
431 # traffic from all sources, so no group_id is provided.
432 # Setting a group_id would only permit traffic from ports
433 # belonging to the same security group.
434 rulesets = [
435 {
436 # ssh
Ken'ichi Ohmichieb7eeec2015-07-21 01:00:06 +0000437 'ip_protocol': 'tcp',
Andrea Frittoli247058f2014-07-16 16:09:22 +0100438 'from_port': 22,
439 'to_port': 22,
440 'cidr': '0.0.0.0/0',
441 },
442 {
443 # ping
Ken'ichi Ohmichieb7eeec2015-07-21 01:00:06 +0000444 'ip_protocol': 'icmp',
Andrea Frittoli247058f2014-07-16 16:09:22 +0100445 'from_port': -1,
446 'to_port': -1,
447 'cidr': '0.0.0.0/0',
448 }
449 ]
450 rules = list()
451 for ruleset in rulesets:
Ken'ichi Ohmichieb7eeec2015-07-21 01:00:06 +0000452 sg_rule = _client_rules.create_security_group_rule(
ghanshyam0a5e1232015-08-24 16:59:59 +0900453 parent_group_id=secgroup_id, **ruleset)['security_group_rule']
Andrea Frittoli247058f2014-07-16 16:09:22 +0100454 rules.append(sg_rule)
455 return rules
456
Yair Fried1fc32a12014-08-04 09:11:30 +0300457 def _create_security_group(self):
Andrea Frittoli247058f2014-07-16 16:09:22 +0100458 # Create security group
459 sg_name = data_utils.rand_name(self.__class__.__name__)
460 sg_desc = sg_name + " description"
John Warrenf2345512015-12-10 13:39:30 -0500461 secgroup = self.compute_security_groups_client.create_security_group(
ghanshyamb610b772015-08-24 17:29:38 +0900462 name=sg_name, description=sg_desc)['security_group']
Andrea Frittoli247058f2014-07-16 16:09:22 +0100463 self.assertEqual(secgroup['name'], sg_name)
464 self.assertEqual(secgroup['description'], sg_desc)
John Warrenf2345512015-12-10 13:39:30 -0500465 self.addCleanup(
Jordan Pittier9e227c52016-02-09 14:35:18 +0100466 test_utils.call_and_ignore_notfound_exc,
John Warrenf2345512015-12-10 13:39:30 -0500467 self.compute_security_groups_client.delete_security_group,
468 secgroup['id'])
Andrea Frittoli247058f2014-07-16 16:09:22 +0100469
470 # Add rules to the security group
Yair Fried1fc32a12014-08-04 09:11:30 +0300471 self._create_loginable_secgroup_rule(secgroup['id'])
Andrea Frittoli247058f2014-07-16 16:09:22 +0100472
473 return secgroup
474
zhuflf52c7592017-05-25 13:55:24 +0800475 def get_remote_client(self, ip_address, username=None, private_key=None,
476 server=None):
JordanP3fe2dc32014-11-17 13:06:01 +0100477 """Get a SSH client to a remote server
478
Sergey Vilgelmeac094a2018-11-21 18:27:51 -0600479 :param ip_address: the server floating or fixed IP address to use
480 for ssh validation
481 :param username: name of the Linux account on the remote server
482 :param private_key: the SSH private key to use
483 :param server: server dict, used for debugging purposes
484 :return: a RemoteClient object
JordanP3fe2dc32014-11-17 13:06:01 +0100485 """
Adam Gandelmanc78c7572014-08-28 18:38:55 -0700486
Andrea Frittoli247058f2014-07-16 16:09:22 +0100487 if username is None:
lanoux283273b2015-12-04 03:01:54 -0800488 username = CONF.validation.image_ssh_user
wantwatering896300c2015-03-27 15:17:42 +0800489 # Set this with 'keypair' or others to log in with keypair or
490 # username/password.
lanoux5fc14522015-09-21 08:17:35 +0000491 if CONF.validation.auth_method == 'keypair':
wantwatering896300c2015-03-27 15:17:42 +0800492 password = None
493 if private_key is None:
494 private_key = self.keypair['private_key']
495 else:
lanoux283273b2015-12-04 03:01:54 -0800496 password = CONF.validation.image_ssh_password
wantwatering896300c2015-03-27 15:17:42 +0800497 private_key = None
zhuflf52c7592017-05-25 13:55:24 +0800498 linux_client = remote_client.RemoteClient(
499 ip_address, username, pkey=private_key, password=password,
500 server=server, servers_client=self.servers_client)
501 linux_client.validate_authentication()
Andrea Frittoli247058f2014-07-16 16:09:22 +0100502 return linux_client
503
Evgeny Antyshev7ba0d5f2015-04-28 13:18:07 +0000504 def _image_create(self, name, fmt, path,
505 disk_format=None, properties=None):
Ghanshyam2a180b82014-06-16 13:54:22 +0900506 if properties is None:
507 properties = {}
Andrea Frittoli247058f2014-07-16 16:09:22 +0100508 name = data_utils.rand_name('%s-' % name)
Andrea Frittoli247058f2014-07-16 16:09:22 +0100509 params = {
510 'name': name,
511 'container_format': fmt,
Evgeny Antyshev7ba0d5f2015-04-28 13:18:07 +0000512 'disk_format': disk_format or fmt,
Andrea Frittoli247058f2014-07-16 16:09:22 +0100513 }
Matt Riedemann2aa19d42016-06-06 17:45:41 -0400514 if CONF.image_feature_enabled.api_v1:
515 params['is_public'] = 'False'
516 params['properties'] = properties
Ken'ichi Ohmichi02bcdf32016-06-17 16:41:26 -0700517 params = {'headers': common_image.image_meta_to_headers(**params)}
Matt Riedemann2aa19d42016-06-06 17:45:41 -0400518 else:
519 params['visibility'] = 'private'
520 # Additional properties are flattened out in the v2 API.
521 params.update(properties)
522 body = self.image_client.create_image(**params)
523 image = body['image'] if 'image' in body else body
Andrea Frittoli247058f2014-07-16 16:09:22 +0100524 self.addCleanup(self.image_client.delete_image, image['id'])
525 self.assertEqual("queued", image['status'])
zhang.leia4b1cef2016-03-01 10:50:01 +0800526 with open(path, 'rb') as image_file:
Matt Riedemann2aa19d42016-06-06 17:45:41 -0400527 if CONF.image_feature_enabled.api_v1:
528 self.image_client.update_image(image['id'], data=image_file)
529 else:
530 self.image_client.store_image_file(image['id'], image_file)
Andrea Frittoli247058f2014-07-16 16:09:22 +0100531 return image['id']
532
533 def glance_image_create(self):
Alessandro Pilottib7c1daa2014-08-16 14:24:13 +0300534 img_path = CONF.scenario.img_dir + "/" + CONF.scenario.img_file
Andrea Frittoli247058f2014-07-16 16:09:22 +0100535 aki_img_path = CONF.scenario.img_dir + "/" + CONF.scenario.aki_img_file
536 ari_img_path = CONF.scenario.img_dir + "/" + CONF.scenario.ari_img_file
537 ami_img_path = CONF.scenario.img_dir + "/" + CONF.scenario.ami_img_file
Alessandro Pilottib7c1daa2014-08-16 14:24:13 +0300538 img_container_format = CONF.scenario.img_container_format
539 img_disk_format = CONF.scenario.img_disk_format
Evgeny Antyshev7ba0d5f2015-04-28 13:18:07 +0000540 img_properties = CONF.scenario.img_properties
PranaliD2aa523c2016-06-07 03:54:34 -0400541 LOG.debug("paths: img: %s, container_format: %s, disk_format: %s, "
Jordan Pittier525ec712016-12-07 17:51:26 +0100542 "properties: %s, ami: %s, ari: %s, aki: %s",
543 img_path, img_container_format, img_disk_format,
544 img_properties, ami_img_path, ari_img_path, aki_img_path)
Andrea Frittoli247058f2014-07-16 16:09:22 +0100545 try:
Jordan Pittier1e443ec2015-11-20 16:15:58 +0100546 image = self._image_create('scenario-img',
547 img_container_format,
548 img_path,
549 disk_format=img_disk_format,
550 properties=img_properties)
Andrea Frittoli247058f2014-07-16 16:09:22 +0100551 except IOError:
Ryan Hsue5107be2015-12-03 13:55:03 -0800552 LOG.warning(
553 "A(n) %s image was not found. Retrying with uec image.",
554 img_disk_format)
Andrea Frittoli247058f2014-07-16 16:09:22 +0100555 kernel = self._image_create('scenario-aki', 'aki', aki_img_path)
556 ramdisk = self._image_create('scenario-ari', 'ari', ari_img_path)
