summary refs log tree commit diff
path: root/nixos/tests/containers-ephemeral.nix
blob: 1ef8717d9a0e1ea1f7e116eb17ced3ef80141367 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
# Test for NixOS' container support.

import ./make-test.nix ({ pkgs, ...} : {
  name = "containers-ephemeral";

  machine = { pkgs, ... }: {
    virtualisation.memorySize = 768;
    virtualisation.writableStore = true;

    containers.webserver = {
      ephemeral = true;
      privateNetwork = true;
      hostAddress = "10.231.136.1";
      localAddress = "10.231.136.2";
      config = {
        services.nginx = {
          enable = true;
          virtualHosts.localhost = {
            root = (pkgs.runCommand "localhost" {} ''
              mkdir "$out"
              echo hello world > "$out/index.html"
            '');
          };
        };
        networking.firewall.allowedTCPPorts = [ 80 ];
      };
    };
  };

  testScript = ''
    $machine->succeed("nixos-container list") =~ /webserver/ or die;

    # Start the webserver container.
    $machine->succeed("nixos-container start webserver");

    # Check that container got its own root folder
    $machine->succeed("ls /run/containers/webserver");

    # Check that container persistent directory is not created
    $machine->fail("ls /var/lib/containers/webserver");

    # Since "start" returns after the container has reached
    # multi-user.target, we should now be able to access it.
    my $ip = $machine->succeed("nixos-container show-ip webserver");
    chomp $ip;
    $machine->succeed("ping -n -c1 $ip");
    $machine->succeed("curl --fail http://$ip/ > /dev/null");

    # Stop the container.
    $machine->succeed("nixos-container stop webserver");
    $machine->fail("curl --fail --connect-timeout 2 http://$ip/ > /dev/null");

    # Check that container's root folder was removed
    $machine->fail("ls /run/containers/webserver");
  '';
})