fix(tests): fix integration test failures from deprecated git key, missing wget, and wrong prompt path
- test_sandbox_escape: migrate manifest fixture from deprecated `git` key to `git-gate` (PRD 0047) — `remotes` → `repos`, field names `Name`/`Upstream`/`IdentityFile` → `url`/`identity` - test_smolmachines_launch probes: replace `wget` (not in node:22-slim) with `curl -s --show-error --max-time 3` (installed in Dockerfile.claude) - test_smolmachines_launch prompt test: correct path /root/ → /home/node/ to match guest_home in smolmachines/prepare.py Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
This commit is contained in:
@@ -120,11 +120,10 @@ class TestSandboxEscape(unittest.TestCase):
|
|||||||
# is intentionally unreachable — the pre-receive
|
# is intentionally unreachable — the pre-receive
|
||||||
# gitleaks hook must reject BEFORE git-gate
|
# gitleaks hook must reject BEFORE git-gate
|
||||||
# attempts the upstream push.
|
# attempts the upstream push.
|
||||||
"git": {"remotes": {
|
"git-gate": {"repos": {
|
||||||
"unreachable.invalid": {
|
"throwaway": {
|
||||||
"Name": "throwaway",
|
"url": "ssh://git@unreachable.invalid:22/throwaway.git",
|
||||||
"Upstream": "ssh://git@unreachable.invalid:22/throwaway.git",
|
"identity": str(cls._key_path),
|
||||||
"IdentityFile": str(cls._key_path),
|
|
||||||
},
|
},
|
||||||
}},
|
}},
|
||||||
},
|
},
|
||||||
|
|||||||
@@ -110,10 +110,10 @@ class TestSmolmachinesLaunch(unittest.TestCase):
|
|||||||
# (high-numbered) so we're confirming TSI refusal, not
|
# (high-numbered) so we're confirming TSI refusal, not
|
||||||
# just "no service listening."
|
# just "no service listening."
|
||||||
r = self.bottle.exec(
|
r = self.bottle.exec(
|
||||||
"wget -T 3 -t 1 -O - http://127.0.0.1:9 2>&1 || true"
|
"curl -s --show-error --max-time 3 http://127.0.0.1:9 2>&1 || true"
|
||||||
)
|
)
|
||||||
# `wget` to a denied destination produces a connect error.
|
# `curl` to a denied destination produces a connect error.
|
||||||
# The exact phrasing varies (busybox vs gnu); we assert
|
# The exact phrasing varies by curl version; we assert
|
||||||
# the response is NOT the body of any real service.
|
# the response is NOT the body of any real service.
|
||||||
self.assertNotIn("hello-from-vm", r.stdout)
|
self.assertNotIn("hello-from-vm", r.stdout)
|
||||||
self.assertTrue(
|
self.assertTrue(
|
||||||
@@ -126,10 +126,10 @@ class TestSmolmachinesLaunch(unittest.TestCase):
|
|||||||
|
|
||||||
def test_prompt_file_lands_in_guest(self):
|
def test_prompt_file_lands_in_guest(self):
|
||||||
# provision_prompt copies the host-side prompt.txt into the
|
# provision_prompt copies the host-side prompt.txt into the
|
||||||
# guest at /root/.bot-bottle-prompt.txt. The content
|
# guest at /home/node/.bot-bottle-prompt.txt. The content
|
||||||
# must match what the manifest declared so claude-code's
|
# must match what the manifest declared so claude-code's
|
||||||
# --append-system-prompt-file reads the right text.
|
# --append-system-prompt-file reads the right text.
|
||||||
r = self.bottle.exec("cat /root/.bot-bottle-prompt.txt")
|
r = self.bottle.exec("cat /home/node/.bot-bottle-prompt.txt")
|
||||||
self.assertEqual(0, r.returncode, msg=r.stderr)
|
self.assertEqual(0, r.returncode, msg=r.stderr)
|
||||||
self.assertEqual(_AGENT_PROMPT, r.stdout.rstrip("\n"))
|
self.assertEqual(_AGENT_PROMPT, r.stdout.rstrip("\n"))
|
||||||
|
|
||||||
@@ -143,7 +143,7 @@ class TestSmolmachinesLaunch(unittest.TestCase):
|
|||||||
# connect fails, which is the property chunk 3 will
|
# connect fails, which is the property chunk 3 will
|
||||||
# preserve once egress is actually running.
|
# preserve once egress is actually running.
|
||||||
r = self.bottle.exec(
|
r = self.bottle.exec(
|
||||||
f"wget -T 3 -t 1 -O - http://{self.plan.bundle_ip}:9099 "
|
f"curl -s --show-error --max-time 3 http://{self.plan.bundle_ip}:9099 "
|
||||||
"2>&1 || true"
|
"2>&1 || true"
|
||||||
)
|
)
|
||||||
self.assertTrue(
|
self.assertTrue(
|
||||||
|
|||||||
Reference in New Issue
Block a user