Evgeny Antyshev7ba0d5f2015-04-28 13:18:07 +0000557 properties = {'kernel_id': kernel, 'ramdisk_id': ramdisk}
Jordan Pittier1e443ec2015-11-20 16:15:58 +0100558 image = self._image_create('scenario-ami', 'ami',
559 path=ami_img_path,
560 properties=properties)
Jordan Pittier525ec712016-12-07 17:51:26 +0100561 LOG.debug("image:%s", image)
Jordan Pittier1e443ec2015-11-20 16:15:58 +0100562
563 return image
Andrea Frittoli247058f2014-07-16 16:09:22 +0100564
Ihar Hrachyshkaa9dca2b2017-04-04 14:17:11 -0700565 def _log_console_output(self, servers=None, client=None):
Matthew Treinish42a3f3a2014-09-04 15:04:53 -0400566 if not CONF.compute_feature_enabled.console_output:
567 LOG.debug('Console output not supported, cannot log')
568 return
Ihar Hrachyshkaa9dca2b2017-04-04 14:17:11 -0700569 client = client or self.servers_client
Andrea Frittoli247058f2014-07-16 16:09:22 +0100570 if not servers:
Ihar Hrachyshkaa9dca2b2017-04-04 14:17:11 -0700571 servers = client.list_servers()
Andrea Frittoli247058f2014-07-16 16:09:22 +0100572 servers = servers['servers']
573 for server in servers:
Attila Fazekas9a5a1122016-11-08 10:24:57 +0100574 try:
Ihar Hrachyshkaa9dca2b2017-04-04 14:17:11 -0700575 console_output = client.get_console_output(
Attila Fazekas9a5a1122016-11-08 10:24:57 +0100576 server['id'])['output']
577 LOG.debug('Console output for %s\nbody=\n%s',
578 server['id'], console_output)
579 except lib_exc.NotFound:
Attila Fazekase1360482016-11-10 11:28:08 +0100580 LOG.debug("Server %s disappeared(deleted) while looking "
Attila Fazekas9a5a1122016-11-08 10:24:57 +0100581 "for the console log", server['id'])
Andrea Frittoli247058f2014-07-16 16:09:22 +0100582
Ken'ichi Ohmichi6e201f52014-10-01 04:21:39 +0000583 def _log_net_info(self, exc):
584 # network debug is called as part of ssh init
Andrey Pavlov64723762015-04-29 06:24:58 +0300585 if not isinstance(exc, lib_exc.SSHTimeout):
Ken'ichi Ohmichi6e201f52014-10-01 04:21:39 +0000586 LOG.debug('Network information on a devstack host')
Ken'ichi Ohmichi6e201f52014-10-01 04:21:39 +0000587
nithya-ganesan882595e2014-07-29 18:51:07 +0000588 def create_server_snapshot(self, server, name=None):
589 # Glance client
590 _image_client = self.image_client
591 # Compute client
Ghanshyamae76c122015-12-22 13:41:35 +0900592 _images_client = self.compute_images_client
nithya-ganesan882595e2014-07-29 18:51:07 +0000593 if name is None:
zhuflf9d95722016-10-19 16:06:17 +0800594 name = data_utils.rand_name(self.__class__.__name__ + 'snapshot')
nithya-ganesan882595e2014-07-29 18:51:07 +0000595 LOG.debug("Creating a snapshot image for server: %s", server['name'])
Ken'ichi Ohmichi28f18672015-07-17 10:00:38 +0000596 image = _images_client.create_image(server['id'], name=name)
David Kranza5299eb2015-01-15 17:24:05 -0500597 image_id = image.response['location'].split('images/')[1]
Yaroslav Lobankov2fea4052016-04-19 15:05:57 +0300598 waiters.wait_for_image_status(_image_client, image_id, 'active')
Jordan Pittierf672b7d2016-06-20 18:50:40 +0200599
600 self.addCleanup(_image_client.wait_for_resource_deletion,
601 image_id)
602 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
603 _image_client.delete_image, image_id)
604
Matt Riedemann2aa19d42016-06-06 17:45:41 -0400605 if CONF.image_feature_enabled.api_v1:
606 # In glance v1 the additional properties are stored in the headers.
Ken'ichi Ohmichi01151e82016-06-10 11:19:52 -0700607 resp = _image_client.check_image(image_id)
608 snapshot_image = common_image.get_image_meta_from_headers(resp)
Matt Riedemann2aa19d42016-06-06 17:45:41 -0400609 image_props = snapshot_image.get('properties', {})
610 else:
611 # In glance v2 the additional properties are flattened.
612 snapshot_image = _image_client.show_image(image_id)
613 image_props = snapshot_image
Andrey Pavlovc8bd4b12015-08-17 10:20:17 +0300614
Matt Riedemann2aa19d42016-06-06 17:45:41 -0400615 bdm = image_props.get('block_device_mapping')
Andrey Pavlovc8bd4b12015-08-17 10:20:17 +0300616 if bdm:
617 bdm = json.loads(bdm)
618 if bdm and 'snapshot_id' in bdm[0]:
619 snapshot_id = bdm[0]['snapshot_id']
620 self.addCleanup(
621 self.snapshots_client.wait_for_resource_deletion,
622 snapshot_id)
Jordan Pittier9e227c52016-02-09 14:35:18 +0100623 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
624 self.snapshots_client.delete_snapshot,
625 snapshot_id)
lkuchlan52d7b0d2016-11-07 20:53:19 +0200626 waiters.wait_for_volume_resource_status(self.snapshots_client,
627 snapshot_id,
628 'available')
nithya-ganesan882595e2014-07-29 18:51:07 +0000629 image_name = snapshot_image['name']
630 self.assertEqual(name, image_name)
631 LOG.debug("Created snapshot image %s for server %s",
632 image_name, server['name'])
633 return snapshot_image
634
Jordan Pittier7cf64762015-10-14 15:01:12 +0200635 def nova_volume_attach(self, server, volume_to_attach):
Joseph Lanoux6809bab2014-12-18 14:57:18 +0000636 volume = self.servers_client.attach_volume(
Jordan Pittier7cf64762015-10-14 15:01:12 +0200637 server['id'], volumeId=volume_to_attach['id'], device='/dev/%s'
ghanshyam0f825252015-08-25 16:02:50 +0900638 % CONF.compute.volume_device_name)['volumeAttachment']
Jordan Pittier7cf64762015-10-14 15:01:12 +0200639 self.assertEqual(volume_to_attach['id'], volume['id'])
lkuchlan52d7b0d2016-11-07 20:53:19 +0200640 waiters.wait_for_volume_resource_status(self.volumes_client,
641 volume['id'], 'in-use')
Masayuki Igawa1f0ad632014-08-05 13:36:56 +0900642
Jordan Pittier7cf64762015-10-14 15:01:12 +0200643 # Return the updated volume after the attachment
644 return self.volumes_client.show_volume(volume['id'])['volume']
Masayuki Igawa1f0ad632014-08-05 13:36:56 +0900645
Jordan Pittier7cf64762015-10-14 15:01:12 +0200646 def nova_volume_detach(self, server, volume):
647 self.servers_client.detach_volume(server['id'], volume['id'])
lkuchlan52d7b0d2016-11-07 20:53:19 +0200648 waiters.wait_for_volume_resource_status(self.volumes_client,
649 volume['id'], 'available')
Jordan Pittier7cf64762015-10-14 15:01:12 +0200650
Steven Hardyda2a8352014-10-02 12:52:20 +0100651 def ping_ip_address(self, ip_address, should_succeed=True,
zhufl0ec74c42017-11-15 14:02:28 +0800652 ping_timeout=None, mtu=None, server=None):
lanoux5fc14522015-09-21 08:17:35 +0000653 timeout = ping_timeout or CONF.validation.ping_timeout
Ihar Hrachyshkaf9227c02016-09-15 11:16:47 +0000654 cmd = ['ping', '-c1', '-w1']
655
656 if mtu:
657 cmd += [
658 # don't fragment
659 '-M', 'do',
660 # ping receives just the size of ICMP payload
661 '-s', str(net_utils.get_ping_payload_size(mtu, 4))
662 ]
663 cmd.append(ip_address)
Aaron Rosena7df13b2014-09-23 09:45:45 -0700664
665 def ping():
666 proc = subprocess.Popen(cmd,
667 stdout=subprocess.PIPE,
668 stderr=subprocess.PIPE)
669 proc.communicate()
Shuquan Huang753629e2015-07-20 08:52:29 +0000670
Aaron Rosena7df13b2014-09-23 09:45:45 -0700671 return (proc.returncode == 0) == should_succeed
672
Jordan Pittier9e227c52016-02-09 14:35:18 +0100673 caller = test_utils.find_test_caller()
Shuquan Huang753629e2015-07-20 08:52:29 +0000674 LOG.debug('%(caller)s begins to ping %(ip)s in %(timeout)s sec and the'
John L. Villalovosa898aec2017-01-13 14:46:46 -0800675 ' expected result is %(should_succeed)s', {
