2021-07-12 18:27:48 +00:00
|
|
|
/*
|
|
|
|
Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
you may not use this file except in compliance with the License.
|
|
|
|
You may obtain a copy of the License at
|
|
|
|
|
2022-10-06 17:14:13 +00:00
|
|
|
http://www.apache.org/licenses/LICENSE-2.0
|
2021-07-12 18:27:48 +00:00
|
|
|
|
|
|
|
Unless required by applicable law or agreed to in writing, software
|
|
|
|
distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
See the License for the specific language governing permissions and
|
|
|
|
limitations under the License.
|
|
|
|
*/
|
|
|
|
package framework
|
|
|
|
|
|
|
|
import (
|
|
|
|
"context"
|
2022-05-23 14:14:21 +00:00
|
|
|
"time"
|
2021-07-12 18:27:48 +00:00
|
|
|
|
|
|
|
//nolint
|
2022-10-06 17:14:13 +00:00
|
|
|
"github.com/external-secrets/external-secrets-e2e/framework/log"
|
2022-03-23 09:31:52 +00:00
|
|
|
esv1alpha1 "github.com/external-secrets/external-secrets/apis/externalsecrets/v1alpha1"
|
2022-03-09 16:40:20 +00:00
|
|
|
esv1beta1 "github.com/external-secrets/external-secrets/apis/externalsecrets/v1beta1"
|
2023-01-03 22:02:43 +00:00
|
|
|
. "github.com/onsi/gomega"
|
|
|
|
v1 "k8s.io/api/core/v1"
|
|
|
|
metav1 "k8s.io/apimachinery/pkg/apis/meta/v1"
|
|
|
|
"sigs.k8s.io/controller-runtime/pkg/client"
|
2021-07-12 18:27:48 +00:00
|
|
|
)
|
|
|
|
|
2021-09-22 19:51:54 +00:00
|
|
|
var TargetSecretName = "target-secret"
|
2021-07-12 18:27:48 +00:00
|
|
|
|
|
|
|
// TestCase contains the test infra to run a table driven test.
|
|
|
|
type TestCase struct {
|
2022-03-23 09:31:52 +00:00
|
|
|
Framework *Framework
|
|
|
|
ExternalSecret *esv1beta1.ExternalSecret
|
|
|
|
ExternalSecretV1Alpha1 *esv1alpha1.ExternalSecret
|
2023-01-03 22:02:43 +00:00
|
|
|
AdditionalObjects []client.Object
|
2022-03-23 09:31:52 +00:00
|
|
|
Secrets map[string]SecretEntry
|
|
|
|
ExpectedSecret *v1.Secret
|
2022-04-05 11:38:06 +00:00
|
|
|
AfterSync func(SecretStoreProvider, *v1.Secret)
|
2021-07-12 18:27:48 +00:00
|
|
|
}
|
|
|
|
|
2022-03-24 16:09:32 +00:00
|
|
|
type SecretEntry struct {
|
|
|
|
Value string
|
|
|
|
Tags map[string]string
|
|
|
|
}
|
|
|
|
|
2021-07-12 18:27:48 +00:00
|
|
|
// SecretStoreProvider is a interface that must be implemented
|
|
|
|
// by a provider that runs the e2e test.
|
|
|
|
type SecretStoreProvider interface {
|
2022-03-24 16:09:32 +00:00
|
|
|
CreateSecret(key string, val SecretEntry)
|
2021-07-12 18:27:48 +00:00
|
|
|
DeleteSecret(key string)
|
|
|
|
}
|
|
|
|
|
|
|
|
// TableFunc returns the main func that runs a TestCase in a table driven test.
