mirror of
https://github.com/hauler-dev/hauler.git
synced 2026-08-19 04:16:27 +00:00
testing and linting updates (#305)
* updated makefile operations * upgraded testdata and related tests * initial updates for tests * fixed errors with testdata * last bit of updates to tests * cleaned and commented makefile * updated tests for latest merges --------- Signed-off-by: Zack Brady <zackbrady123@gmail.com>
This commit is contained in:
+179
@@ -0,0 +1,179 @@
|
||||
#!/bin/bash
|
||||
|
||||
set -e
|
||||
|
||||
# setup directories
|
||||
mkdir -p testdata/certs
|
||||
cd testdata/certs
|
||||
|
||||
echo "<!-----------------------------------!>"
|
||||
echo "<! Certificate Authority Certificate !>"
|
||||
echo "<!-----------------------------------!>"
|
||||
|
||||
echo "Generating certificate authority private key..."
|
||||
openssl genrsa -out root-ca.key 4096
|
||||
|
||||
echo "Generating certificate authority configuration file..."
|
||||
cat <<EOF > root-ca.cnf
|
||||
[ req ]
|
||||
default_bits = 4096
|
||||
default_keyfile = root-ca.key
|
||||
distinguished_name = req_distinguished_name
|
||||
req_extensions = v3_ca
|
||||
prompt = no
|
||||
|
||||
[ req_distinguished_name ]
|
||||
C = US
|
||||
ST = VIRGINIA
|
||||
L = RESTON
|
||||
O = HAULER
|
||||
OU = HAULER DEV
|
||||
CN = CERTIFICATE AUTHORITY CERTIFICATE
|
||||
|
||||
[v3_ca]
|
||||
keyUsage = critical, keyCertSign, cRLSign
|
||||
extendedKeyUsage = anyExtendedKeyUsage
|
||||
basicConstraints = critical, CA:TRUE
|
||||
EOF
|
||||
|
||||
echo "Generating certificate authority certificate signing request..."
|
||||
openssl req -new -sha256 -key root-ca.key -out root-ca.csr -config root-ca.cnf
|
||||
|
||||
echo "Generating certificate authority certificate..."
|
||||
openssl x509 -req -in root-ca.csr -signkey root-ca.key -days 3650 -out root-ca.crt -extensions v3_ca -extfile root-ca.cnf
|
||||
|
||||
echo "Inspecting certificate authority certificate..."
|
||||
openssl x509 -text -noout -in root-ca.crt > ca.txt
|
||||
|
||||
echo "<!------------------------------------------------!>"
|
||||
echo "<! Intermediary Certificate Authority Certificate !>"
|
||||
echo "<!------------------------------------------------!>"
|
||||
|
||||
echo "Generating intermediary certificate authority private key..."
|
||||
openssl genrsa -out intermediary-ca.key 4096
|
||||
|
||||
echo "Generating intermediary certificate authority configuration file..."
|
||||
cat <<EOF > intermediary-ca.cnf
|
||||
[ req ]
|
||||
default_bits = 4096
|
||||
default_keyfile = intermediary-ca.key
|
||||
distinguished_name = req_distinguished_name
|
||||
req_extensions = v3_ca
|
||||
prompt = no
|
||||
|
||||
[ req_distinguished_name ]
|
||||
C = US
|
||||
ST = VIRGINIA
|
||||
L = RESTON
|
||||
O = HAULER
|
||||
OU = HAULER DEV
|
||||
CN = INTERMEDIARY CERTIFICATE AUTHORITY CERTIFICATE
|
||||
|
||||
[v3_ca]
|
||||
keyUsage = critical, keyCertSign, cRLSign
|
||||
extendedKeyUsage = anyExtendedKeyUsage
|
||||
basicConstraints = critical, CA:TRUE
|
||||
EOF
|
||||
|
||||
echo "Generating intermediary certificate authority certificate signing request..."
|
||||
openssl req -new -sha256 -key intermediary-ca.key -out intermediary-ca.csr -config intermediary-ca.cnf
|
||||
|
||||
echo "Generating intermediary certificate authority certificate..."
