test(protocol): add deterministic MBR failover-key coverage docs(protocol): align package-bare-os-protocol version to 0.9.1 test(booter): add MBR corruption and wrong-topic smoke fixtures test(peer-seed): add strict pre-MBR bare_os.capabilities negotiation check feat(seeder): validate BARE_OS_SEED_REQUIRE_MBR_LABELS feat(seeder): validate BARE_OS_SEED_CAPABILITY_ATTESTATION_JSON schema docs(boot-policy): add requireProtocolPackageMin 0.9.1 example test(kernel): cover boot.policy denySeedRpcMethods behavior test(protocol): add app/cap/chat/meshdrop channel compatibility fixture test(swarm-disk): cover duplicate Protomux channel null-return path test(protocol): add 11-word kernelCapabilityWords round-trip fixture docs(schema): add mbr-layout schema and validate seeder examples test(protocol): add topicKey() golden hash fixture docs(trust): document block-0 trust assumptions in boot docs feat(seeder): add discovery.flushed readiness logging feat(booter): record peer discovery timings in boot-perf.json feat(integration): add local testnet mode to integration lab smoke test(booter): add Hyperswarm connection-budget env regression coverage test(booter): add swarm plus Corestore suspend/resume integration coverage feat(booter): mirror swarm ban events into host audit logs feat(booter): add direct-peer boot via BARE_OS_BOOT_JOIN_PEER_HEX feat(seeder): pass BARE_OS_SEED_MAX_PEERS to Hyperswarm feat(seeder): log drive.version and discoveryKey at startup test(booter): add Hyperdrive.checkout read-only boot probe coverage feat(booter): prefetch /boot/init.js before kernel handoff feat(booter): add optional /bin warm replication via downloadDiff feat(seeder): add manifestPaths SHA-256 generation in stage-kernel-tree test(peer-seed): cover helper-served block-0 after seeder exit feat(protocol): add Protomux cork batching for initial channel sends test(boot-graph): compare kernel/init labels with booter graph proc docs(boot-policy): add v9-v11 schema examples feat(release): add requireInitJsSha256 fixture generation step test(vfs): add BARE_OS_VFS_SYSTEM_RO_ALIAS coverage test(vfs): strengthen system-drive write-deny path coverage feat(identity): add personal-drive namespace export/import docs and tests test(booter): add guest-to-login warm cache invalidation regression test(vfs): add guest deny coverage for /.bare sensitive paths test(coreutils): add cross-drive mv failure injection coverage test(vfs): add .bareos_empty round-trip coverage across mkdir/rmdir/cp/git-fs test(vfs): add /dev/shm quota enforcement coverage test(proc): add /proc/bare_os/index.json sortedness and schema checks test(vfs): add warm read cache invalidation on replication growth docs(ctx): document bareOsInvalidateWarmReadCaches(reason) test(kernel): add BARE_OS_BOOT_DRY_RUN behavior coverage docs(posix): add dashboard rows for all COREUTILS_COMMANDS feat(curl): expand -w variables beyond http_code/url_effective/size_download feat(wget): mark -N timestamping as explicit unsupported error feat(curl): plumb mutual TLS cert/key intent to ctx.httpFetch metadata feat(shuf): add deterministic seed mode via BARE_OS_SHUF_SEED docs(sort): document -M month-sort as unsupported feat(grep): add explicit -E and -G mode handling test(sed): add Open Group Issue 7 golden fixtures test(awk): add getline VFS regressions for missing/repeat/boundary cases test(shell): add non-interactive here-doc coverage test(shell): add trap delivery coverage for synthetic PIDs/job IDs test(shell): add set -e compound-body behavior coverage docs(shell): strengthen read builtin opt-in guidance test(env): add Bare-runtime coverage for -S and --env-file docs(man): add examples for pathcap-verify pkg-swarm-index corestorectl test(identity): add account/vault backup-restore smoke coverage feat(audit): add tamper detection verification for audit chain rows test(peer-admission): cover strict empty allowlist deny behavior test(peer-admission): add denylist precedence over allowlist coverage test(peer-admission): add BARE_OS_PEER_REQUIRE_CAPS_JSON metadata checks docs(identity): add trusted-key rotation example for path capabilities feat(schema): tighten extensionSignerPinsV2-V4 hash validation test(delegate): add allowlist negative cases for curl/wget/git/hrpc/systemctl test(proc): extend /proc/self/environ redaction key coverage docs(security): add peer-assisted block-0 mirroring threat-model notes feat(bench): add boot budget trend output from real booter phases test(baretop): align fixture coverage with /proc snapshot key set test(metrics): validate /proc/bare_os/metrics.prom OpenMetrics shape docs(ops): add structured seeder NDJSON examples test(replication): add live stall-hint coverage for no_peers/length_unavailable/ok docs(release): add corestore-snapshot workflow to checklist docs(ops): add mirror-drive experiment utility to maintainer workflow test(booter): add monitor progress coverage for replication live sketch feat(seeder): validate DHT bootstrap address class JSON inputs docs(network): add HYPERSWARM_BOOTSTRAP testnet operator guidance chore(root): add deterministic test:integration script docs(ci): add local CI runbook for no-.github environments docs(release): add npm run test:bare after npm test feat(verify): add protocol docs/package version parity checker feat(verify): enforce feature-roadmap canonical path consistency feat(lockfile-drift): add tier-1 strict fail option for mismatches docs(lockfile-drift): add udx-native and blind-peering upgrade workflow notes docs(cli-parity): add bare-fetch upstream issue tracking row feat(bundle-health): generate per-tier bundle size regression thresholds feat(doc-contracts): verify handbook references to current proc schema versions feat(pretest): add validate-mermaid-syntax gate feat(probe): add bare-runtime top-25 critical command lane docs(protocol): update capability-word prose from bits..bits5 to current words docs(two-drive): document /tmp /var/log and account-prefix routing docs(security): add concise boot trust model page and links docs(dev-guide): add P2P lab cookbook section docs(dev-guide): add how-to for adding seed RPCs docs(dev-guide): add how-to for adding /proc/bare_os nodes docs(dev-guide): add /bin utility checklist for man/posix/build/parity/tests docs(user-manual): add short What BareOS is not section
232 lines
5.5 KiB
JavaScript
232 lines
5.5 KiB
JavaScript
/**
|
|
* Brittle edge checks for high-traffic utilities (Issue 7 traceability).
