Avoid checking Keystone v3 domains when using API v2.0
[snaps.git] / snaps / openstack / utils / tests / keystone_utils_tests.py
1 # Copyright (c) 2017 Cable Television Laboratories, Inc. ("CableLabs")
2 #                    and others.  All rights reserved.
3 #
4 # Licensed under the Apache License, Version 2.0 (the "License");
5 # you may not use this file except in compliance with the License.
6 # You may obtain a copy of the License at:
7 #
8 #     http://www.apache.org/licenses/LICENSE-2.0
9 #
10 # Unless required by applicable law or agreed to in writing, software
11 # distributed under the License is distributed on an "AS IS" BASIS,
12 # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 # See the License for the specific language governing permissions and
14 # limitations under the License.
15 import uuid
16
17 from snaps.config.project import ProjectConfig
18 from snaps.config.user import UserConfig
19 from snaps.openstack.tests.os_source_file_test import OSComponentTestCase
20 from snaps.openstack.utils import keystone_utils, neutron_utils
21
22 __author__ = 'spisarski'
23
24
25 class KeystoneSmokeTests(OSComponentTestCase):
26     """
27     Tests to ensure that the neutron client can communicate with the cloud
28     """
29
30     def test_keystone_connect_success(self):
31         """
32         Tests to ensure that the proper credentials can connect.
33         """
34         keystone = keystone_utils.keystone_client(self.os_creds)
35
36         users = keystone.users.list()
37         self.assertIsNotNone(users)
38
39     def test_keystone_connect_fail(self):
40         """
41         Tests to ensure that the improper credentials cannot connect.
42         """
43         from snaps.openstack.os_credentials import OSCreds
44
45         with self.assertRaises(Exception):
46             keystone = keystone_utils.keystone_client(OSCreds(
47                 username='user', password='pass', auth_url='url',
48                 project_name='project'))
49             keystone.users.list()
50
51
52 class KeystoneUtilsTests(OSComponentTestCase):
53     """
54     Test for the CreateImage class defined in create_image.py
55     """
56
57     def setUp(self):
58         """
59         Instantiates the CreateImage object that is responsible for downloading
60         and creating an OS image file within OpenStack
61         """
62         self.guid = self.__class__.__name__ + '-' + str(uuid.uuid4())
63         self.username = self.guid + '-username'
64         self.user = None
65
66         self.project_name = self.guid + '-projName'
67         self.project = None
68         self.role = None
69         self.keystone = keystone_utils.keystone_client(self.os_creds)
70
71     def tearDown(self):
72         """
73         Cleans the remote OpenStack objects
74         """
75         if self.project:
76             neutron = neutron_utils.neutron_client(self.os_creds)
77             default_sec_grp = neutron_utils.get_security_group(
78                 neutron, sec_grp_name='default',
79                 project_id=self.project.id)
80             if default_sec_grp:
81                 try:
82                     neutron_utils.delete_security_group(
83                         neutron, default_sec_grp)
84                 except:
85                     pass
86
87             keystone_utils.delete_project(self.keystone, self.project)
88
89         if self.user:
90             keystone_utils.delete_user(self.keystone, self.user)
91
92         if self.role:
93             keystone_utils.delete_role(self.keystone, self.role)
94
95     def test_create_user_minimal(self):
96         """
97         Tests the keystone_utils.create_user() function
98         """
99         user_settings = UserConfig(
100             name=self.username,
101             password=str(uuid.uuid4()),
102             domain_name=self.os_creds.user_domain_name)
103         self.user = keystone_utils.create_user(self.keystone, user_settings)
104         self.assertEqual(self.username, self.user.name)
105
106         user = keystone_utils.get_user(self.keystone, self.username)
107         self.assertIsNotNone(user)
108         self.assertEqual(self.user, user)
109
110     def test_create_project_minimal(self):
111         """
112         Tests the keyston_utils.create_project() funtion
113         """
114         project_settings = ProjectConfig(
115             name=self.project_name, domain=self.os_creds.project_domain_name)
116         self.project = keystone_utils.create_project(self.keystone,
117                                                      project_settings)
118         self.assertEqual(self.project_name, self.project.name)
119
120         project = keystone_utils.get_project(
121             keystone=self.keystone, project_settings=project_settings)
122         self.assertIsNotNone(project)
123         self.assertEqual(self.project_name, self.project.name)
124
125         domain = keystone_utils.get_domain_by_id(
126             self.keystone, project.domain_id)
127         if self.keystone.version == keystone_utils.V2_VERSION_STR:
128             self.assertIsNone(domain)
129         else:
130             self.assertIsNotNone(domain)
131             self.assertEqual(domain.id, project.domain_id)
132
133     def test_get_endpoint_success(self):
134         """
135         Tests to ensure that proper credentials and proper service type can
136         succeed.
137         """
138         endpoint = keystone_utils.get_endpoint(self.os_creds,
139                                                service_type='identity')
140         self.assertIsNotNone(endpoint)
141
142     def test_get_endpoint_fail_without_proper_service(self):
143         """
144         Tests to ensure that proper credentials and improper service type
145         cannot succeed.
146         """
147         with self.assertRaises(Exception):
148             keystone_utils.get_endpoint(self.os_creds, service_type='glance')
149
150     def test_get_endpoint_fail_without_proper_credentials(self):
151         """
152         Tests to ensure that improper credentials and proper service type
153         cannot succeed.
154         """
155         from snaps.openstack.os_credentials import OSCreds
156
157         with self.assertRaises(Exception):
158             keystone_utils.get_endpoint(
159                 OSCreds(username='user', password='pass', auth_url='url',
160                         project_name='project'),
161                 service_type='image')
162
163     def test_get_endpoint_with_each_interface(self):
164         """
165         Tests to ensure that endpoint urls are obtained with
166         'public', 'internal' and 'admin' interface
167         """
168         endpoint_public = keystone_utils.get_endpoint(self.os_creds,
169                                                       service_type='image',
170                                                       interface='public')
171         endpoint_internal = keystone_utils.get_endpoint(self.os_creds,
172                                                         service_type='image',
173                                                         interface='internal')
174         endpoint_admin = keystone_utils.get_endpoint(self.os_creds,
175                                                      service_type='image',
176                                                      interface='admin')
177         self.assertIsNotNone(endpoint_public)
178         self.assertIsNotNone(endpoint_internal)
179         self.assertIsNotNone(endpoint_admin)
180
181     def test_grant_user_role_to_project(self):
182         """
183         Tests the keystone_utils function grant_user_role_to_project()
184         :return:
185         """
186         user_settings = UserConfig(
187             name=self.username, password=str(uuid.uuid4()),
188             domain_name=self.os_creds.user_domain_name)
189         self.user = keystone_utils.create_user(self.keystone, user_settings)
190         self.assertEqual(self.username, self.user.name)
191
192         project_settings = ProjectConfig(
193             name=self.project_name, domain=self.os_creds.project_domain_name)
194         self.project = keystone_utils.create_project(self.keystone,
195                                                      project_settings)
196         self.assertEqual(self.project_name, self.project.name)
197
198         role_name = self.guid + '-role'
199         self.role = keystone_utils.create_role(self.keystone, role_name)
200         self.assertEqual(role_name, self.role.name)
201
202         keystone_utils.grant_user_role_to_project(
203             self.keystone, self.role, self.user, self.project)
204
205         user_roles = keystone_utils.get_roles_by_user(
206             self.keystone, self.user, self.project)
207         self.assertIsNotNone(user_roles)
208         self.assertEqual(1, len(user_roles))
209         self.assertEqual(self.role.id, user_roles[0].id)