|
||||
openssl x509 -req -in intermediary-ca.csr -CA root-ca.crt -CAkey root-ca.key -CAcreateserial -out intermediary-ca.crt -days 3650 -sha256 -extfile intermediary-ca.cnf -extensions v3_ca
|
||||
|
||||
echo "Inspecting intermediary certificate authority certificate..."
|
||||
openssl x509 -text -noout -in intermediary-ca.crt > intermediary-ca.txt
|
||||
|
||||
echo "Verifying intermediary certificate authority certificate..."
|
||||
openssl verify -CAfile root-ca.crt intermediary-ca.crt
|
||||
|
||||
echo "Generating full certificate chain..."
|
||||
cat intermediary-ca.crt root-ca.crt > cacerts.pem
|
||||
|
||||
echo "<!-----------------------------------------------------------------!>"
|
||||
echo "<! Server Certificate Signed by Intermediary Certificate Authority !>"
|
||||
echo "<!-----------------------------------------------------------------!>"
|
||||
|
||||
echo "Generating server private key..."
|
||||
openssl genrsa -out server-cert.key 4096
|
||||
|
||||
echo "Generating server certificate signing config file..."
|
||||
cat <<EOF > server-cert.cnf
|
||||
[ req ]
|
||||
default_bits = 4096
|
||||
default_keyfile = server-cert.key
|
||||
distinguished_name = req_distinguished_name
|
||||
req_extensions = v3_req
|
||||
prompt = no
|
||||
|
||||
[ req_distinguished_name ]
|
||||
C = US
|
||||
ST = VIRGINIA
|
||||
L = RESTON
|
||||
O = HAULER
|
||||
OU = HAULER DEV
|
||||
CN = SERVER CERTIFICATE
|
||||
|
||||
[v3_req]
|
||||
keyUsage = digitalSignature, keyEncipherment
|
||||
extendedKeyUsage = serverAuth
|
||||
subjectAltName = @alt_names
|
||||
|
||||
[ alt_names ]
|
||||
DNS.1 = localhost
|
||||
DNS.2 = registry.localhost
|
||||
DNS.3 = fileserver.localhost
|
||||
EOF
|
||||
|
||||
echo "Generating server certificate signing request..."
|
||||
openssl req -new -sha256 -key server-cert.key -out server-cert.csr -config server-cert.cnf
|
||||
|
||||
echo "Generating server certificate..."
|
||||
openssl x509 -req -in server-cert.csr -CA intermediary-ca.crt -CAkey intermediary-ca.key -CAcreateserial -out server-cert.crt -days 3650 -sha256 -extfile server-cert.cnf -extensions v3_req
|
||||
|
||||
echo "Inspecting server certificate..."
|
||||
openssl x509 -text -noout -in server-cert.crt > server-cert.txt
|
||||
|
||||
echo "Verifying server certificate..."
|
||||
openssl verify -CAfile cacerts.pem server-cert.crt
|
||||
|
||||
echo "<!-----------------------------------------------------------------!>"
|
||||
echo "<! Client Certificate Signed by Intermediary Certificate Authority !>"
|
||||
echo "<!-----------------------------------------------------------------!>"
|
||||
|
||||
echo "Generating client private key..."
|
||||
openssl genrsa -out client-cert.key 4096
|
||||
|
||||
echo "Generating client certificate signing config file..."
|
||||
cat <<EOF > client-cert.cnf
|
||||
[ req ]
|
||||
default_bits = 4096
|
||||
default_keyfile = client-cert.key
|
||||
distinguished_name = req_distinguished_name
|
||||
req_extensions = v3_req
|
||||
prompt = no
|
||||
|
||||
[ req_distinguished_name ]
|
||||
C = US
|
||||
ST = VIRGINIA
|
||||
L = RESTON
|
||||
O = HAULER
|
||||
OU = HAULER DEV
|
||||
CN = CLIENT CERTIFICATE
|
||||
|
||||
[ v3_req ]
|
||||
keyUsage = digitalSignature
|
||||
extendedKeyUsage = clientAuth
|
||||
EOF
|
||||
|
||||
echo "Generating client certificate signing request..."
|
||||
openssl req -new -sha256 -key client-cert.key -out client-cert.csr -config client-cert.cnf
|
||||
|
||||
echo "Generating client certificate..."
|
||||
openssl x509 -req -in client-cert.csr -CA intermediary-ca.crt -CAkey intermediary-ca.key -CAcreateserial -out client-cert.crt -days 3650 -sha256 -extfile client-cert.cnf -extensions v3_req
|
||||
|
||||
echo "Inspecting client certificate..."
|
||||
openssl x509 -text -noout -in client-cert.crt > client-cert.txt
|
||||
|
||||
echo "Verifying client certificate..."
|
||||
openssl verify -CAfile cacerts.pem client-cert.crt
|
||||
BIN
Binary file not shown.
