1let
2 common = { pkgs, ... }: {
3 networking.firewall.enable = false;
4 networking.useDHCP = false;
5 # for a host utility with IPv6 support
6 environment.systemPackages = [ pkgs.bind ];
7 };
8in import ./make-test.nix ({ pkgs, ...} : {
9 name = "nsd";
10 meta = with pkgs.stdenv.lib.maintainers; {
11 maintainers = [ aszlig ];
12 };
13
14 nodes = {
15 clientv4 = { lib, nodes, ... }: {
16 imports = [ common ];
17 networking.nameservers = lib.mkForce [
18 nodes.server.config.networking.interfaces.eth1.ipAddress
19 ];
20 networking.interfaces.eth1.ipAddress = "192.168.0.2";
21 networking.interfaces.eth1.prefixLength = 24;
22 };
23
24 clientv6 = { lib, nodes, ... }: {
25 imports = [ common ];
26 networking.nameservers = lib.mkForce [
27 nodes.server.config.networking.interfaces.eth1.ipv6Address
28 ];
29 networking.interfaces.eth1.ipv6Address = "dead:beef::2";
30 };
31
32 server = { lib, ... }: {
33 imports = [ common ];
34 networking.interfaces.eth1.ipAddress = "192.168.0.1";
35 networking.interfaces.eth1.prefixLength = 24;
36 networking.interfaces.eth1.ipv6Address = "dead:beef::1";
37 services.nsd.enable = true;
38 services.nsd.interfaces = lib.mkForce [];
39 services.nsd.zones."example.com.".data = ''
40 @ SOA ns.example.com noc.example.com 666 7200 3600 1209600 3600
41 ipv4 A 1.2.3.4
42 ipv6 AAAA abcd::eeff
43 deleg NS ns.example.com
44 ns A 192.168.0.1
45 ns AAAA dead:beef::1
46 '';
47 services.nsd.zones."deleg.example.com.".data = ''
48 @ SOA ns.example.com noc.example.com 666 7200 3600 1209600 3600
49 @ A 9.8.7.6
50 @ AAAA fedc::bbaa
51 '';
52 };
53 };
54
55 testScript = ''
56 startAll;
57
58 $clientv4->waitForUnit("network.target");
59 $clientv6->waitForUnit("network.target");
60 $server->waitForUnit("nsd.service");
61
62 sub assertHost {
63 my ($type, $rr, $query, $expected) = @_;
64 my $self = $type eq 4 ? $clientv4 : $clientv6;
65 my $out = $self->succeed("host -$type -t $rr $query");
66 $self->log("output: $out");
67 chomp $out;
68 die "DNS IPv$type query on $query gave '$out' instead of '$expected'"
69 if ($out !~ $expected);
70 }
71
72 foreach (4, 6) {
73 subtest "ipv$_", sub {
74 assertHost($_, "a", "example.com", qr/has no [^ ]+ record/);
75 assertHost($_, "aaaa", "example.com", qr/has no [^ ]+ record/);
76
77 assertHost($_, "soa", "example.com", qr/SOA.*?noc\.example\.com/);
78 assertHost($_, "a", "ipv4.example.com", qr/address 1.2.3.4$/);
79 assertHost($_, "aaaa", "ipv6.example.com", qr/address abcd::eeff$/);
80
81 assertHost($_, "a", "deleg.example.com", qr/address 9.8.7.6$/);
82 assertHost($_, "aaaa", "deleg.example.com", qr/address fedc::bbaa$/);
83 };
84 }
85 '';
86})