mirror of
https://github.com/coder/coder.git
synced 2025-07-09 11:45:56 +00:00
* chore: rename `AgentConn` to `WorkspaceAgentConn` The codersdk was becoming bloated with consts for the workspace agent that made no sense to a reader. `Tailnet*` is an example of these consts. * chore: remove `Get` prefix from *Client functions * chore: remove `BypassRatelimits` option in `codersdk.Client` It feels wrong to have this as a direct option because it's so infrequently needed by API callers. It's better to directly modify headers in the two places that we actually use it. * Merge `appearance.go` and `buildinfo.go` into `deployment.go` * Merge `experiments.go` and `features.go` into `deployment.go` * Fix `make gen` referencing old type names * Merge `error.go` into `client.go` `codersdk.Response` lived in `error.go`, which is wrong. * chore: refactor workspace agent functions into agentsdk It was odd conflating the codersdk that clients should use with functions that only the agent should use. This separates them into two SDKs that are closely coupled, but separate. * Merge `insights.go` into `deployment.go` * Merge `organizationmember.go` into `organizations.go` * Merge `quota.go` into `workspaces.go` * Rename `sse.go` to `serversentevents.go` * Rename `codersdk.WorkspaceAppHostResponse` to `codersdk.AppHostResponse` * Format `.vscode/settings.json` * Fix outdated naming in `api.ts` * Fix app host response * Fix unsupported type * Fix imported type
425 lines
11 KiB
Go
425 lines
11 KiB
Go
package httpmw_test
|
|
|
|
import (
|
|
"context"
|
|
"crypto/sha256"
|
|
"encoding/json"
|
|
"fmt"
|
|
"net/http"
|
|
"net/http/httptest"
|
|
"testing"
|
|
"time"
|
|
|
|
"github.com/stretchr/testify/assert"
|
|
|
|
"github.com/go-chi/chi/v5"
|
|
"github.com/google/uuid"
|
|
"github.com/stretchr/testify/require"
|
|
|
|
"github.com/coder/coder/coderd/database"
|
|
"github.com/coder/coder/coderd/database/databasefake"
|
|
"github.com/coder/coder/coderd/httpmw"
|
|
"github.com/coder/coder/codersdk"
|
|
"github.com/coder/coder/cryptorand"
|
|
)
|
|
|
|
func TestWorkspaceParam(t *testing.T) {
|
|
t.Parallel()
|
|
|
|
setup := func(db database.Store) (*http.Request, database.User) {
|
|
var (
|
|
id, secret = randomAPIKeyParts()
|
|
hashed = sha256.Sum256([]byte(secret))
|
|
)
|
|
r := httptest.NewRequest("GET", "/", nil)
|
|
r.Header.Set(codersdk.SessionTokenHeader, fmt.Sprintf("%s-%s", id, secret))
|
|
|
|
userID := uuid.New()
|
|
username, err := cryptorand.String(8)
|
|
require.NoError(t, err)
|
|
user, err := db.InsertUser(r.Context(), database.InsertUserParams{
|
|
ID: userID,
|
|
Email: "testaccount@coder.com",
|
|
HashedPassword: hashed[:],
|
|
Username: username,
|
|
CreatedAt: database.Now(),
|
|
UpdatedAt: database.Now(),
|
|
LoginType: database.LoginTypePassword,
|
|
})
|
|
require.NoError(t, err)
|
|
|
|
_, err = db.InsertAPIKey(r.Context(), database.InsertAPIKeyParams{
|
|
ID: id,
|
|
UserID: user.ID,
|
|
HashedSecret: hashed[:],
|
|
LastUsed: database.Now(),
|
|
ExpiresAt: database.Now().Add(time.Minute),
|
|
LoginType: database.LoginTypePassword,
|
|
Scope: database.APIKeyScopeAll,
|
|
})
|
|
require.NoError(t, err)
|
|
|
|
