From df532ee8c1f2179c8a5cbdf2fe1ba42d4eb41cb0 Mon Sep 17 00:00:00 2001
From: baude <bbaude@redhat.com>
Date: Wed, 30 Sep 2020 08:51:13 -0500
Subject: misc fixes for f33 integration tests

some small fixes for testing on fedora 33 (non-btrfs)

Signed-off-by: baude <bbaude@redhat.com>
---
 test/e2e/run_security_labels.go | 4 ++--
 test/e2e/run_test.go            | 6 +++++-
 2 files changed, 7 insertions(+), 3 deletions(-)

(limited to 'test/e2e')

diff --git a/test/e2e/run_security_labels.go b/test/e2e/run_security_labels.go
index 7c8597866..2a0b0467d 100644
--- a/test/e2e/run_security_labels.go
+++ b/test/e2e/run_security_labels.go
@@ -130,7 +130,7 @@ var _ = Describe("Podman generate kube", func() {
 		SkipIfRemote("runlabel not supported on podman-remote")
 		PodmanDockerfile := `
 FROM  alpine:latest
-LABEL io.containers.capabilities=chown,mknod`
+LABEL io.containers.capabilities=chown,kill`
 
 		image := "podman-caps:podman"
 		podmanTest.BuildImage(PodmanDockerfile, image, "false")
@@ -145,7 +145,7 @@ LABEL io.containers.capabilities=chown,mknod`
 
 		ctr := inspect.InspectContainerToJSON()
 		caps := strings.Join(ctr[0].EffectiveCaps, ",")
-		Expect(caps).To(Equal("CAP_CHOWN,CAP_MKNOD"))
+		Expect(caps).To(Equal("CAP_CHOWN,CAP_KILL"))
 	})
 
 })
diff --git a/test/e2e/run_test.go b/test/e2e/run_test.go
index 2d4f3a42d..292df529c 100644
--- a/test/e2e/run_test.go
+++ b/test/e2e/run_test.go
@@ -261,6 +261,8 @@ var _ = Describe("Podman run", func() {
 	})
 
 	It("podman run user capabilities test", func() {
+		// We need to ignore the containers.conf on the test distribution for this test
+		os.Setenv("CONTAINERS_CONF", "/dev/null")
 		session := podmanTest.Podman([]string{"run", "--rm", "--user", "bin", ALPINE, "grep", "CapBnd", "/proc/self/status"})
 		session.WaitWithDefaultTimeout()
 		Expect(session.ExitCode()).To(Equal(0))
@@ -293,6 +295,8 @@ var _ = Describe("Podman run", func() {
 	})
 
 	It("podman run user capabilities test with image", func() {
+		// We need to ignore the containers.conf on the test distribution for this test
+		os.Setenv("CONTAINERS_CONF", "/dev/null")
 		SkipIfRemote("FIXME This should work on podman-remote")
 		dockerfile := `FROM busybox
 USER bin`
@@ -1134,7 +1138,7 @@ USER mail`
 	It("podman run --device-cgroup-rule", func() {
 		SkipIfRootless("rootless users are not allowed to mknod")
 		deviceCgroupRule := "c 42:* rwm"
-		session := podmanTest.Podman([]string{"run", "--name", "test", "-d", "--device-cgroup-rule", deviceCgroupRule, ALPINE, "top"})
+		session := podmanTest.Podman([]string{"run", "--cap-add", "mknod", "--name", "test", "-d", "--device-cgroup-rule", deviceCgroupRule, ALPINE, "top"})
 		session.WaitWithDefaultTimeout()
 		Expect(session.ExitCode()).To(Equal(0))
 		session = podmanTest.Podman([]string{"exec", "test", "mknod", "newDev", "c", "42", "1"})
-- 
cgit v1.2.3-54-g00ecf