diff options
author | baude <bbaude@redhat.com> | 2018-02-20 12:09:28 -0600 |
---|---|---|
committer | Atomic Bot <atomic-devel@projectatomic.io> | 2018-02-24 09:15:47 +0000 |
commit | 5e7979f016d6cf1a6a050810af47c75ea16a2c9e (patch) | |
tree | 72b0cf958531ea26cf493954be9bc9213a5e5b2d /test/e2e/run_privileged_test.go | |
parent | 831dc488833e055dce1f1ba4c09f09346c85b67d (diff) | |
download | podman-5e7979f016d6cf1a6a050810af47c75ea16a2c9e.tar.gz podman-5e7979f016d6cf1a6a050810af47c75ea16a2c9e.tar.bz2 podman-5e7979f016d6cf1a6a050810af47c75ea16a2c9e.zip |
Address review comments
Review comments to delete WithNoNew function and its append.
Signed-off-by: baude <bbaude@redhat.com>
Closes: #369
Approved by: rhatdan
Diffstat (limited to 'test/e2e/run_privileged_test.go')
-rw-r--r-- | test/e2e/run_privileged_test.go | 17 |
1 files changed, 11 insertions, 6 deletions
diff --git a/test/e2e/run_privileged_test.go b/test/e2e/run_privileged_test.go index 3df90b218..6692c91c7 100644 --- a/test/e2e/run_privileged_test.go +++ b/test/e2e/run_privileged_test.go @@ -1,12 +1,11 @@ package integration import ( - "fmt" "os" + "strings" . "github.com/onsi/ginkgo" . "github.com/onsi/gomega" - "strings" ) var _ = Describe("Podman privileged container tests", func() { @@ -84,23 +83,29 @@ var _ = Describe("Podman privileged container tests", func() { }) It("run no-new-privileges test", func() { + // Check if our kernel is new enough + k, err := IsKernelNewThan("4.14") + Expect(err).To(BeNil()) + if !k { + Skip("Kernel is not new enough to test this feature") + } + cap := podmanTest.SystemExec("grep", []string{"NoNewPrivs", "/proc/self/status"}) cap.WaitWithDefaultTimeout() if cap.ExitCode() != 0 { - fmt.Println("Can't determine NoNewPrivs") - return + Skip("Can't determine NoNewPrivs") } session := podmanTest.Podman([]string{"run", "busybox", "grep", "NoNewPrivs", "/proc/self/status"}) session.WaitWithDefaultTimeout() Expect(session.ExitCode()).To(Equal(0)) - privs := strings.Split(cap.OutputToString(), ":") + privs := strings.Split(cap.OutputToString(), ":") session = podmanTest.Podman([]string{"run", "--security-opt", "no-new-privileges", "busybox", "grep", "NoNewPrivs", "/proc/self/status"}) session.WaitWithDefaultTimeout() Expect(session.ExitCode()).To(Equal(0)) - noprivs := strings.Split(cap.OutputToString(), ":") + noprivs := strings.Split(cap.OutputToString(), ":") Expect(privs[1]).To(Not(Equal(noprivs[1]))) }) |