2019-11-09 20:35:50 +01:00
|
|
|
import ./make-test-python.nix ({ pkgs, lib, ... }:
|
2018-12-21 10:36:58 -08:00
|
|
|
|
|
|
|
let
|
|
|
|
port = 3142;
|
|
|
|
username = "alice";
|
|
|
|
password = "correcthorsebatterystaple";
|
|
|
|
defaultPort = 8080;
|
|
|
|
defaultUsername = "admin";
|
|
|
|
defaultPassword = "password";
|
2022-01-02 12:00:00 +00:00
|
|
|
adminCredentialsFile = pkgs.writeText "admin-credentials" ''
|
|
|
|
ADMIN_USERNAME=${defaultUsername}
|
|
|
|
ADMIN_PASSWORD=${defaultPassword}
|
|
|
|
'';
|
|
|
|
customAdminCredentialsFile = pkgs.writeText "admin-credentials" ''
|
|
|
|
ADMIN_USERNAME=${username}
|
|
|
|
ADMIN_PASSWORD=${password}
|
|
|
|
'';
|
|
|
|
|
2018-12-21 10:36:58 -08:00
|
|
|
in
|
|
|
|
{
|
|
|
|
name = "miniflux";
|
2023-04-30 11:26:17 -03:00
|
|
|
meta.maintainers = [ ];
|
2018-12-21 10:36:58 -08:00
|
|
|
|
|
|
|
nodes = {
|
|
|
|
default =
|
|
|
|
{ ... }:
|
|
|
|
{
|
2023-07-08 02:18:34 +02:00
|
|
|
security.apparmor.enable = true;
|
2022-01-02 12:00:00 +00:00
|
|
|
services.miniflux = {
|
|
|
|
enable = true;
|
|
|
|
inherit adminCredentialsFile;
|
|
|
|
};
|
2018-12-21 10:36:58 -08:00
|
|
|
};
|
|
|
|
|
2021-01-28 15:09:31 -03:00
|
|
|
withoutSudo =
|
|
|
|
{ ... }:
|
|
|
|
{
|
2023-07-08 02:18:34 +02:00
|
|
|
security.apparmor.enable = true;
|
2022-01-02 12:00:00 +00:00
|
|
|
services.miniflux = {
|
|
|
|
enable = true;
|
|
|
|
inherit adminCredentialsFile;
|
|
|
|
};
|
2021-01-28 15:09:31 -03:00
|
|
|
security.sudo.enable = false;
|
|
|
|
};
|
|
|
|
|
2018-12-21 10:36:58 -08:00
|
|
|
customized =
|
|
|
|
{ ... }:
|
|
|
|
{
|
2023-07-08 02:18:34 +02:00
|
|
|
security.apparmor.enable = true;
|
2018-12-21 10:36:58 -08:00
|
|
|
services.miniflux = {
|
|
|
|
enable = true;
|
|
|
|
config = {
|
|
|
|
CLEANUP_FREQUENCY = "48";
|
|
|
|
LISTEN_ADDR = "localhost:${toString port}";
|
|
|
|
};
|
2022-01-02 12:00:00 +00:00
|
|
|
adminCredentialsFile = customAdminCredentialsFile;
|
2018-12-21 10:36:58 -08:00
|
|
|
};
|
|
|
|
};
|
|
|
|
};
|
|
|
|
testScript = ''
|
2024-02-15 10:12:34 +01:00
|
|
|
def runTest(machine, port, user):
|
|
|
|
machine.wait_for_unit("miniflux.service")
|
|
|
|
machine.wait_for_open_port(port)
|
|
|
|
machine.succeed(f"curl --fail 'http://localhost:{port}/healthcheck' | grep OK")
|
|
|
|
machine.succeed(
|
|
|
|
f"curl 'http://localhost:{port}/v1/me' -u '{user}' -H Content-Type:application/json | grep '\"is_admin\":true'"
|
|
|
|
)
|
|
|
|
machine.fail('journalctl -b --no-pager --grep "^audit: .*apparmor=\\"DENIED\\""')
|
2018-12-21 10:36:58 -08:00
|
|
|
|
2024-02-15 10:12:34 +01:00
|
|
|
start_all()
|
2021-01-28 15:09:31 -03:00
|
|
|
|
2024-02-15 10:12:34 +01:00
|
|
|
runTest(default, ${toString defaultPort}, "${defaultUsername}:${defaultPassword}")
|
|
|
|
runTest(withoutSudo, ${toString defaultPort}, "${defaultUsername}:${defaultPassword}")
|
|
|
|
runTest(customized, ${toString port}, "${username}:${password}")
|
2018-12-21 10:36:58 -08:00
|
|
|
'';
|
|
|
|
})
|