ctx := chi.NewRouteContext()
|
|
ctx.URLParams.Add("user", "me")
|
|
r = r.WithContext(context.WithValue(r.Context(), chi.RouteCtxKey, ctx))
|
|
return r, user
|
|
}
|
|
|
|
t.Run("None", func(t *testing.T) {
|
|
t.Parallel()
|
|
db := databasefake.New()
|
|
rtr := chi.NewRouter()
|
|
rtr.Use(httpmw.ExtractWorkspaceParam(db))
|
|
rtr.Get("/", nil)
|
|
r, _ := setup(db)
|
|
rw := httptest.NewRecorder()
|
|
rtr.ServeHTTP(rw, r)
|
|
|
|
res := rw.Result()
|
|
defer res.Body.Close()
|
|
require.Equal(t, http.StatusBadRequest, res.StatusCode)
|
|
})
|
|
|
|
t.Run("NotFound", func(t *testing.T) {
|
|
t.Parallel()
|
|
db := databasefake.New()
|
|
rtr := chi.NewRouter()
|
|
rtr.Use(httpmw.ExtractWorkspaceParam(db))
|
|
rtr.Get("/", nil)
|
|
r, _ := setup(db)
|
|
chi.RouteContext(r.Context()).URLParams.Add("workspace", uuid.NewString())
|
|
rw := httptest.NewRecorder()
|
|
rtr.ServeHTTP(rw, r)
|
|
|
|
res := rw.Result()
|
|
defer res.Body.Close()
|
|
require.Equal(t, http.StatusNotFound, res.StatusCode)
|
|
})
|
|
|
|
t.Run("Found", func(t *testing.T) {
|
|
t.Parallel()
|
|
db := databasefake.New()
|
|
rtr := chi.NewRouter()
|
|
rtr.Use(
|
|
httpmw.ExtractAPIKey(httpmw.ExtractAPIKeyConfig{
|
|
DB: db,
|
|
RedirectToLogin: false,
|
|
}),
|
|
httpmw.ExtractWorkspaceParam(db),
|
|
)
|
|
rtr.Get("/", func(rw http.ResponseWriter, r *http.Request) {
|
|
_ = httpmw.WorkspaceParam(r)
|
|
rw.WriteHeader(http.StatusOK)
|
|
})
|
|
r, user := setup(db)
|
|
workspace, err := db.InsertWorkspace(context.Background(), database.InsertWorkspaceParams{
|
|
ID: uuid.New(),
|
|
OwnerID: user.ID,
|
|
Name: "hello",
|
|
})
|
|
require.NoError(t, err)
|
|
chi.RouteContext(r.Context()).URLParams.Add("workspace", workspace.ID.String())
|
|
rw := httptest.NewRecorder()
|
|
rtr.ServeHTTP(rw, r)
|
|
|
|
res := rw.Result()
|
|
defer res.Body.Close()
|
|
require.Equal(t, http.StatusOK, res.StatusCode)
|
|
})
|
|
}
|
|
|
|
func TestWorkspaceAgentByNameParam(t *testing.T) {
|
|
t.Parallel()
|
|
|
|
testCases := []struct {
|
|
Name string
|
|
// Agents are mapped to a resource
|
|
Agents map[string][]string
|
|
URLParam string
|
|
WorkspaceName string
|
|
ExpectedAgent string
|
|
ExpectedStatusCode int
|
|
ExpectedError string
|
|
}{
|
|
{
|
|
Name: "NoAgents",
|
|
WorkspaceName: "dev",
|
|
Agents: map[string][]string{},
|
|
URLParam: "dev",
|
|
ExpectedError: "No agents exist",
|
|
ExpectedStatusCode: http.StatusBadRequest,
|
|
},
|
|
{
|
|
Name: "NoAgentsSpecify",
|
|
WorkspaceName: "dev",
|
|
Agents: map[string][]string{},
|
|
URLParam: "dev.agent",
|
|
ExpectedError: "No agents exist",
|
|
ExpectedStatusCode: http.StatusBadRequest,
|
|
},
|
|
{
|
|
Name: "MultipleAgents",
|
|
WorkspaceName: "dev",
|
|
Agents: map[string][]string{
|
|
"resource-a": {
|
|
"agent-one",
|
|
"agent-two",
|
|
},
|
|
},
|
|
URLParam: "dev",
|
|
ExpectedStatusCode: http.StatusBadRequest,
|
|
ExpectedError: "More than one agent exists, but no agent specified",
|
|
},
|
|
{
|
|
Name: "MultipleResources",
|
|
WorkspaceName: "dev",
|
|
Agents: map[string][]string{
|
|
"resource-a": {
|
|
"agent-one",
|
|
},
|
|
"resource-b": {
|
|
"agent-two",
|
|
},
|
|
},
|
|
URLParam: "dev",
|
|