|
|
*/
|
|
import { readFile } from 'node:fs/promises'
|
|
import path from 'node:path'
|
|
import { fileURLToPath } from 'node:url'
|
|
import test from 'brittle'
|
|
import b4a from 'b4a'
|
|
|
|
const __dirname = path.dirname(fileURLToPath(import.meta.url))
|
|
|
|
const AsyncFunction = Object.getPrototypeOf(async function () {}).constructor
|
|
|
|
/**
|
|
* @param {string} name
|
|
* @param {string[]} [libExtras] — e.g. `['awk-engine.js']` before `awk.js` (matches `build.mjs` preamble).
|
|
*/
|
|
async function loadBin(name, libExtras = []) {
|
|
const runtime = await readFile(
|
|
path.join(__dirname, '../lib/runtime.js'),
|
|
'utf8'
|
|
)
|
|
let pre = ''
|
|
for (const f of libExtras) {
|
|
let chunk = await readFile(path.join(__dirname, '../lib', f), 'utf8')
|
|
if (f === 'awk-engine.js') {
|
|
chunk = chunk.replace(
|
|
/^export async function bareAwkRun/m,
|
|
'async function bareAwkRun'
|
|
)
|
|
}
|
|
pre += chunk + '\n'
|
|
}
|
|
const bodyRaw = await readFile(
|
|
path.join(__dirname, `../src/${name}.js`),
|
|
'utf8'
|
|
)
|
|
const body = bodyRaw.replace(/^export\s+\{[^}]*\}\s*;?\s*$/gm, '')
|
|
return new AsyncFunction(
|
|
'ctx',
|
|
'argv',
|
|
`${runtime}\n${pre}${body}\nif (typeof run === 'function') return await run(ctx, argv)\n`
|
|
)
|
|
}
|
|
|
|
test('cp -u skips newer destination', async (t) => {
|
|
const run = await loadBin('cp')
|
|
const store = {
|
|
files: {
|
|
'/src': {
|
|
stat: { mode: 0o644, type: 'file', mtimeMs: 100 },
|
|
body: b4a.from('a')
|
|
},
|
|
'/dst': {
|
|
stat: { mode: 0o644, type: 'file', mtimeMs: 200 },
|
|
body: b4a.from('b')
|
|
}
|
|
}
|
|
}
|
|
const ctx = {
|
|
b4a,
|
|
exitCode: 0,
|
|
console: { log: () => {}, error: () => {} },
|
|
vfs: {
|
|
async lstat(p) {
|
|
const e = store.files[p]
|
|
return e ? e.stat : null
|
|
},
|
|
async readFile(p) {
|
|
const e = store.files[p]
|
|
return e ? e.body : null
|
|
},
|
|
async writeFile() {
|
|
throw new Error('should not write when -u skips')
|
|
}
|
|
}
|
|
}
|
|
await run(ctx, ['cp', '-u', '/src', '/dst'])
|
|
t.is(ctx.exitCode, 0)
|
|
t.is(b4a.toString(store.files['/dst'].body), 'b')
|
|
})
|
|
|
|
test('test -e is true for existing file', async (t) => {
|
|
const run = await loadBin('test')
|
|
let code = 1
|
|
const ctx = {
|
|
exitCode: 0,
|
|
console: { log: () => {}, error: () => {} },
|
|
vfs: {
|
|
async stat() {
|
|
return { type: 'file' }
|
|
}
|
|
}
|
|
}
|
|
await run(ctx, ['test', '-e', '/x'])
|
|
code = ctx.exitCode || 0
|
|
t.is(code, 0)
|
|
})
|
|
|
|
test('true exits 0', async (t) => {
|
|
const run = await loadBin('true')
|
|
const ctx = { exitCode: 1, console: { log: () => {}, error: () => {} } }
|
|
await run(ctx, ['true'])
|
|
t.is(ctx.exitCode, 0)
|
|
})
|
|
|
|
test('expr integer addition (Issue 7 trace)', async (t) => {
|
|
const run = await loadBin('expr')
|
|
const out = []
|
|
const ctx = {
