Commit graph

70 commits

Author SHA1 Message Date
Ondrej Mejzlik
0899094f1a disable repo 2026-07-17 09:43:50 +02:00
Petr Menšík
f000f4dab7 Move this to tier 2, testing farm reliably fails this 2025-05-21 19:10:25 +02:00
Petr Menšík
6bb528481b Include also nsid in the query and try resolvectl 2025-05-20 12:01:48 +02:00
Petr Menšík
417c703cec Show versions of servers provided to the test
Enable also DNSSEC in EDNS query to record DO flag response in the sent
query. Should be possible using unbound-host, but does not seem at the
moment.
2025-05-19 13:18:53 +02:00
Petr Menšík
189d21dde9 Test also hostname query 2025-05-14 20:00:14 +02:00
Petr Menšík
fe8ebd6049 Add simple test of unbound-host
Made to check ability of network provided servers to provide DNSSEC
signatures and working DNSSEC.
2025-05-14 19:43:27 +02:00
psklenar@redhat.com
993d377fd3 not for s390x 2025-04-11 13:38:21 +02:00
psklenar@redhat.com
024db4a5a4 adjust plans 2025-03-03 11:07:55 +01:00
psklenar@redhat.com
e4c0bb9e7a add into plan adjust 2025-02-27 11:09:32 +01:00
psklenar@redhat.com
5cb11a53a8 not for 95 2025-02-10 17:01:28 +01:00
psklenar@redhat.com
a091a32b69 tier2 is better 2025-02-07 16:38:25 +01:00
psklenar@redhat.com
16e68635e2 dnssec infra is not stable 2025-02-07 16:32:10 +01:00
psklenar@redhat.com
09e1e08bfb rlIsRHEL fails at centos 2025-02-06 20:12:07 +01:00
psklenar@redhat.com
d8da58c75d no ipv4 attempt over net 2025-02-06 19:41:42 +01:00
Tomas Korbar
2d0d495d8b Fix no-root-zone-fetch for Fedora 2025-02-06 15:43:17 +01:00
psklenar@redhat.com
42af88f1e8 no ipv4 attempt over net 2025-02-06 15:30:55 +01:00
psklenar@redhat.com
9049343dc1 no ipv4 attempt over net 2025-02-06 15:20:15 +01:00
psklenar@redhat.com
0fa78bf3b3 no ipv4 attempt over net 2025-02-06 13:35:46 +01:00
psklenar@redhat.com
278ef8d353 AVC check for RHEL-77344 2025-02-06 09:15:41 +01:00
Tomas Korbar
87ca48411e Fix no-root-zone-fetch test 2025-02-05 17:03:31 +01:00
Tomas Korbar
69c0769d93 Change no-root-zone-test for c9s 2025-02-05 07:43:39 +01:00
Tomas Korbar
d1ff0cae6b Fix chroot-functionality test 2025-02-02 16:12:02 +01:00
Tomas Korbar
3fef8fdf24 Fix caching-DNS-server test 2025-02-02 16:11:59 +01:00
Tomas Korbar
ff061d7576 Add unbound-control-dot-flag test 2025-02-02 15:08:09 +01:00
Tomas Korbar
61e5c174ae Add no-root-zone-fetch test 2025-02-02 13:28:12 +01:00
Tomas Korbar
969dd1897d Add test for notify-reload unbound service type 2025-02-02 11:30:46 +01:00
Tomas Korbar
cf902bf601 Fix dracut module test 2025-02-02 10:54:42 +01:00
psklenar@redhat.com
7bfd68f26d more time in case of reboot 2024-12-09 10:59:21 +01:00
Tomas Korbar
0c9f12bc90 Add dracut module test 2024-12-06 15:51:03 +01:00
Petr Menšík
6ab747b7dd Fix localhost test by including all dependencies
Wait also few seconds, because unbound does not signal startup.
2024-11-19 16:08:47 +01:00
psklenar@redhat.com
bd95296af4 new test domains 2024-10-07 10:22:11 +02:00
psklenar@redhat.com
0ff4a0b547 init plans for unbound 2024-05-28 10:37:58 +02:00
Petr Menšík
46d31b6444 Remove test from Fedora 2024-02-28 23:37:05 +01:00
Petr Menšík
3926d62180 Add new CVE test into tier 1 tests
Should be quite fast and reliable.
2024-02-28 23:09:20 +01:00
Petr Menšík
4b46415e19 Create basic test checking unbound-control group checks
Verifies CVE-2024-1488 is fixed correctly.
2024-02-28 23:06:19 +01:00
Petr Menšík
88d724fbbb Remove serve-stale config and fix dependencies
Cleanup serve-stale snippet after the test. Fix also dependencies to be
correctly understood.
2022-08-17 13:22:40 +02:00
Petr Menšík
992cd2fb47 Test Unbound support for RFC 8767 serve-stale
Enable RFC 8767 serve stale functionality in unbound.
First cache reply and wait some time to expire it.
Then shutdown the forwarder and retry the query.
Unbound should reply from cache even after original
query TTL is over
2022-08-17 12:27:41 +02:00
Petr Menšík
a9713d72e3 Increase initial startup time
5 seconds seems to be not enough, makes the test unreliable.
2022-08-09 17:05:40 +02:00
Petr Menšík
d49ec7f506 Improve valgrind-check test
Use actual working TLS queries. Make also one query to example.net,
which is DNSSEC signed. Make it faster, do not wait innecessary that
long. Terminate unbound after queries are done.
2022-08-09 16:15:18 +02:00
Petr Sklenar
b2eb188b8f backup 2022-07-11 12:52:09 +02:00
Petr Sklenar
73c6122cce init 2022-07-11 11:41:38 +02:00
Petr Menšík
6315de5ba1 New sanity test for bug #2081958
Make basic check unbound works with chroot.
Provide test zone and try loading it from unbound.
2022-06-27 17:48:37 +02:00
Petr Menšík
901a45991e More workarounds for crappy infrastructure
Amazon instances get offered EC2 DNS server, which seems incapable of
corretly forwarding DO enable queries. No security records are returned.
Workaround by trying root and attempting to use Google DNS servers,
which are known to work.
2022-06-07 21:22:50 +02:00
Petr Menšík
2ec0c4003c Make additional checks to ensure validation is possible
Some tests still fail and I expect that happens, because some used
recursors are not supplying DNSSEC records.
2022-06-06 15:49:48 +02:00
Petr Menšík
b5a5137d87 Add framework to test metadata 2022-06-06 14:19:21 +02:00
Petr Menšík
426b3debbb Workaround resolved breaking the resolution
systemd-resolved does not provide DNSSEC entries in default
configuration. Workaround that by using servers used by it, but not the
resolved itself.
2022-06-06 14:05:13 +02:00
Petr Menšík
62fb95bf36 Stop chdir to tmp dir
unbound-host.conf is not found in tmpdir, because file is in original
source dir. Because it does not produce anything into temporary
directory, just avoid switching into it.
2022-06-05 20:48:25 +02:00
Petr Sklenar
0417712efe virtual plan to make fmf works as expected 2022-05-04 12:07:41 +02:00
Petr Menšík
b2d8b4926f Create very simple test starting unbound
Queries localhost on local instance and quits.
2022-05-04 11:46:41 +02:00
Petr Sklenar
7e3e8330c5 tier1 added 2022-05-03 15:55:35 +02:00