ExpectedStatusCode: http.StatusBadRequest,
|
|
ExpectedError: "More than one agent exists, but no agent specified",
|
|
},
|
|
{
|
|
Name: "NotExistsOneAgent",
|
|
WorkspaceName: "dev",
|
|
Agents: map[string][]string{
|
|
"resource-a": {
|
|
"agent-one",
|
|
},
|
|
},
|
|
URLParam: "dev.not-exists",
|
|
ExpectedStatusCode: http.StatusBadRequest,
|
|
ExpectedError: "No agent exists with the name",
|
|
},
|
|
{
|
|
Name: "NotExistsMultipleAgents",
|
|
WorkspaceName: "dev",
|
|
Agents: map[string][]string{
|
|
"resource-a": {
|
|
"agent-one",
|
|
},
|
|
"resource-b": {
|
|
"agent-two",
|
|
},
|
|
"resource-c": {
|
|
"agent-three",
|
|
},
|
|
},
|
|
URLParam: "dev.not-exists",
|
|
ExpectedStatusCode: http.StatusBadRequest,
|
|
ExpectedError: "No agent exists with the name",
|
|
},
|
|
|
|
// OKs
|
|
{
|
|
Name: "MultipleResourcesOneAgent",
|
|
WorkspaceName: "dev",
|
|
Agents: map[string][]string{
|
|
"resource-a": {},
|
|
"resource-b": {
|
|
"agent-one",
|
|
},
|
|
},
|
|
URLParam: "dev",
|
|
ExpectedAgent: "agent-one",
|
|
ExpectedStatusCode: http.StatusOK,
|
|
},
|
|
{
|
|
Name: "OneAgent",
|
|
WorkspaceName: "dev",
|
|
Agents: map[string][]string{
|
|
"resource-a": {
|
|
"agent-one",
|
|
},
|
|
},
|
|
URLParam: "dev",
|
|
ExpectedAgent: "agent-one",
|
|
ExpectedStatusCode: http.StatusOK,
|
|
},
|
|
{
|
|
Name: "OneAgentSelected",
|
|
WorkspaceName: "dev",
|
|
Agents: map[string][]string{
|
|
"resource-a": {
|
|
"agent-one",
|
|
},
|
|
},
|
|
URLParam: "dev.agent-one",
|
|
ExpectedAgent: "agent-one",
|
|
ExpectedStatusCode: http.StatusOK,
|
|
},
|
|
{
|
|
Name: "MultipleAgentSelectOne",
|
|
WorkspaceName: "dev",
|
|
Agents: map[string][]string{
|
|
"resource-a": {
|
|
"agent-one",
|
|
"agent-two",
|
|
"agent-selected",
|
|
},
|
|
},
|
|
URLParam: "dev.agent-selected",
|
|
ExpectedAgent: "agent-selected",
|
|
ExpectedStatusCode: http.StatusOK,
|
|
},
|
|
{
|
|
Name: "MultipleResourcesSelectOne",
|
|
WorkspaceName: "dev",
|
|
Agents: map[string][]string{
|
|
"resource-a": {
|
|
"agent-one",
|
|
},
|
|
"resource-b": {
|
|
"agent-two",
|
|
},
|
|
"resource-c": {
|
|
"agent-selected",
|
|
"agent-three",
|
|
},
|
|
},
|
|
URLParam: "dev.agent-selected",
|
|
ExpectedAgent: "agent-selected",
|
|
ExpectedStatusCode: http.StatusOK,
|
|
},
|
|
}
|
|
|
|
for _, c := range testCases {
|
|
c := c
|
|
t.Run(c.Name, func(t *testing.T) {
|
|
t.Parallel()
|
|
db, r := setupWorkspaceWithAgents(t, setupConfig{
|
|
WorkspaceName: c.WorkspaceName,
|
|
Agents: c.Agents,
|
|
})
|
|
|
|
chi.RouteContext(r.Context()).URLParams.Add("workspace_and_agent", c.URLParam)
|
|
|
|
rtr := chi.NewRouter()
|
|
rtr.Use(
|
|
httpmw.ExtractAPIKey(httpmw.ExtractAPIKeyConfig{
|
|
DB: db,
|
|
RedirectToLogin: true,
|
|
}),
|
|
httpmw.ExtractUserParam(db, false),
|
|
httpmw.ExtractWorkspaceAndAgentParam(db),
|
|
)
|
|
rtr.Get("/", func(w http.ResponseWriter, r *http.Request) {
|
|
workspace := httpmw.WorkspaceParam(r)
|
|
agent := httpmw.WorkspaceAgentParam(r)
|
|
|
|
assert.Equal(t, c.ExpectedAgent, agent.Name, "expected agent name")
|
|
assert.Equal(t, c.WorkspaceName, workspace.Name, "expected workspace name")
|
|
})
|
|
|
|
rw := httptest.NewRecorder()
|
|
rtr.ServeHTTP(rw, r)