|
2021-08-04 13:18:56 +00:00
|
|
|
func TableFunc(f *Framework, prov SecretStoreProvider) func(...func(*TestCase)) {
|
|
|
|
return func(tweaks ...func(*TestCase)) {
|
2021-07-12 18:27:48 +00:00
|
|
|
var err error
|
|
|
|
|
|
|
|
// make default test case
|
|
|
|
// and apply customization to it
|
|
|
|
tc := makeDefaultTestCase(f)
|
2021-08-04 13:18:56 +00:00
|
|
|
for _, tweak := range tweaks {
|
|
|
|
tweak(tc)
|
|
|
|
}
|
2021-07-12 18:27:48 +00:00
|
|
|
|
|
|
|
// create secrets & defer delete
|
|
|
|
for k, v := range tc.Secrets {
|
|
|
|
key := k
|
|
|
|
prov.CreateSecret(key, v)
|
|
|
|
defer func() {
|
|
|
|
prov.DeleteSecret(key)
|
|
|
|
}()
|
|
|
|
}
|
|
|
|
|
2022-03-23 09:31:52 +00:00
|
|
|
// create v1alpha1 external secret, if provided
|
|
|
|
if tc.ExternalSecretV1Alpha1 != nil {
|
|
|
|
err = tc.Framework.CRClient.Create(context.Background(), tc.ExternalSecretV1Alpha1)
|
|
|
|
Expect(err).ToNot(HaveOccurred())
|
2024-01-18 23:43:28 +00:00
|
|
|
} else if tc.ExternalSecret != nil {
|
2022-03-23 09:31:52 +00:00
|
|
|
// create v1beta1 external secret otherwise
|
|
|
|
err = tc.Framework.CRClient.Create(context.Background(), tc.ExternalSecret)
|
|
|
|
Expect(err).ToNot(HaveOccurred())
|
|
|
|
}
|
2023-01-03 22:02:43 +00:00
|
|
|
if tc.AdditionalObjects != nil {
|
|
|
|
for _, obj := range tc.AdditionalObjects {
|
|
|
|
err = tc.Framework.CRClient.Create(context.Background(), obj)
|
|
|
|
Expect(err).ToNot(HaveOccurred())
|
|
|
|
}
|
|
|
|
}
|
2021-09-22 19:51:54 +00:00
|
|
|
// in case target name is empty
|
2024-01-18 23:43:28 +00:00
|
|
|
if tc.ExternalSecret != nil && tc.ExternalSecret.Spec.Target.Name == "" {
|
2021-09-22 19:51:54 +00:00
|
|
|
TargetSecretName = tc.ExternalSecret.ObjectMeta.Name
|
|
|
|
}
|
|
|
|
|
2021-07-12 18:27:48 +00:00
|
|
|
// wait for Kind=Secret to have the expected data
|
2024-01-18 23:43:28 +00:00
|
|
|
if tc.ExpectedSecret != nil {
|
|
|
|
secret, err := tc.Framework.WaitForSecretValue(tc.Framework.Namespace.Name, TargetSecretName, tc.ExpectedSecret)
|
|
|
|
if err != nil {
|
|
|
|
f.printESDebugLogs(tc.ExternalSecret.Name, tc.ExternalSecret.Namespace)
|
|
|
|
log.Logf("Did not match. Expected: %+v, Got: %+v", tc.ExpectedSecret, secret)
|
|
|
|
}
|
2021-12-29 12:02:56 +00:00
|
|
|
|
2024-01-18 23:43:28 +00:00
|
|
|
Expect(err).ToNot(HaveOccurred())
|
|
|
|
tc.AfterSync(prov, secret)
|
|
|
|
} else {
|
|
|
|
tc.AfterSync(prov, nil)
|
|
|
|
}
|
2021-07-12 18:27:48 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
func makeDefaultTestCase(f *Framework) *TestCase {
|
|
|
|
return &TestCase{
|
2022-04-05 11:38:06 +00:00
|
|
|
AfterSync: func(ssp SecretStoreProvider, s *v1.Secret) {},
|
2021-07-12 18:27:48 +00:00
|
|
|
Framework: f,
|
2022-03-09 16:40:20 +00:00
|
|
|
ExternalSecret: &esv1beta1.ExternalSecret{
|
2021-07-12 18:27:48 +00:00
|
|
|
ObjectMeta: metav1.ObjectMeta{
|
|
|
|
Name: "e2e-es",
|
|
|
|
Namespace: f.Namespace.Name,
|
|
|
|
},
|
2022-03-09 16:40:20 +00:00
|
|
|
Spec: esv1beta1.ExternalSecretSpec{
|
2022-05-23 14:14:21 +00:00
|
|
|
RefreshInterval: &metav1.Duration{Duration: time.Second * 5},
|
2022-03-09 16:40:20 +00:00
|
|
|
SecretStoreRef: esv1beta1.SecretStoreRef{
|
2021-07-12 18:27:48 +00:00
|
|
|
Name: f.Namespace.Name,
|
|
|
|
},
|
2022-03-09 16:40:20 +00:00
|
|
|
Target: esv1beta1.ExternalSecretTarget{
|
2021-07-12 18:27:48 +00:00
|
|
|
Name: TargetSecretName,
|
|
|
|
},
|
|
|
|
},
|
|
|
|
},
|
|
|
|
}
|
|
|
|
}
|