summaryrefslogtreecommitdiff
path: root/smoketest/scripts/cli
diff options
context:
space:
mode:
authorViacheslav Hletenko <v.gletenko@vyos.io>2026-06-23 18:45:17 +0300
committerGitHub <noreply@github.com>2026-06-23 18:45:17 +0300
commit105c2470df751f9bff280255506640e63204e3bb (patch)
tree18e25c127bf66f6316e91cc8646718ff6f34a9a1 /smoketest/scripts/cli
parent4e74f21299c77a35115a61908a2c84e390e1f0d1 (diff)
parent4f550fc5184f7d583f5976e801e9cae4d06e0cb6 (diff)
downloadvyos-1x-105c2470df751f9bff280255506640e63204e3bb.tar.gz
vyos-1x-105c2470df751f9bff280255506640e63204e3bb.zip
Merge pull request #5226 from indrajitr/haproxy-websocket
haproxy: T8931: Improve WebSocket support for HAProxy
Diffstat (limited to 'smoketest/scripts/cli')
-rwxr-xr-xsmoketest/scripts/cli/test_load-balancing_haproxy.py33
1 files changed, 33 insertions, 0 deletions
diff --git a/smoketest/scripts/cli/test_load-balancing_haproxy.py b/smoketest/scripts/cli/test_load-balancing_haproxy.py
index 9cb031276..118d42773 100755
--- a/smoketest/scripts/cli/test_load-balancing_haproxy.py
+++ b/smoketest/scripts/cli/test_load-balancing_haproxy.py
@@ -335,6 +335,34 @@ class TestLoadBalancingReverseProxy(VyOSUnitTestSHIM.TestCase):
with self.assertRaises(ConfigSessionError) as e:
self.cli_commit()
+ def test_reverse_proxy_backend_websocket(self):
+ t_tunnel = '3600'
+ opt_server_close = 'http-server-close'
+
+ # Setup base
+ self.configure_pki()
+ self.base_config()
+
+ # Set minimal backend websocket configuration
+ self.cli_set(base_path + ['backend', haproxy_backend_name, opt_server_close])
+ self.cli_set(base_path + ['backend', haproxy_backend_name, 'timeout', 'tunnel', t_tunnel])
+ self.cli_set(base_path + ['backend', haproxy_backend_name, 'ssl', 'no-verify'])
+
+ self.cli_commit()
+
+ # Ensure 'http-server-close' is not used in tcp mode, to test config validation
+ self.cli_set(base_path + ['backend', haproxy_backend_name, 'mode', 'tcp'])
+ with self.assertRaises(ConfigSessionError) as e:
+ self.cli_commit()
+
+ config = read_file(HAPROXY_CONF)
+ self.assertIn(f'option {opt_server_close}', config)
+ self.assertIn(f'timeout tunnel {t_tunnel}s', config)
+ self.assertIn('option forwardfor', config)
+ self.assertIn(' http-request set-header X-Forwarded-Port %[dst_port]', config)
+ self.assertIn('http-request add-header X-Forwarded-Proto https if { ssl_fc }', config)
+ self.assertIn(f'server {haproxy_backend_name} 192.0.2.11:9090 send-proxy ssl verify none', config)
+
def test_reverse_proxy_backend_http_check(self):
# Setup base
self.base_config()
@@ -619,10 +647,12 @@ class TestLoadBalancingReverseProxy(VyOSUnitTestSHIM.TestCase):
t_default_client = '50'
t_default_connect = '10'
t_default_server ='50'
+ t_default_tunnel ='300'
t_check = '4'
t_client = '300'
t_connect = '12'
t_server ='120'
+ t_tunnel ='600'
t_front_client = '600'
self.base_config()
@@ -633,6 +663,7 @@ class TestLoadBalancingReverseProxy(VyOSUnitTestSHIM.TestCase):
f'timeout connect {t_default_connect}s',
f'timeout client {t_default_client}s',
f'timeout server {t_default_server}s',
+ f'timeout tunnel {t_default_tunnel}s'
)
# Check default timeout options
config = read_file(HAPROXY_CONF)
@@ -644,6 +675,7 @@ class TestLoadBalancingReverseProxy(VyOSUnitTestSHIM.TestCase):
self.cli_set(base_path + ['timeout', 'client', t_client])
self.cli_set(base_path + ['timeout', 'connect', t_connect])
self.cli_set(base_path + ['timeout', 'server', t_server])
+ self.cli_set(base_path + ['timeout', 'tunnel', t_tunnel])
self.cli_set(base_path + ['service', haproxy_service_name, 'timeout', 'client', t_front_client])
self.cli_commit()
@@ -654,6 +686,7 @@ class TestLoadBalancingReverseProxy(VyOSUnitTestSHIM.TestCase):
f'timeout connect {t_connect}s',
f'timeout client {t_client}s',
f'timeout server {t_server}s',
+ f'timeout tunnel {t_tunnel}s',
f'timeout client {t_front_client}s',
)