What review found in the lab, fixed
A segment named "uplink" is refused. The lab claims that name for the NAT bridge behind `egress: true`, and a scenario wearing it first would have its egress machines silently attached to an isolated bridge — a declared key doing nothing, which is the fault this repo exists to refuse, in the repo that refuses it. settled() parses inside the try. A truncated status from a struggling machine was the one shape of bad answer that still threw out of the wait, and the likeliest moment for one is exactly the machine the poll is watching. Malformed now counts as "could not ask", like the exec that times out. And a sentence on the uplink's UseDNS saying its inertness is load-bearing: it matters only where systemd-resolved runs, and on a machine whose modules own resolv.conf the uplink must not outvote the resolver a scenario is testing.
This commit is contained in:
@@ -250,3 +250,10 @@ segments: { net: { kind: public, cidr: [192.0.2.0/24] } }
|
||||
machines: { a: { at: detached, egress: true } }`,
|
||||
/detached but declares egress/);
|
||||
});
|
||||
|
||||
test("a segment may not be named 'uplink' — the lab claims that name for egress", () => {
|
||||
refuses(`scenario: x
|
||||
segments: { uplink: { kind: public, cidr: [192.0.2.0/24] } }
|
||||
machines: { a: { at: { segment: uplink, address: [192.0.2.1] }, egress: true } }`,
|
||||
/reserved for the lab's own NAT bridge/);
|
||||
});
|
||||
|
||||
Reference in New Issue
Block a user