DO-NOT-MERGE: hijact psm-security-python for one test case

reviewable/pr29294/r1
Lidi Zheng 3 years ago
parent 5dcd73a453
commit 17b8af9ab9
  1. 5
      tools/internal_ci/linux/psm-security-python.sh
  2. 4
      tools/run_tests/xds_k8s_test_driver/tests/authz_test.py

@ -172,8 +172,9 @@ main() {
build_docker_images_if_needed build_docker_images_if_needed
# Run tests # Run tests
cd "${TEST_DRIVER_FULL_DIR}" cd "${TEST_DRIVER_FULL_DIR}"
run_test baseline_test # run_test baseline_test
run_test security_test # run_test security_test
# [DO-NOT-MERGE]
run_test authz_test run_test authz_test
} }

@ -15,6 +15,7 @@
import datetime import datetime
import time import time
from typing import Optional from typing import Optional
import unittest
from absl import flags from absl import flags
from absl.testing import absltest from absl.testing import absltest
@ -199,6 +200,7 @@ class AuthzTest(xds_k8s_testcase.SecurityXdsKubernetesTestCase):
duration=_SAMPLE_DURATION, duration=_SAMPLE_DURATION,
method=rpc_type) method=rpc_type)
@unittest.skip("[DO-NOT-MERGE]")
def test_plaintext_allow(self) -> None: def test_plaintext_allow(self) -> None:
self.setupTrafficDirectorGrpc() self.setupTrafficDirectorGrpc()
self.td.create_authz_policy(action='ALLOW', rules=self.authz_rules()) self.td.create_authz_policy(action='ALLOW', rules=self.authz_rules())
@ -253,6 +255,7 @@ class AuthzTest(xds_k8s_testcase.SecurityXdsKubernetesTestCase):
# self.configure_and_assert(test_client, 'principal-present', # self.configure_and_assert(test_client, 'principal-present',
# grpc.StatusCode.PERMISSION_DENIED) # grpc.StatusCode.PERMISSION_DENIED)
@unittest.skip("[DO-NOT-MERGE]")
def test_tls_allow(self) -> None: def test_tls_allow(self) -> None:
self.setupTrafficDirectorGrpc() self.setupTrafficDirectorGrpc()
self.td.create_authz_policy(action='ALLOW', rules=self.authz_rules()) self.td.create_authz_policy(action='ALLOW', rules=self.authz_rules())
@ -313,6 +316,7 @@ class AuthzTest(xds_k8s_testcase.SecurityXdsKubernetesTestCase):
self.configure_and_assert(test_client, 'never-match-principal', self.configure_and_assert(test_client, 'never-match-principal',
grpc.StatusCode.PERMISSION_DENIED) grpc.StatusCode.PERMISSION_DENIED)
@unittest.skip("[DO-NOT-MERGE]")
def test_plaintext_deny(self) -> None: def test_plaintext_deny(self) -> None:
self.setupTrafficDirectorGrpc() self.setupTrafficDirectorGrpc()
self.td.create_authz_policy(action='DENY', rules=self.authz_rules()) self.td.create_authz_policy(action='DENY', rules=self.authz_rules())

Loading…
Cancel
Save