+48
@@ -0,0 +1,48 @@
|
||||
apiVersion: content.hauler.cattle.io/v1alpha1
|
||||
kind: Images
|
||||
metadata:
|
||||
name: hauler-content-images-example
|
||||
spec:
|
||||
images:
|
||||
- name: busybox
|
||||
- name: busybox:stable
|
||||
platform: linux/amd64
|
||||
- name: gcr.io/distroless/base@sha256:7fa7445dfbebae4f4b7ab0e6ef99276e96075ae42584af6286ba080750d6dfe5
|
||||
---
|
||||
apiVersion: content.hauler.cattle.io/v1alpha1
|
||||
kind: Charts
|
||||
metadata:
|
||||
name: hauler-content-charts-example
|
||||
spec:
|
||||
charts:
|
||||
- name: rancher
|
||||
repoURL: https://releases.rancher.com/server-charts/stable
|
||||
- name: rancher
|
||||
repoURL: https://releases.rancher.com/server-charts/stable
|
||||
version: 2.8.4
|
||||
- name: rancher
|
||||
repoURL: https://releases.rancher.com/server-charts/stable
|
||||
version: 2.8.3
|
||||
- name: hauler-helm
|
||||
repoURL: oci://ghcr.io/hauler-dev
|
||||
- name: hauler-helm
|
||||
repoURL: oci://ghcr.io/hauler-dev
|
||||
version: 1.0.6
|
||||
- name: hauler-helm
|
||||
repoURL: oci://ghcr.io/hauler-dev
|
||||
version: 1.0.4
|
||||
- name: rancher-cluster-templates-0.5.2.tgz
|
||||
repoURL: .
|
||||
---
|
||||
apiVersion: content.hauler.cattle.io/v1alpha1
|
||||
kind: Files
|
||||
metadata:
|
||||
name: hauler-content-files-example
|
||||
spec:
|
||||
files:
|
||||
- path: https://get.rke2.io/install.sh
|
||||
- path: https://get.rke2.io/install.sh
|
||||
name: rke2-install.sh
|
||||
- path: testdata/hauler-manifest.yaml
|
||||
- path: testdata/hauler-manifest.yaml
|
||||
name: hauler-manifest-local.yaml
|
||||
Vendored
+8
-2
@@ -4,7 +4,10 @@ metadata:
|
||||
name: hauler-content-images-example
|
||||
spec:
|
||||
images:
|
||||
- name: busybox:latest
|
||||
- name: busybox
|
||||
- name: busybox:stable
|
||||
platform: linux/amd64
|
||||
- name: gcr.io/distroless/base@sha256:7fa7445dfbebae4f4b7ab0e6ef99276e96075ae42584af6286ba080750d6dfe5
|
||||
---
|
||||
apiVersion: content.hauler.cattle.io/v1alpha1
|
||||
kind: Charts
|
||||
@@ -14,7 +17,9 @@ spec:
|
||||
charts:
|
||||
- name: rancher
|
||||
repoURL: https://releases.rancher.com/server-charts/stable
|
||||
version: 2.8.2
|
||||
version: 2.8.5
|
||||
- name: hauler-helm
|
||||
repoURL: oci://ghcr.io/hauler-dev
|
||||
---
|
||||
apiVersion: content.hauler.cattle.io/v1alpha1
|
||||
kind: Files
|
||||
@@ -24,3 +29,4 @@ spec:
|
||||
files:
|
||||
- path: https://get.rke2.io
|
||||
name: install.sh
|
||||
- path: testdata/hauler-manifest.yaml
|
||||
|
||||
BIN
Binary file not shown.
BIN
Binary file not shown.
Reference in New Issue
Block a user