|
|
exitCode: 0,
|
|
console: {
|
|
log: (s) => {
|
|
out.push(String(s))
|
|
},
|
|
error: () => {}
|
|
}
|
|
}
|
|
await run(ctx, ['expr', '2', '+', '3'])
|
|
t.is(ctx.exitCode, 0)
|
|
t.is(out.join('').trim(), '5')
|
|
})
|
|
|
|
test('basenc --base16 encodes file (Issue 7 trace)', async (t) => {
|
|
const run = await loadBin('basenc')
|
|
const out = []
|
|
const ctx = {
|
|
b4a,
|
|
exitCode: 0,
|
|
console: {
|
|
log: (s) => {
|
|
out.push(String(s))
|
|
},
|
|
error: () => {}
|
|
},
|
|
vfs: {
|
|
async readFile(p) {
|
|
if (p === '/t') return b4a.from('abc')
|
|
return null
|
|
}
|
|
}
|
|
}
|
|
await run(ctx, ['basenc', '--base16', '/t'])
|
|
t.is(ctx.exitCode, 0)
|
|
t.is(out.join('').trim(), '616263')
|
|
})
|
|
|
|
test('grep -F matches line (Issue 7 trace)', async (t) => {
|
|
const run = await loadBin('grep')
|
|
const out = []
|
|
const ctx = {
|
|
b4a,
|
|
exitCode: 0,
|
|
console: {
|
|
log: (s) => {
|
|
out.push(String(s))
|
|
},
|
|
error: () => {}
|
|
},
|
|
vfs: {
|
|
async readFile(p) {
|
|
if (p === '/f') return b4a.from('one\ntwo\nthree\n')
|
|
return null
|
|
}
|
|
}
|
|
}
|
|
await run(ctx, ['grep', '-F', 'two', '/f'])
|
|
t.is(ctx.exitCode, 0)
|
|
t.ok(out.some((l) => l.includes('two')))
|
|
})
|
|
|
|
test('xargs invokes runBinCommand per token', async (t) => {
|
|
const run = await loadBin('xargs')
|
|
const inv = []
|
|
const ctx = {
|
|
exitCode: 0,
|
|
shellStdin: 'a\nb\n',
|
|
console: { log: () => {}, error: () => {} },
|
|
async runBinCommand(argv) {
|
|
inv.push([...argv])
|
|
ctx.exitCode = 0
|
|
}
|
|
}
|
|
await run(ctx, ['xargs', '-n', '1', 'echo'])
|
|
t.is(ctx.exitCode, 0)
|
|
t.is(inv.length, 2)
|
|
t.is(inv[0][0], 'echo')
|
|
t.is(inv[0][1], 'a')
|
|
t.is(inv[1][1], 'b')
|
|
})
|
|
|
|
test('awk FIELDWIDTHS splits when BARE_OS_AWK_FIELDWIDTHS', async (t) => {
|
|
const run = await loadBin('awk', ['awk-engine.js'])
|
|
/** @type {string[]} */
|
|
const logs = []
|
|
const ctx = {
|
|
exitCode: 0,
|
|
shellStdin: 'abcde12\n',
|
|
b4a,
|
|
console: {
|
|
log: (/** @type {string} */ s) => logs.push(s),
|
|
error: () => {}
|
|
},
|
|
vfs: {
|
|
env: { BARE_OS_AWK_FIELDWIDTHS: '1' },
|
|
readFile: async () => null
|
|
}
|
|
}
|
|
await run(ctx, ['awk', '-v', 'FIELDWIDTHS=5 2', '{ print $2 }'])
|
|
t.is(ctx.exitCode, 0)
|
|
t.is(logs.join('\n'), '12')
|
|
})
|
|
|
|
test('xargs -L batches by input lines', async (t) => {
|
|
const run = await loadBin('xargs')
|
|
const inv = []
|
|
const ctx = {
|
|
exitCode: 0,
|
|
shellStdin: 'one\ntwo\nthree\n',
|
|
console: { log: () => {}, error: () => {} },
|
|
async runBinCommand(argv) {
|
|
inv.push([...argv])
|
|
ctx.exitCode = 0
|
|
}
|
|
}
|
|
await run(ctx, ['xargs', '-L', '2', 'echo'])
|
|
t.is(ctx.exitCode, 0)
|
|
t.is(inv.length, 2)
|
|
t.is(inv[0].slice(1).join(' '), 'one two')
|
|
t.is(inv[1].slice(1).join(' '), 'three')
|
|
})
|