One name per thing, per the HQ glossary: the module/container/image/binary/repo becomes mesh-controller, the seat the-controller, and the store+broker pair the foundation (embedded base bundles, default template and example lock renamed with their go:embed directives). No behaviour change — a pure vocabulary rename. Claude-Session: https://claude.ai/code/session_01D6qtiYU3P9jk3pnAXyAFyx
92 lines
3.3 KiB
Go
92 lines
3.3 KiB
Go
package bootstrap
|
|
|
|
import (
|
|
"context"
|
|
"errors"
|
|
"strings"
|
|
"testing"
|
|
)
|
|
|
|
// `mesh-host` is built for one operating system and pins it at link time. An installer run by hand
|
|
// has no link time, so it asks — and it does not guess: each system already knows how to prove it
|
|
// is the one it claims to be, by asking its package database about a package that is certainly
|
|
// there. Getting this wrong installs with the wrong package manager and the wrong unit names.
|
|
|
|
func TestTheMachineIsAskedWhichSystemItIs(t *testing.T) {
|
|
// Only pacman answers, so this is the arch host and nothing had to be told so.
|
|
onlyPacman := func(_ context.Context, name string, _ ...string) (string, error) {
|
|
if name == "pacman" {
|
|
return "pacman 7.0.0-1\n", nil
|
|
}
|
|
return "", errors.New("command not found")
|
|
}
|
|
|
|
chosen, err := WorkOutSystem(context.Background(), onlyPacman, "")
|
|
if err != nil {
|
|
t.Fatal(err)
|
|
}
|
|
if chosen.Name() != "arch" {
|
|
t.Errorf("this machine was worked out to be %q", chosen.Name())
|
|
}
|
|
}
|
|
|
|
// A machine that is none of them is refused with what each of them said. "Unsupported system" is
|
|
// a sentence nobody can act on; "pacman does not answer here" is.
|
|
func TestAMachineThatIsNoneOfThemIsRefusedWithWhatEachSaid(t *testing.T) {
|
|
nothing := func(context.Context, string, ...string) (string, error) {
|
|
return "", errors.New("command not found")
|
|
}
|
|
|
|
_, err := WorkOutSystem(context.Background(), nothing, "")
|
|
if err == nil {
|
|
t.Fatal("a machine that answers as no known system was accepted")
|
|
}
|
|
for _, wanted := range []string{"arch:", "alpine:", "--system"} {
|
|
if !strings.Contains(err.Error(), wanted) {
|
|
t.Errorf("the refusal does not mention %q:\n%v", wanted, err)
|
|
}
|
|
}
|
|
}
|
|
|
|
// And a machine that was TOLD what it is still has to prove it. Installing the arch half of the
|
|
// host on Alpine must say so once, at the start, rather than failing later inside pacman.
|
|
func TestASystemThatWasNamedIsStillProved(t *testing.T) {
|
|
onlyApk := func(_ context.Context, name string, _ ...string) (string, error) {
|
|
if name == "apk" {
|
|
return "apk-tools-2.14.0\n", nil
|
|
}
|
|
return "", errors.New("command not found")
|
|
}
|
|
|
|
if _, err := WorkOutSystem(context.Background(), onlyApk, "arch"); err == nil {
|
|
t.Fatal("--system arch was believed on a machine where pacman does not answer")
|
|
}
|
|
|
|
if _, err := WorkOutSystem(context.Background(), onlyApk, "alpine"); err != nil {
|
|
t.Errorf("--system alpine was refused on a machine where apk answers: %v", err)
|
|
}
|
|
}
|
|
|
|
func TestASystemNobodyHasBuiltIsRefusedByName(t *testing.T) {
|
|
anything := func(context.Context, string, ...string) (string, error) { return "", nil }
|
|
_, err := WorkOutSystem(context.Background(), anything, "debian")
|
|
if err == nil {
|
|
t.Fatal("--system debian was accepted, and no debian host is built")
|
|
}
|
|
if !strings.Contains(err.Error(), "arch") {
|
|
t.Errorf("the refusal does not say which systems exist: %v", err)
|
|
}
|
|
}
|
|
|
|
// A foundation is applied before any mesh exists, so it can carry no secret the mesh sealed — there
|
|
// is no key to open one with. Refused with a sentence rather than a nil dereference.
|
|
func TestASealedFileInAFoundationIsRefusedWithAReason(t *testing.T) {
|
|
_, err := refuseSealed("anything")
|
|
if err == nil {
|
|
t.Fatal("a sealed file in a foundation bundle was accepted")
|
|
}
|
|
if !strings.Contains(err.Error(), "has not enrolled") {
|
|
t.Errorf("the refusal does not say why there is no key: %v", err)
|
|
}
|
|
}
|