Shuquan Huang753629e2015-07-20 08:52:29 +0000676 'caller': caller, 'ip': ip_address, 'timeout': timeout,
677 'should_succeed':
678 'reachable' if should_succeed else 'unreachable'
679 })
Jordan Pittier35a63752016-08-30 13:09:12 +0200680 result = test_utils.call_until_true(ping, timeout, 1)
Shuquan Huang753629e2015-07-20 08:52:29 +0000681 LOG.debug('%(caller)s finishes ping %(ip)s in %(timeout)s sec and the '
John L. Villalovosa898aec2017-01-13 14:46:46 -0800682 'ping result is %(result)s', {
Shuquan Huang753629e2015-07-20 08:52:29 +0000683 'caller': caller, 'ip': ip_address, 'timeout': timeout,
684 'result': 'expected' if result else 'unexpected'
685 })
zhufl0ec74c42017-11-15 14:02:28 +0800686 if server:
687 self._log_console_output([server])
Shuquan Huang753629e2015-07-20 08:52:29 +0000688 return result
Aaron Rosena7df13b2014-09-23 09:45:45 -0700689
Yair Friedae0e73d2014-11-24 11:56:26 +0200690 def check_vm_connectivity(self, ip_address,
691 username=None,
692 private_key=None,
Ihar Hrachyshkaf9227c02016-09-15 11:16:47 +0000693 should_connect=True,
zhufl0ec74c42017-11-15 14:02:28 +0800694 extra_msg="",
695 server=None,
Ihar Hrachyshkaf9227c02016-09-15 11:16:47 +0000696 mtu=None):
Ken'ichi Ohmichic4e4f1c2015-11-17 08:16:12 +0000697 """Check server connectivity
698
Yair Friedae0e73d2014-11-24 11:56:26 +0200699 :param ip_address: server to test against
700 :param username: server's ssh username
701 :param private_key: server's ssh private key to be used
702 :param should_connect: True/False indicates positive/negative test
703 positive - attempt ping and ssh
704 negative - attempt ping and fail if succeed
zhufl0ec74c42017-11-15 14:02:28 +0800705 :param extra_msg: Message to help with debugging if ``ping_ip_address``
706 fails
707 :param server: The server whose console to log for debugging
Ihar Hrachyshkaf9227c02016-09-15 11:16:47 +0000708 :param mtu: network MTU to use for connectivity validation
Yair Friedae0e73d2014-11-24 11:56:26 +0200709
710 :raises: AssertError if the result of the connectivity check does
711 not match the value of the should_connect param
712 """
zhufl0ec74c42017-11-15 14:02:28 +0800713 LOG.debug('checking network connections to IP %s with user: %s',
714 ip_address, username)
Yair Friedae0e73d2014-11-24 11:56:26 +0200715 if should_connect:
716 msg = "Timed out waiting for %s to become reachable" % ip_address
717 else:
718 msg = "ip address %s is reachable" % ip_address
zhufl0ec74c42017-11-15 14:02:28 +0800719 if extra_msg:
720 msg = "%s\n%s" % (extra_msg, msg)
Yair Friedae0e73d2014-11-24 11:56:26 +0200721 self.assertTrue(self.ping_ip_address(ip_address,
Ihar Hrachyshkaf9227c02016-09-15 11:16:47 +0000722 should_succeed=should_connect,
zhufl0ec74c42017-11-15 14:02:28 +0800723 mtu=mtu, server=server),
Yair Friedae0e73d2014-11-24 11:56:26 +0200724 msg=msg)
725 if should_connect:
726 # no need to check ssh for negative connectivity
zhufl0ec74c42017-11-15 14:02:28 +0800727 try:
728 self.get_remote_client(ip_address, username, private_key,
729 server=server)
730 except Exception:
731 if not extra_msg:
732 extra_msg = 'Failed to ssh to %s' % ip_address
733 LOG.exception(extra_msg)
734 raise
Yair Friedae0e73d2014-11-24 11:56:26 +0200735
736 def create_floating_ip(self, thing, pool_name=None):
Ken'ichi Ohmichia112a592015-11-17 08:49:37 +0000737 """Create a floating IP and associates to a server on Nova"""
Yair Friedae0e73d2014-11-24 11:56:26 +0200738
Marc Koderer3b57d802016-03-22 15:23:31 +0100739 if not pool_name:
740 pool_name = CONF.network.floating_network_name
John Warrene74890a2015-11-11 15:18:01 -0500741 floating_ip = (self.compute_floating_ips_client.
Ken'ichi Ohmichie037a6f2015-12-03 06:41:49 +0000742 create_floating_ip(pool=pool_name)['floating_ip'])
Jordan Pittier9e227c52016-02-09 14:35:18 +0100743 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
John Warrene74890a2015-11-11 15:18:01 -0500744 self.compute_floating_ips_client.delete_floating_ip,
Yair Friedae0e73d2014-11-24 11:56:26 +0200745 floating_ip['id'])
John Warrene74890a2015-11-11 15:18:01 -0500746 self.compute_floating_ips_client.associate_floating_ip_to_server(
Yair Friedae0e73d2014-11-24 11:56:26 +0200747 floating_ip['ip'], thing['id'])
748 return floating_ip
749
Sean Dague20e98612016-01-06 14:33:28 -0500750 def create_timestamp(self, ip_address, dev_name=None, mount_path='/mnt',
Slawek Kaplonski79d8b0f2018-07-30 22:43:41 +0200751 private_key=None, server=None):
Sean Dague20e98612016-01-06 14:33:28 -0500752 ssh_client = self.get_remote_client(ip_address,
Slawek Kaplonski79d8b0f2018-07-30 22:43:41 +0200753 private_key=private_key,
754 server=server)
Alexander Gubanovabd154c2015-09-23 23:24:06 +0300755 if dev_name is not None:
756 ssh_client.make_fs(dev_name)
Ken'ichi Ohmichi4e5a69e2017-03-01 18:15:29 -0800757 ssh_client.exec_command('sudo mount /dev/%s %s' % (dev_name,
758 mount_path))
Alexander Gubanovabd154c2015-09-23 23:24:06 +0300759 cmd_timestamp = 'sudo sh -c "date > %s/timestamp; sync"' % mount_path
760 ssh_client.exec_command(cmd_timestamp)
761 timestamp = ssh_client.exec_command('sudo cat %s/timestamp'
762 % mount_path)
763 if dev_name is not None:
Ken'ichi Ohmichi4e5a69e2017-03-01 18:15:29 -0800764 ssh_client.exec_command('sudo umount %s' % mount_path)
Alexander Gubanovabd154c2015-09-23 23:24:06 +0300765 return timestamp
766
Sean Dague20e98612016-01-06 14:33:28 -0500767 def get_timestamp(self, ip_address, dev_name=None, mount_path='/mnt',
Slawek Kaplonski79d8b0f2018-07-30 22:43:41 +0200768 private_key=None, server=None):
Sean Dague20e98612016-01-06 14:33:28 -0500769 ssh_client = self.get_remote_client(ip_address,
Slawek Kaplonski79d8b0f2018-07-30 22:43:41 +0200770 private_key=private_key,
771 server=server)
Alexander Gubanovabd154c2015-09-23 23:24:06 +0300772 if dev_name is not None:
Matt Riedemann076685a2015-09-30 14:38:16 -0700773 ssh_client.mount(dev_name, mount_path)
Alexander Gubanovabd154c2015-09-23 23:24:06 +0300774 timestamp = ssh_client.exec_command('sudo cat %s/timestamp'
775 % mount_path)
776 if dev_name is not None:
Ken'ichi Ohmichi4e5a69e2017-03-01 18:15:29 -0800777 ssh_client.exec_command('sudo umount %s' % mount_path)
Alexander Gubanovabd154c2015-09-23 23:24:06 +0300778 return timestamp
779
Sean Dague20e98612016-01-06 14:33:28 -0500780 def get_server_ip(self, server):
781 """Get the server fixed or floating IP.
782
783 Based on the configuration we're in, return a correct ip
784 address for validating that a guest is up.
785 """
Alexander Gubanovc8829f82015-11-12 10:35:13 +0200786 if CONF.validation.connect_method == 'floating':
Sean Dague20e98612016-01-06 14:33:28 -0500787 # The tests calling this method don't have a floating IP
zhufl0892cb22016-05-06 14:46:00 +0800788 # and can't make use of the validation resources. So the
Sean Dague20e98612016-01-06 14:33:28 -0500789 # method is creating the floating IP there.
790 return self.create_floating_ip(server)['ip']
791 elif CONF.validation.connect_method == 'fixed':
Matt Riedemanna7782552016-08-08 16:26:01 -0400792 # Determine the network name to look for based on config or creds
793 # provider network resources.