|
|
res := rw.Result()
|
|
var coderResp codersdk.Response
|
|
_ = json.NewDecoder(res.Body).Decode(&coderResp)
|
|
res.Body.Close()
|
|
require.Equal(t, c.ExpectedStatusCode, res.StatusCode)
|
|
if c.ExpectedError != "" {
|
|
require.Contains(t, coderResp.Message, c.ExpectedError)
|
|
}
|
|
})
|
|
}
|
|
}
|
|
|
|
type setupConfig struct {
|
|
WorkspaceName string
|
|
// Agents are mapped to a resource
|
|
Agents map[string][]string
|
|
}
|
|
|
|
func setupWorkspaceWithAgents(t testing.TB, cfg setupConfig) (database.Store, *http.Request) {
|
|
t.Helper()
|
|
db := databasefake.New()
|
|
var (
|
|
id, secret = randomAPIKeyParts()
|
|
hashed = sha256.Sum256([]byte(secret))
|
|
)
|
|
r := httptest.NewRequest("GET", "/", nil)
|
|
r.Header.Set(codersdk.SessionTokenHeader, fmt.Sprintf("%s-%s", id, secret))
|
|
|
|
userID := uuid.New()
|
|
username, err := cryptorand.String(8)
|
|
require.NoError(t, err)
|
|
user, err := db.InsertUser(r.Context(), database.InsertUserParams{
|
|
ID: userID,
|
|
Email: "testaccount@coder.com",
|
|
HashedPassword: hashed[:],
|
|
Username: username,
|
|
CreatedAt: database.Now(),
|
|
UpdatedAt: database.Now(),
|
|
LoginType: database.LoginTypePassword,
|
|
})
|
|
require.NoError(t, err)
|
|
|
|
_, err = db.InsertAPIKey(r.Context(), database.InsertAPIKeyParams{
|
|
ID: id,
|
|
UserID: user.ID,
|
|
HashedSecret: hashed[:],
|
|
LastUsed: database.Now(),
|
|
ExpiresAt: database.Now().Add(time.Minute),
|
|
LoginType: database.LoginTypePassword,
|
|
Scope: database.APIKeyScopeAll,
|
|
})
|
|
require.NoError(t, err)
|
|
|
|
workspace, err := db.InsertWorkspace(context.Background(), database.InsertWorkspaceParams{
|
|
ID: uuid.New(),
|
|
TemplateID: uuid.New(),
|
|
OwnerID: user.ID,
|
|
Name: cfg.WorkspaceName,
|
|
})
|
|
require.NoError(t, err)
|
|
|
|
build, err := db.InsertWorkspaceBuild(context.Background(), database.InsertWorkspaceBuildParams{
|
|
ID: uuid.New(),
|
|
WorkspaceID: workspace.ID,
|
|
JobID: uuid.New(),
|
|
Transition: database.WorkspaceTransitionStart,
|
|
Reason: database.BuildReasonInitiator,
|
|
})
|
|
require.NoError(t, err)
|
|
|
|
job, err := db.InsertProvisionerJob(context.Background(), database.InsertProvisionerJobParams{
|
|
ID: build.JobID,
|
|
Type: database.ProvisionerJobTypeWorkspaceBuild,
|
|
Provisioner: database.ProvisionerTypeEcho,
|
|
StorageMethod: database.ProvisionerStorageMethodFile,
|
|
})
|
|
require.NoError(t, err)
|
|
|
|
for resourceName, agentNames := range cfg.Agents {
|
|
resource, err := db.InsertWorkspaceResource(context.Background(), database.InsertWorkspaceResourceParams{
|
|
ID: uuid.New(),
|
|
JobID: job.ID,
|
|
Name: resourceName,
|
|
Transition: database.WorkspaceTransitionStart,
|
|
})
|
|
require.NoError(t, err)
|
|
|
|
for _, name := range agentNames {
|
|
_, err = db.InsertWorkspaceAgent(context.Background(), database.InsertWorkspaceAgentParams{
|
|
ID: uuid.New(),
|
|
ResourceID: resource.ID,
|
|
Name: name,
|
|
})
|
|
require.NoError(t, err)
|
|
}
|
|
}
|
|
|
|
ctx := chi.NewRouteContext()
|
|
ctx.URLParams.Add("user", codersdk.Me)
|
|
r = r.WithContext(context.WithValue(r.Context(), chi.RouteCtxKey, ctx))
|
|
|
|
return db, r
|
|
}
|