794 if CONF.validation.network_for_ssh:
795 addresses = server['addresses'][
796 CONF.validation.network_for_ssh]
797 else:
zhufl7b4a7202017-09-28 10:29:27 +0800798 network = self.get_tenant_network()
Matt Riedemanna7782552016-08-08 16:26:01 -0400799 addresses = (server['addresses'][network['name']]
800 if network else [])
Sean Dague20e98612016-01-06 14:33:28 -0500801 for address in addresses:
Federico Ressi2d6bcaa2018-04-11 12:37:36 +0200802 if (address['version'] == CONF.validation.ip_version_for_ssh and # noqa
803 address['OS-EXT-IPS:type'] == 'fixed'):
Sean Dague20e98612016-01-06 14:33:28 -0500804 return address['addr']
zhufl955f82b2016-07-22 11:14:34 +0800805 raise exceptions.ServerUnreachable(server_id=server['id'])
Alexander Gubanovc8829f82015-11-12 10:35:13 +0200806 else:
Matthew Treinish4217a702016-10-07 17:27:11 -0400807 raise lib_exc.InvalidConfiguration()
Alexander Gubanovc8829f82015-11-12 10:35:13 +0200808
zhufl7bc916d2018-08-22 14:47:39 +0800809 @classmethod
810 def get_host_for_server(cls, server_id):
811 server_details = cls.os_admin.servers_client.show_server(server_id)
812 return server_details['server']['OS-EXT-SRV-ATTR:host']
813
Andrea Frittoli2e733b52014-07-16 14:12:11 +0100814
Andrea Frittoli4971fc82014-09-25 10:22:20 +0100815class NetworkScenarioTest(ScenarioTest):
Yair Fried1fc32a12014-08-04 09:11:30 +0300816 """Base class for network scenario tests.
Ken'ichi Ohmichic4e4f1c2015-11-17 08:16:12 +0000817
Yair Fried1fc32a12014-08-04 09:11:30 +0300818 This class provide helpers for network scenario tests, using the neutron
819 API. Helpers from ancestor which use the nova network API are overridden
820 with the neutron API.
821
822 This Class also enforces using Neutron instead of novanetwork.
823 Subclassed tests will be skipped if Neutron is not enabled
824
825 """
826
Andrea Frittolib21de6c2015-02-06 20:12:38 +0000827 credentials = ['primary', 'admin']
828
Yair Fried1fc32a12014-08-04 09:11:30 +0300829 @classmethod
Emily Hugenbruch5e2d2a22015-02-25 21:35:45 +0000830 def skip_checks(cls):
831 super(NetworkScenarioTest, cls).skip_checks()
Andrea Frittoli2ddc2632014-09-25 11:03:00 +0100832 if not CONF.service_available.neutron:
833 raise cls.skipException('Neutron not available')
Yair Fried1fc32a12014-08-04 09:11:30 +0300834
Ken'ichi Ohmichi43e7fcf2016-04-04 11:59:13 -0700835 def _create_network(self, networks_client=None,
zhoubin5058bead72017-02-04 18:01:15 +0800836 tenant_id=None,
Markus Zoeller156b5da2016-07-11 18:10:31 +0200837 namestart='network-smoke-',
Lajos Katonac87a06b2019-01-04 13:21:48 +0100838 port_security_enabled=True, **net_dict):
John Warren94d8faf2015-09-15 12:22:24 -0400839 if not networks_client:
840 networks_client = self.networks_client
Yair Frieddb6c9e92014-08-06 08:53:13 +0300841 if not tenant_id:
Ken'ichi Ohmichi43e7fcf2016-04-04 11:59:13 -0700842 tenant_id = networks_client.tenant_id
Yair Fried1fc32a12014-08-04 09:11:30 +0300843 name = data_utils.rand_name(namestart)
Matt Riedemann039b2fe2016-09-15 16:12:24 -0400844 network_kwargs = dict(name=name, tenant_id=tenant_id)
Lajos Katonac87a06b2019-01-04 13:21:48 +0100845 if net_dict:
846 network_kwargs.update(net_dict)
Matt Riedemann039b2fe2016-09-15 16:12:24 -0400847 # Neutron disables port security by default so we have to check the
848 # config before trying to create the network with port_security_enabled
849 if CONF.network_feature_enabled.port_security:
850 network_kwargs['port_security_enabled'] = port_security_enabled
Markus Zoeller156b5da2016-07-11 18:10:31 +0200851 result = networks_client.create_network(**network_kwargs)
Steve Heyman33735f22016-05-24 09:28:08 -0500852 network = result['network']
853
854 self.assertEqual(network['name'], name)
Jordan Pittier9e227c52016-02-09 14:35:18 +0100855 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
zhoubin508bf20b32017-02-03 09:39:14 +0800856 networks_client.delete_network,
Steve Heyman33735f22016-05-24 09:28:08 -0500857 network['id'])
Yair Fried1fc32a12014-08-04 09:11:30 +0300858 return network
859
zhufl5b0a52f2017-10-24 15:48:20 +0800860 def create_subnet(self, network, subnets_client=None,
861 namestart='subnet-smoke', **kwargs):
Ken'ichi Ohmichic4e4f1c2015-11-17 08:16:12 +0000862 """Create a subnet for the given network
863
864 within the cidr block configured for tenant networks.
Yair Fried1fc32a12014-08-04 09:11:30 +0300865 """
John Warren3961acd2015-10-02 14:38:53 -0400866 if not subnets_client:
867 subnets_client = self.subnets_client
Yair Fried1fc32a12014-08-04 09:11:30 +0300868
869 def cidr_in_use(cidr, tenant_id):
Ken'ichi Ohmichic4e4f1c2015-11-17 08:16:12 +0000870 """Check cidr existence
871
lei zhangdd552b22015-11-25 20:41:48 +0800872 :returns: True if subnet with cidr already exist in tenant
873 False else
Yair Fried1fc32a12014-08-04 09:11:30 +0300874 """
jeremy.zhang5870ff12017-05-25 11:24:23 +0800875 cidr_in_use = self.os_admin.subnets_client.list_subnets(
Jordan Pittier64e6b442017-02-20 19:29:02 +0100876 tenant_id=tenant_id, cidr=cidr)['subnets']
Yair Fried1fc32a12014-08-04 09:11:30 +0300877 return len(cidr_in_use) != 0
878
Kirill Shileev14113572014-11-21 16:58:02 +0300879 ip_version = kwargs.pop('ip_version', 4)
880
881 if ip_version == 6:
882 tenant_cidr = netaddr.IPNetwork(
Sean Dagueed6e5862016-04-04 10:49:13 -0400883 CONF.network.project_network_v6_cidr)
884 num_bits = CONF.network.project_network_v6_mask_bits
Kirill Shileev14113572014-11-21 16:58:02 +0300885 else:
Sean Dagueed6e5862016-04-04 10:49:13 -0400886 tenant_cidr = netaddr.IPNetwork(CONF.network.project_network_cidr)
887 num_bits = CONF.network.project_network_mask_bits
Kirill Shileev14113572014-11-21 16:58:02 +0300888
Yair Fried1fc32a12014-08-04 09:11:30 +0300889 result = None
Kirill Shileev14113572014-11-21 16:58:02 +0300890 str_cidr = None
Yair Fried1fc32a12014-08-04 09:11:30 +0300891 # Repeatedly attempt subnet creation with sequential cidr
892 # blocks until an unallocated block is found.
Kirill Shileev14113572014-11-21 16:58:02 +0300893 for subnet_cidr in tenant_cidr.subnet(num_bits):
Yair Fried1fc32a12014-08-04 09:11:30 +0300894 str_cidr = str(subnet_cidr)
Steve Heyman33735f22016-05-24 09:28:08 -0500895 if cidr_in_use(str_cidr, tenant_id=network['tenant_id']):
Yair Fried1fc32a12014-08-04 09:11:30 +0300896 continue
897
898 subnet = dict(
899 name=data_utils.rand_name(namestart),
Steve Heyman33735f22016-05-24 09:28:08 -0500900 network_id=network['id'],
901 tenant_id=network['tenant_id'],
Yair Fried1fc32a12014-08-04 09:11:30 +0300902 cidr=str_cidr,
Kirill Shileev14113572014-11-21 16:58:02 +0300903 ip_version=ip_version,
Yair Fried1fc32a12014-08-04 09:11:30 +0300904 **kwargs
905 )
906 try:
John Warren3961acd2015-10-02 14:38:53 -0400907 result = subnets_client.create_subnet(**subnet)
Yair Fried1fc32a12014-08-04 09:11:30 +0300908 break
Masayuki Igawad9388762015-01-20 14:56:42 +0900909 except lib_exc.Conflict as e:
Yair Fried1fc32a12014-08-04 09:11:30 +0300910 is_overlapping_cidr = 'overlaps with another subnet' in str(e)
911 if not is_overlapping_cidr:
912 raise
913 self.assertIsNotNone(result, 'Unable to allocate tenant network')
Steve Heyman33735f22016-05-24 09:28:08 -0500914
915 subnet = result['subnet']
916 self.assertEqual(subnet['cidr'], str_cidr)
917
918 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
919 subnets_client.delete_subnet, subnet['id'])
920
Yair Fried1fc32a12014-08-04 09:11:30 +0300921 return subnet
922
Kirill Shileev14113572014-11-21 16:58:02 +0300923 def _get_server_port_id_and_ip4(self, server, ip_addr=None):
Hongbin Lu95a31692018-06-13 23:17:54 +0000924 if ip_addr:
925 ports = self.os_admin.ports_client.list_ports(
926 device_id=server['id'],
927 fixed_ips='ip_address=%s' % ip_addr)['ports']
928 else:
929 ports = self.os_admin.ports_client.list_ports(
930 device_id=server['id'])['ports']
Kobi Samoray166500a2016-10-09 14:42:48 +0300931 # A port can have more than one IP address in some cases.
Sean M. Collins2e896832015-12-15 13:58:47 -0500932 # If the network is dual-stack (IPv4 + IPv6), this port is associated
933 # with 2 subnets
Vasyl Saienko8fd517c2016-05-30 09:52:54 +0300934 p_status = ['ACTIVE']
935 # NOTE(vsaienko) With Ironic, instances live on separate hardware
936 # servers. Neutron does not bind ports for Ironic instances, as a
937 # result the port remains in the DOWN state.
Vasyl Saienkoc8aa34b2016-08-01 14:18:37 +0300938 # TODO(vsaienko) remove once bug: #1599836 is resolved.
Thiago Paiva66cded22016-08-15 14:55:58 -0300939 if getattr(CONF.service_available, 'ironic', False):
Vasyl Saienko8fd517c2016-05-30 09:52:54 +0300940 p_status.append('DOWN')
Daniel Mellado9e3e1062015-08-06 18:07:05 +0200941 port_map = [(p["id"], fxip["ip_address"])
942 for p in ports
943 for fxip in p["fixed_ips"]
Federico Ressi2d6bcaa2018-04-11 12:37:36 +0200944 if (netutils.is_valid_ipv4(fxip["ip_address"]) and
945 p['status'] in p_status)]
Kevin Benton1d0c1dc2016-02-04 14:30:08 -0800946 inactive = [p for p in ports if p['status'] != 'ACTIVE']
947 if inactive:
948 LOG.warning("Instance has ports that are not ACTIVE: %s", inactive)
Daniel Mellado9e3e1062015-08-06 18:07:05 +0200949
Masayuki Igawaf9009b42017-04-10 14:49:29 +0900950 self.assertNotEmpty(port_map,
John L. Villalovosb83286f2015-11-04 14:46:57 -0800951 "No IPv4 addresses found in: %s" % ports)
Daniel Mellado9e3e1062015-08-06 18:07:05 +0200952 self.assertEqual(len(port_map), 1,
953 "Found multiple IPv4 addresses: %s. "
954 "Unable to determine which port to target."
955 % port_map)
956 return port_map[0]
Yair Fried1fc32a12014-08-04 09:11:30 +0300957
David Shrewsbury9bac3662014-08-07 15:07:01 -0400958 def _get_network_by_name(self, network_name):
jeremy.zhang5870ff12017-05-25 11:24:23 +0800959 net = self.os_admin.networks_client.list_networks(
Jordan Pittier64e6b442017-02-20 19:29:02 +0100960 name=network_name)['networks']
Ferenc Horváth268ccce2017-06-08 12:39:02 +0200961 self.assertNotEmpty(net,
Adam Gandelman878a5fd2015-03-30 14:33:36 -0700962 "Unable to get network by name: %s" % network_name)
Steve Heyman33735f22016-05-24 09:28:08 -0500963 return net[0]
David Shrewsbury9bac3662014-08-07 15:07:01 -0400964
Yair Friedae0e73d2014-11-24 11:56:26 +0200965 def create_floating_ip(self, thing, external_network_id=None,
966 port_id=None, client=None):
Ken'ichi Ohmichia112a592015-11-17 08:49:37 +0000967 """Create a floating IP and associates to a resource/port on Neutron"""
Yair Friedae0e73d2014-11-24 11:56:26 +0200968 if not external_network_id:
969 external_network_id = CONF.network.public_network_id
Yair Frieddb6c9e92014-08-06 08:53:13 +0300970 if not client:
John Warrenfbf2a892015-11-17 12:36:14 -0500971 client = self.floating_ips_client
Yair Fried1fc32a12014-08-04 09:11:30 +0300972 if not port_id:
Kirill Shileev14113572014-11-21 16:58:02 +0300973 port_id, ip4 = self._get_server_port_id_and_ip4(thing)
974 else:
975 ip4 = None
David Kranz34e88122014-12-11 15:24:05 -0500976 result = client.create_floatingip(
Yair Fried1fc32a12014-08-04 09:11:30 +0300977 floating_network_id=external_network_id,
978 port_id=port_id,
Kirill Shileev14113572014-11-21 16:58:02 +0300979 tenant_id=thing['tenant_id'],
980 fixed_ip_address=ip4
Yair Fried1fc32a12014-08-04 09:11:30 +0300981 )
Steve Heyman33735f22016-05-24 09:28:08 -0500982 floating_ip = result['floatingip']
Jordan Pittier9e227c52016-02-09 14:35:18 +0100983 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
zhoubin508bf20b32017-02-03 09:39:14 +0800984 client.delete_floatingip,
Steve Heyman33735f22016-05-24 09:28:08 -0500985 floating_ip['id'])
Yair Fried1fc32a12014-08-04 09:11:30 +0300986 return floating_ip
987
Yair Fried45f92952014-06-26 05:19:19 +0300988 def check_floating_ip_status(self, floating_ip, status):
Carl Baldwina754e2d2014-10-23 22:47:41 +0000989 """Verifies floatingip reaches the given status
Yair Fried45f92952014-06-26 05:19:19 +0300990
Steve Heyman33735f22016-05-24 09:28:08 -0500991 :param dict floating_ip: floating IP dict to check status
Yair Fried45f92952014-06-26 05:19:19 +0300992 :param status: target status
993 :raises: AssertionError if status doesn't match
994 """
Steve Heyman33735f22016-05-24 09:28:08 -0500995 floatingip_id = floating_ip['id']
996
Carl Baldwina754e2d2014-10-23 22:47:41 +0000997 def refresh():
Steve Heyman33735f22016-05-24 09:28:08 -0500998 result = (self.floating_ips_client.
999 show_floatingip(floatingip_id)['floatingip'])
1000 return status == result['status']
Carl Baldwina754e2d2014-10-23 22:47:41 +00001001
zhufl4dda94e2017-03-14 16:14:46 +08001002 if not test_utils.call_until_true(refresh,
1003 CONF.network.build_timeout,
1004 CONF.network.build_interval):
1005 floating_ip = self.floating_ips_client.show_floatingip(
1006 floatingip_id)['floatingip']
1007 self.assertEqual(status, floating_ip['status'],
1008 message="FloatingIP: {fp} is at status: {cst}. "
1009 "failed to reach status: {st}"
1010 .format(fp=floating_ip, cst=floating_ip['status'],
1011 st=status))
Yair Fried45f92952014-06-26 05:19:19 +03001012 LOG.info("FloatingIP: {fp} is at status: {st}"
1013 .format(fp=floating_ip, st=status))
1014
zhufl420a0192017-09-28 11:04:50 +08001015 def check_tenant_network_connectivity(self, server,
1016 username,
1017 private_key,
1018 should_connect=True,
1019 servers_for_debug=None):
Sean Dagueed6e5862016-04-04 10:49:13 -04001020 if not CONF.network.project_networks_reachable:
Yair Fried1fc32a12014-08-04 09:11:30 +03001021 msg = 'Tenant networks not configured to be reachable.'
1022 LOG.info(msg)
1023 return
1024 # The target login is assumed to have been configured for
1025 # key-based authentication by cloud-init.
1026 try:
Béla Vancsicsb6dfa082017-03-01 10:44:58 +01001027 for ip_addresses in server['addresses'].values():
Yair Fried1fc32a12014-08-04 09:11:30 +03001028 for ip_address in ip_addresses:
ghanshyam807211c2014-12-18 13:21:22 +09001029 self.check_vm_connectivity(ip_address['addr'],
Yair Friedae0e73d2014-11-24 11:56:26 +02001030 username,
1031 private_key,
1032 should_connect=should_connect)
Yair Fried1fc32a12014-08-04 09:11:30 +03001033 except Exception as e:
1034 LOG.exception('Tenant network connectivity check failed')
1035 self._log_console_output(servers_for_debug)
Ken'ichi Ohmichi6e201f52014-10-01 04:21:39 +00001036 self._log_net_info(e)
Yair Fried1fc32a12014-08-04 09:11:30 +03001037 raise
1038
zhufle9877c62017-10-13 09:38:19 +08001039 def check_remote_connectivity(self, source, dest, should_succeed=True,
Claudiu Belu33c3e602014-08-28 16:38:01 +03001040 nic=None, protocol='icmp'):
1041 """check server connectivity via source ssh connection
YAMAMOTO Takashi4c3ebb02017-01-25 16:04:30 +09001042
Claudiu Belu33c3e602014-08-28 16:38:01 +03001043 :param source: RemoteClient: an ssh connection from which to execute
1044 the check
1045 :param dest: an IP to check connectivity against
1046 :param should_succeed: boolean should connection succeed or not
1047 :param nic: specific network interface to test connectivity from
1048 :param protocol: the protocol used to test connectivity with.
1049 :returns: True, if the connection succeeded and it was expected to
1050 succeed. False otherwise.
Yair Fried1fc32a12014-08-04 09:11:30 +03001051 """
Claudiu Belu33c3e602014-08-28 16:38:01 +03001052 method_name = '%s_check' % protocol
1053 connectivity_checker = getattr(source, method_name)
1054
1055 def connect_remote():
Yair Fried1fc32a12014-08-04 09:11:30 +03001056 try:
Claudiu Belu33c3e602014-08-28 16:38:01 +03001057 connectivity_checker(dest, nic=nic)
Andrey Pavlov64723762015-04-29 06:24:58 +03001058 except lib_exc.SSHExecCommandFailed:
Claudiu Belu33c3e602014-08-28 16:38:01 +03001059 LOG.warning('Failed to check %(protocol)s connectivity for '
1060 'IP %(dest)s via a ssh connection from: %(src)s.',
1061 dict(protocol=protocol, dest=dest,
1062 src=source.ssh_client.host))
Yair Fried1fc32a12014-08-04 09:11:30 +03001063 return not should_succeed
1064 return should_succeed
1065
Claudiu Belu33c3e602014-08-28 16:38:01 +03001066 result = test_utils.call_until_true(connect_remote,
zhufle9877c62017-10-13 09:38:19 +08001067 CONF.validation.ping_timeout, 1)
Ihar Hrachyshkaf9fda2d2017-11-06 13:16:09 -08001068 if result:
1069 return
1070
YAMAMOTO Takashi4c3ebb02017-01-25 16:04:30 +09001071 source_host = source.ssh_client.host
1072 if should_succeed:
1073 msg = "Timed out waiting for %s to become reachable from %s" \
1074 % (dest, source_host)
1075 else:
1076 msg = "%s is reachable from %s" % (dest, source_host)
Ihar Hrachyshkaf9fda2d2017-11-06 13:16:09 -08001077 self._log_console_output()
1078 self.fail(msg)
YAMAMOTO Takashi4c3ebb02017-01-25 16:04:30 +09001079
John Warren456d9ae2016-01-12 15:36:33 -05001080 def _create_security_group(self, security_group_rules_client=None,
1081 tenant_id=None,
John Warrenf9606e92015-12-10 12:12:42 -05001082 namestart='secgroup-smoke',
1083 security_groups_client=None):
John Warren456d9ae2016-01-12 15:36:33 -05001084 if security_group_rules_client is None:
1085 security_group_rules_client = self.security_group_rules_client
John Warrenf9606e92015-12-10 12:12:42 -05001086 if security_groups_client is None:
1087 security_groups_client = self.security_groups_client
Yair Frieddb6c9e92014-08-06 08:53:13 +03001088 if tenant_id is None:
John Warrenf9606e92015-12-10 12:12:42 -05001089 tenant_id = security_groups_client.tenant_id
1090 secgroup = self._create_empty_security_group(
1091 namestart=namestart, client=security_groups_client,
1092 tenant_id=tenant_id)
Yair Fried1fc32a12014-08-04 09:11:30 +03001093
1094 # Add rules to the security group
John Warrenf9606e92015-12-10 12:12:42 -05001095 rules = self._create_loginable_secgroup_rule(
John Warren456d9ae2016-01-12 15:36:33 -05001096 security_group_rules_client=security_group_rules_client,
1097 secgroup=secgroup,
John Warrenf9606e92015-12-10 12:12:42 -05001098 security_groups_client=security_groups_client)
Yair Fried1fc32a12014-08-04 09:11:30 +03001099 for rule in rules:
Steve Heyman33735f22016-05-24 09:28:08 -05001100 self.assertEqual(tenant_id, rule['tenant_id'])
1101 self.assertEqual(secgroup['id'], rule['security_group_id'])
Yair Fried1fc32a12014-08-04 09:11:30 +03001102 return secgroup
1103
Yair Frieddb6c9e92014-08-06 08:53:13 +03001104 def _create_empty_security_group(self, client=None, tenant_id=None,
Yair Fried1fc32a12014-08-04 09:11:30 +03001105 namestart='secgroup-smoke'):
1106 """Create a security group without rules.
1107
1108 Default rules will be created:
1109 - IPv4 egress to any
1110 - IPv6 egress to any
1111
1112 :param tenant_id: secgroup will be created in this tenant
Steve Heyman33735f22016-05-24 09:28:08 -05001113 :returns: the created security group
Yair Fried1fc32a12014-08-04 09:11:30 +03001114 """
1115 if client is None:
John Warrenf9606e92015-12-10 12:12:42 -05001116 client = self.security_groups_client
Yair Frieddb6c9e92014-08-06 08:53:13 +03001117 if not tenant_id:
Ken'ichi Ohmichi88f12c12014-12-24 01:02:58 +00001118 tenant_id = client.tenant_id
Yair Fried1fc32a12014-08-04 09:11:30 +03001119 sg_name = data_utils.rand_name(namestart)
1120 sg_desc = sg_name + " description"
1121 sg_dict = dict(name=sg_name,
1122 description=sg_desc)
1123 sg_dict['tenant_id'] = tenant_id
David Kranz34e88122014-12-11 15:24:05 -05001124 result = client.create_security_group(**sg_dict)
Steve Heyman33735f22016-05-24 09:28:08 -05001125
1126 secgroup = result['security_group']
1127 self.assertEqual(secgroup['name'], sg_name)
1128 self.assertEqual(tenant_id, secgroup['tenant_id'])
1129 self.assertEqual(secgroup['description'], sg_desc)
1130
Jordan Pittier9e227c52016-02-09 14:35:18 +01001131 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
Steve Heyman33735f22016-05-24 09:28:08 -05001132 client.delete_security_group, secgroup['id'])
Yair Fried1fc32a12014-08-04 09:11:30 +03001133 return secgroup
1134
John Warren456d9ae2016-01-12 15:36:33 -05001135 def _create_security_group_rule(self, secgroup=None,
1136 sec_group_rules_client=None,
John Warrenf9606e92015-12-10 12:12:42 -05001137 tenant_id=None,
1138 security_groups_client=None, **kwargs):
Yair Fried1fc32a12014-08-04 09:11:30 +03001139 """Create a rule from a dictionary of rule parameters.
1140
1141 Create a rule in a secgroup. if secgroup not defined will search for
1142 default secgroup in tenant_id.
1143
Steve Heyman33735f22016-05-24 09:28:08 -05001144 :param secgroup: the security group.
Yair Fried1fc32a12014-08-04 09:11:30 +03001145 :param tenant_id: if secgroup not passed -- the tenant in which to
1146 search for default secgroup
1147 :param kwargs: a dictionary containing rule parameters:
1148 for example, to allow incoming ssh:
1149 rule = {
1150 direction: 'ingress'
1151 protocol:'tcp',
1152 port_range_min: 22,
1153 port_range_max: 22
1154 }
1155 """
John Warren456d9ae2016-01-12 15:36:33 -05001156 if sec_group_rules_client is None:
1157 sec_group_rules_client = self.security_group_rules_client
John Warrenf9606e92015-12-10 12:12:42 -05001158 if security_groups_client is None:
1159 security_groups_client = self.security_groups_client
Yair Frieddb6c9e92014-08-06 08:53:13 +03001160 if not tenant_id:
John Warrenf9606e92015-12-10 12:12:42 -05001161 tenant_id = security_groups_client.tenant_id
Yair Fried1fc32a12014-08-04 09:11:30 +03001162 if secgroup is None:
zhuflb0b272e2017-09-22 16:01:46 +08001163 # Get default secgroup for tenant_id
1164 default_secgroups = security_groups_client.list_security_groups(
1165 name='default', tenant_id=tenant_id)['security_groups']
1166 msg = "No default security group for tenant %s." % (tenant_id)
1167 self.assertNotEmpty(default_secgroups, msg)
1168 secgroup = default_secgroups[0]
Yair Fried1fc32a12014-08-04 09:11:30 +03001169
Steve Heyman33735f22016-05-24 09:28:08 -05001170 ruleset = dict(security_group_id=secgroup['id'],
1171 tenant_id=secgroup['tenant_id'])
Yair Fried1fc32a12014-08-04 09:11:30 +03001172 ruleset.update(kwargs)
1173
John Warren456d9ae2016-01-12 15:36:33 -05001174 sg_rule = sec_group_rules_client.create_security_group_rule(**ruleset)
Steve Heyman33735f22016-05-24 09:28:08 -05001175 sg_rule = sg_rule['security_group_rule']
1176
1177 self.assertEqual(secgroup['tenant_id'], sg_rule['tenant_id'])
1178 self.assertEqual(secgroup['id'], sg_rule['security_group_id'])
Yair Fried1fc32a12014-08-04 09:11:30 +03001179
1180 return sg_rule
1181
John Warren456d9ae2016-01-12 15:36:33 -05001182 def _create_loginable_secgroup_rule(self, security_group_rules_client=None,
1183 secgroup=None,
John Warrenf9606e92015-12-10 12:12:42 -05001184 security_groups_client=None):
Ken'ichi Ohmichic4e4f1c2015-11-17 08:16:12 +00001185 """Create loginable security group rule
1186
Alex Stafeyevdd5dde92016-05-08 14:35:04 +03001187 This function will create:
1188 1. egress and ingress tcp port 22 allow rule in order to allow ssh
1189 access for ipv4.
1190 2. egress and ingress ipv6 icmp allow rule, in order to allow icmpv6.
1191 3. egress and ingress ipv4 icmp allow rule, in order to allow icmpv4.
Yair Fried1fc32a12014-08-04 09:11:30 +03001192 """
1193
John Warren456d9ae2016-01-12 15:36:33 -05001194 if security_group_rules_client is None:
1195 security_group_rules_client = self.security_group_rules_client
John Warrenf9606e92015-12-10 12:12:42 -05001196 if security_groups_client is None:
1197 security_groups_client = self.security_groups_client
Yair Fried1fc32a12014-08-04 09:11:30 +03001198 rules = []
1199 rulesets = [
1200 dict(
1201 # ssh
1202 protocol='tcp',
1203 port_range_min=22,
1204 port_range_max=22,
1205 ),
1206 dict(
1207 # ping
1208 protocol='icmp',
Andreas Scheuring887ca8e2015-02-03 17:56:12 +01001209 ),
1210 dict(
1211 # ipv6-icmp for ping6
1212 protocol='icmp',
1213 ethertype='IPv6',
Yair Fried1fc32a12014-08-04 09:11:30 +03001214 )
1215 ]
John Warren456d9ae2016-01-12 15:36:33 -05001216 sec_group_rules_client = security_group_rules_client
Yair Fried1fc32a12014-08-04 09:11:30 +03001217 for ruleset in rulesets:
1218 for r_direction in ['ingress', 'egress']:
1219 ruleset['direction'] = r_direction
1220 try:
1221 sg_rule = self._create_security_group_rule(
John Warren456d9ae2016-01-12 15:36:33 -05001222 sec_group_rules_client=sec_group_rules_client,
1223 secgroup=secgroup,
John Warrenf9606e92015-12-10 12:12:42 -05001224 security_groups_client=security_groups_client,
1225 **ruleset)
Masayuki Igawad9388762015-01-20 14:56:42 +09001226 except lib_exc.Conflict as ex:
Yair Fried1fc32a12014-08-04 09:11:30 +03001227 # if rule already exist - skip rule and continue
1228 msg = 'Security group rule already exists'
1229 if msg not in ex._error_string:
1230 raise ex
1231 else:
Steve Heyman33735f22016-05-24 09:28:08 -05001232 self.assertEqual(r_direction, sg_rule['direction'])
Yair Fried1fc32a12014-08-04 09:11:30 +03001233 rules.append(sg_rule)
1234
1235 return rules
1236
Yair Frieddb6c9e92014-08-06 08:53:13 +03001237 def _get_router(self, client=None, tenant_id=None):
Yair Fried1fc32a12014-08-04 09:11:30 +03001238 """Retrieve a router for the given tenant id.
1239
1240 If a public router has been configured, it will be returned.
1241
1242 If a public router has not been configured, but a public
1243 network has, a tenant router will be created and returned that
1244 routes traffic to the public network.
1245 """
Yair Frieddb6c9e92014-08-06 08:53:13 +03001246 if not client:
Ken'ichi Ohmichie35f4722015-12-22 04:57:11 +00001247 client = self.routers_client
Yair Frieddb6c9e92014-08-06 08:53:13 +03001248 if not tenant_id:
Ken'ichi Ohmichi88f12c12014-12-24 01:02:58 +00001249 tenant_id = client.tenant_id
Yair Fried1fc32a12014-08-04 09:11:30 +03001250 router_id = CONF.network.public_router_id
1251 network_id = CONF.network.public_network_id
1252 if router_id:
David Kranzca4c7e72015-05-27 11:39:19 -04001253 body = client.show_router(router_id)
Steve Heyman33735f22016-05-24 09:28:08 -05001254 return body['router']
Yair Fried1fc32a12014-08-04 09:11:30 +03001255 elif network_id:
zhufl3484f992017-10-10 16:18:29 +08001256 router = client.create_router(
1257 name=data_utils.rand_name(self.__class__.__name__ + '-router'),
1258 admin_state_up=True,
1259 tenant_id=tenant_id,
1260 external_gateway_info=dict(network_id=network_id))['router']
1261 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
1262 client.delete_router, router['id'])
Yair Fried1fc32a12014-08-04 09:11:30 +03001263 return router
1264 else:
1265 raise Exception("Neither of 'public_router_id' or "
1266 "'public_network_id' has been defined.")
1267
Ken'ichi Ohmichi43e7fcf2016-04-04 11:59:13 -07001268 def create_networks(self, networks_client=None,
Ken'ichi Ohmichie35f4722015-12-22 04:57:11 +00001269 routers_client=None, subnets_client=None,
Markus Zoeller156b5da2016-07-11 18:10:31 +02001270 tenant_id=None, dns_nameservers=None,
Lajos Katonac87a06b2019-01-04 13:21:48 +01001271 port_security_enabled=True, **net_dict):
Yair Fried1fc32a12014-08-04 09:11:30 +03001272 """Create a network with a subnet connected to a router.
1273
David Shrewsbury9bac3662014-08-07 15:07:01 -04001274 The baremetal driver is a special case since all nodes are
1275 on the same shared network.
1276
Yair Fried413bf2d2014-11-19 17:07:11 +02001277 :param tenant_id: id of tenant to create resources in.
1278 :param dns_nameservers: list of dns servers to send to subnet.
Lajos Katonac87a06b2019-01-04 13:21:48 +01001279 :param port_security_enabled: whether or not port_security is enabled
elajkate453fc22019-06-13 15:03:43 +02001280 :param net_dict: a dict containing experimental network information in
Lajos Katonac87a06b2019-01-04 13:21:48 +01001281 a form like this: {'provider:network_type': 'vlan',
1282 'provider:physical_network': 'foo',
1283 'provider:segmentation_id': '42'}
Yair Fried1fc32a12014-08-04 09:11:30 +03001284 :returns: network, subnet, router
1285 """
Thiago Paiva66cded22016-08-15 14:55:58 -03001286 if CONF.network.shared_physical_network:
David Shrewsbury9bac3662014-08-07 15:07:01 -04001287 # NOTE(Shrews): This exception is for environments where tenant
1288 # credential isolation is available, but network separation is
1289 # not (the current baremetal case). Likely can be removed when
1290 # test account mgmt is reworked:
1291 # https://blueprints.launchpad.net/tempest/+spec/test-accounts
Adam Gandelman878a5fd2015-03-30 14:33:36 -07001292 if not CONF.compute.fixed_network_name:
1293 m = 'fixed_network_name must be specified in config'
Matthew Treinish4217a702016-10-07 17:27:11 -04001294 raise lib_exc.InvalidConfiguration(m)
David Shrewsbury9bac3662014-08-07 15:07:01 -04001295 network = self._get_network_by_name(
1296 CONF.compute.fixed_network_name)
1297 router = None
1298 subnet = None
1299 else:
John Warren94d8faf2015-09-15 12:22:24 -04001300 network = self._create_network(
Ken'ichi Ohmichi43e7fcf2016-04-04 11:59:13 -07001301 networks_client=networks_client,
Markus Zoeller156b5da2016-07-11 18:10:31 +02001302 tenant_id=tenant_id,
Lajos Katonac87a06b2019-01-04 13:21:48 +01001303 port_security_enabled=port_security_enabled,
1304 **net_dict)
Ken'ichi Ohmichie35f4722015-12-22 04:57:11 +00001305 router = self._get_router(client=routers_client,
1306 tenant_id=tenant_id)
Ken'ichi Ohmichi43e7fcf2016-04-04 11:59:13 -07001307 subnet_kwargs = dict(network=network,
zhufl5b0a52f2017-10-24 15:48:20 +08001308 subnets_client=subnets_client)
Yair Fried413bf2d2014-11-19 17:07:11 +02001309 # use explicit check because empty list is a valid option
1310 if dns_nameservers is not None:
1311 subnet_kwargs['dns_nameservers'] = dns_nameservers
zhufl5b0a52f2017-10-24 15:48:20 +08001312 subnet = self.create_subnet(**subnet_kwargs)
Steve Heyman33735f22016-05-24 09:28:08 -05001313 if not routers_client:
1314 routers_client = self.routers_client
1315 router_id = router['id']
1316 routers_client.add_router_interface(router_id,
1317 subnet_id=subnet['id'])
1318
1319 # save a cleanup job to remove this association between
1320 # router and subnet
1321 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
1322 routers_client.remove_router_interface, router_id,
1323 subnet_id=subnet['id'])
Yair Fried1fc32a12014-08-04 09:11:30 +03001324 return network, subnet, router
1325
1326
Masayuki Igawa1f0ad632014-08-05 13:36:56 +09001327class EncryptionScenarioTest(ScenarioTest):
Ken'ichi Ohmichic4e4f1c2015-11-17 08:16:12 +00001328 """Base class for encryption scenario tests"""
Kaitlin Farr366a51f2014-04-21 12:43:54 -04001329
Andrea Frittolib21de6c2015-02-06 20:12:38 +00001330 credentials = ['primary', 'admin']
David Kranz4cc852b2015-03-09 14:57:11 -04001331
1332 @classmethod
Emily Hugenbruch5e2d2a22015-02-25 21:35:45 +00001333 def setup_clients(cls):
1334 super(EncryptionScenarioTest, cls).setup_clients()
ghanshyam6c682ff2018-08-06 09:54:45 +00001335 cls.admin_volume_types_client = cls.os_admin.volume_types_client_latest
ghanshyam3bd0d2b2017-03-23 01:57:28 +00001336 cls.admin_encryption_types_client =\
ghanshyam6c682ff2018-08-06 09:54:45 +00001337 cls.os_admin.encryption_types_client_latest
Kaitlin Farr366a51f2014-04-21 12:43:54 -04001338
Kaitlin Farr366a51f2014-04-21 12:43:54 -04001339 def create_encryption_type(self, client=None, type_id=None, provider=None,
1340 key_size=None, cipher=None,
1341 control_location=None):
1342 if not client:
Ken'ichi Ohmichia6ebf622016-08-25 11:52:27 -07001343 client = self.admin_encryption_types_client
Kaitlin Farr366a51f2014-04-21 12:43:54 -04001344 if not type_id:
1345 volume_type = self.create_volume_type()
Masayuki Igawa1f0ad632014-08-05 13:36:56 +09001346 type_id = volume_type['id']
Kaitlin Farr366a51f2014-04-21 12:43:54 -04001347 LOG.debug("Creating an encryption type for volume type: %s", type_id)
Masayuki Igawa1f0ad632014-08-05 13:36:56 +09001348 client.create_encryption_type(
1349 type_id, provider=provider, key_size=key_size, cipher=cipher,
jeremy.zhangb6f67f62018-02-11 09:28:52 +08001350 control_location=control_location)
Kaitlin Farr366a51f2014-04-21 12:43:54 -04001351
lkuchlan3023e752017-06-08 12:53:13 +03001352 def create_encrypted_volume(self, encryption_provider, volume_type,
1353 key_size=256, cipher='aes-xts-plain64',
1354 control_location='front-end'):
1355 volume_type = self.create_volume_type(name=volume_type)
1356 self.create_encryption_type(type_id=volume_type['id'],
1357 provider=encryption_provider,
1358 key_size=key_size,
1359 cipher=cipher,
1360 control_location=control_location)
1361 return self.create_volume(volume_type=volume_type['name'])
1362
Kaitlin Farr366a51f2014-04-21 12:43:54 -04001363
Masayuki Igawa0870db52015-09-18 21:08:36 +09001364class ObjectStorageScenarioTest(ScenarioTest):
Ken'ichi Ohmichic4e4f1c2015-11-17 08:16:12 +00001365 """Provide harness to do Object Storage scenario tests.
Chris Dent0d494112014-08-26 13:48:30 +01001366
1367 Subclasses implement the tests that use the methods provided by this
1368 class.
1369 """
1370
1371 @classmethod
Emily Hugenbruch5e2d2a22015-02-25 21:35:45 +00001372 def skip_checks(cls):
Masayuki Igawa0870db52015-09-18 21:08:36 +09001373 super(ObjectStorageScenarioTest, cls).skip_checks()
Chris Dent0d494112014-08-26 13:48:30 +01001374 if not CONF.service_available.swift:
1375 skip_msg = ("%s skipped as swift is not available" %
1376 cls.__name__)
1377 raise cls.skipException(skip_msg)
Emily Hugenbruch5e2d2a22015-02-25 21:35:45 +00001378
1379 @classmethod
1380 def setup_credentials(cls):
Masayuki Igawa60ea6c52014-10-15 17:32:14 +09001381 cls.set_network_resources()
Masayuki Igawa0870db52015-09-18 21:08:36 +09001382 super(ObjectStorageScenarioTest, cls).setup_credentials()
Matthew Treinish4a596932015-03-06 20:37:01 -05001383 operator_role = CONF.object_storage.operator_role
Andrea Frittoli (andreaf)737fac92015-05-12 16:14:35 +01001384 cls.os_operator = cls.get_client_manager(roles=[operator_role])
Emily Hugenbruch5e2d2a22015-02-25 21:35:45 +00001385
1386 @classmethod
1387 def setup_clients(cls):
Masayuki Igawa0870db52015-09-18 21:08:36 +09001388 super(ObjectStorageScenarioTest, cls).setup_clients()
Chris Dent0d494112014-08-26 13:48:30 +01001389 # Clients for Swift
Matthew Treinish8f268292015-02-24 20:01:36 -05001390 cls.account_client = cls.os_operator.account_client
1391 cls.container_client = cls.os_operator.container_client
1392 cls.object_client = cls.os_operator.object_client
Chris Dent0d494112014-08-26 13:48:30 +01001393
Chris Dentde456a12014-09-10 12:41:15 +01001394 def get_swift_stat(self):
Chris Dent0d494112014-08-26 13:48:30 +01001395 """get swift status for our user account."""
1396 self.account_client.list_account_containers()
1397 LOG.debug('Swift status information obtained successfully')
1398
Chris Dentde456a12014-09-10 12:41:15 +01001399 def create_container(self, container_name=None):
Chris Dent0d494112014-08-26 13:48:30 +01001400 name = container_name or data_utils.rand_name(
1401 'swift-scenario-container')
ghanshyameed40312017-09-15 18:30:04 +03001402 self.container_client.update_container(name)
Chris Dent0d494112014-08-26 13:48:30 +01001403 # look for the container to assure it is created
Chris Dentde456a12014-09-10 12:41:15 +01001404 self.list_and_check_container_objects(name)
Jordan Pittier525ec712016-12-07 17:51:26 +01001405 LOG.debug('Container %s created', name)
Jordan Pittier9e227c52016-02-09 14:35:18 +01001406 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
Chris Dent1d4313a2014-10-28 12:16:48 +00001407 self.container_client.delete_container,
1408 name)
Chris Dent0d494112014-08-26 13:48:30 +01001409 return name
1410
Chris Dentde456a12014-09-10 12:41:15 +01001411 def delete_container(self, container_name):
Chris Dent0d494112014-08-26 13:48:30 +01001412 self.container_client.delete_container(container_name)
Jordan Pittier525ec712016-12-07 17:51:26 +01001413 LOG.debug('Container %s deleted', container_name)
Chris Dent0d494112014-08-26 13:48:30 +01001414
Chris Dentde456a12014-09-10 12:41:15 +01001415 def upload_object_to_container(self, container_name, obj_name=None):
Chris Dent0d494112014-08-26 13:48:30 +01001416 obj_name = obj_name or data_utils.rand_name('swift-scenario-object')
Jordan Pittierb84f2d42016-12-21 19:02:15 +01001417 obj_data = data_utils.random_bytes()
Chris Dent0d494112014-08-26 13:48:30 +01001418 self.object_client.create_object(container_name, obj_name, obj_data)
Jordan Pittier9e227c52016-02-09 14:35:18 +01001419 self.addCleanup(test_utils.call_and_ignore_notfound_exc,
Chris Dent1d4313a2014-10-28 12:16:48 +00001420 self.object_client.delete_object,
1421 container_name,
1422 obj_name)
Chris Dent0d494112014-08-26 13:48:30 +01001423 return obj_name, obj_data
1424
Chris Dentde456a12014-09-10 12:41:15 +01001425 def delete_object(self, container_name, filename):
Chris Dent0d494112014-08-26 13:48:30 +01001426 self.object_client.delete_object(container_name, filename)
Chris Dentde456a12014-09-10 12:41:15 +01001427 self.list_and_check_container_objects(container_name,
1428 not_present_obj=[filename])
Chris Dent0d494112014-08-26 13:48:30 +01001429
Chris Dentde456a12014-09-10 12:41:15 +01001430 def list_and_check_container_objects(self, container_name,
1431 present_obj=None,
1432 not_present_obj=None):
Ken'ichi Ohmichic4e4f1c2015-11-17 08:16:12 +00001433 # List objects for a given container and assert which are present and
1434 # which are not.
Ghanshyam2a180b82014-06-16 13:54:22 +09001435 if present_obj is None:
1436 present_obj = []
1437 if not_present_obj is None:
1438 not_present_obj = []
ghanshyam871b1a82017-09-14 02:56:16 +03001439 _, object_list = self.container_client.list_container_objects(
Chris Dent0d494112014-08-26 13:48:30 +01001440 container_name)
1441 if present_obj:
1442 for obj in present_obj:
1443 self.assertIn(obj, object_list)
1444 if not_present_obj:
1445 for obj in not_present_obj:
1446 self.assertNotIn(obj, object_list)
1447
Chris Dentde456a12014-09-10 12:41:15 +01001448 def download_and_verify(self, container_name, obj_name, expected_data):
Chris Dent0d494112014-08-26 13:48:30 +01001449 _, obj = self.object_client.get_object(container_name, obj_name)
1450 self.assertEqual(obj, expected_data)