Skip to content

Commit 280a79f

Browse files
committed
added basic e2e tests
1 parent e2f5b4d commit 280a79f

File tree

2 files changed

+337
-0
lines changed

2 files changed

+337
-0
lines changed
Lines changed: 166 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,166 @@
1+
# Copyright 2024 Google LLC
2+
#
3+
# Licensed under the Apache License, Version 2.0 (the "License");
4+
# you may not use this file except in compliance with the License.
5+
# You may obtain a copy of the License at
6+
#
7+
# http://www.apache.org/licenses/LICENSE-2.0
8+
#
9+
# Unless required by applicable law or agreed to in writing, software
10+
# distributed under the License is distributed on an "AS IS" BASIS,
11+
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12+
# See the License for the specific language governing permissions and
13+
# limitations under the License.
14+
15+
"""Contains pytest fixtures that are accessible from all
16+
files present in the same directory."""
17+
18+
from __future__ import annotations
19+
20+
import os
21+
import platform
22+
import subprocess
23+
import tempfile
24+
import time
25+
from typing import Generator
26+
27+
import google
28+
import pytest_asyncio
29+
from google.auth import compute_engine
30+
from google.cloud import secretmanager, storage
31+
32+
33+
#### Define Utility Functions
34+
def get_env_var(key: str) -> str:
35+
"""Gets environment variables."""
36+
value = os.environ.get(key)
37+
if value is None:
38+
raise ValueError(f"Must set env var {key}")
39+
return value
40+
41+
42+
def access_secret_version(
43+
project_id: str, secret_id: str, version_id: str = "latest"
44+
) -> str:
45+
"""Accesses the payload of a given secret version from Secret Manager."""
46+
client = secretmanager.SecretManagerServiceClient()
47+
name = f"projects/{project_id}/secrets/{secret_id}/versions/{version_id}"
48+
response = client.access_secret_version(request={"name": name})
49+
return response.payload.data.decode("UTF-8")
50+
51+
52+
def create_tmpfile(content: str) -> str:
53+
"""Creates a temporary file with the given content."""
54+
with tempfile.NamedTemporaryFile(delete=False, mode="w") as tmpfile:
55+
tmpfile.write(content)
56+
return tmpfile.name
57+
58+
59+
def download_blob(
60+
bucket_name: str, source_blob_name: str, destination_file_name: str
61+
) -> None:
62+
"""Downloads a blob from a GCS bucket."""
63+
storage_client = storage.Client()
64+
65+
bucket = storage_client.bucket(bucket_name)
66+
blob = bucket.blob(source_blob_name)
67+
blob.download_to_filename(destination_file_name)
68+
69+
print(f"Blob {source_blob_name} downloaded to {destination_file_name}.")
70+
71+
72+
def get_toolbox_binary_url(toolbox_version: str) -> str:
73+
"""Constructs the GCS path to the toolbox binary."""
74+
os_system = platform.system().lower()
75+
arch = (
76+
"arm64" if os_system == "darwin" and platform.machine() == "arm64" else "amd64"
77+
)
78+
return f"v{toolbox_version}/{os_system}/{arch}/toolbox"
79+
80+
81+
def get_auth_token(client_id: str) -> str:
82+
"""Retrieves an authentication token"""
83+
request = google.auth.transport.requests.Request()
84+
credentials = compute_engine.IDTokenCredentials(
85+
request=request,
86+
target_audience=client_id,
87+
use_metadata_identity_endpoint=True,
88+
)
89+
if not credentials.valid:
90+
credentials.refresh(request)
91+
return credentials.token
92+
93+
94+
#### Define Fixtures
95+
@pytest_asyncio.fixture(scope="session")
96+
def project_id() -> str:
97+
return get_env_var("GOOGLE_CLOUD_PROJECT")
98+
99+
100+
@pytest_asyncio.fixture(scope="session")
101+
def toolbox_version() -> str:
102+
return get_env_var("TOOLBOX_VERSION")
103+
104+
105+
@pytest_asyncio.fixture(scope="session")
106+
def tools_file_path(project_id: str) -> Generator[str]:
107+
"""Provides a temporary file path containing the tools manifest."""
108+
tools_manifest = access_secret_version(
109+
project_id=project_id, secret_id="sdk_testing_tools"
110+
)
111+
tools_file_path = create_tmpfile(tools_manifest)
112+
yield tools_file_path
113+
os.remove(tools_file_path)
114+
115+
116+
@pytest_asyncio.fixture(scope="session")
117+
def auth_token1(project_id: str) -> str:
118+
client_id = access_secret_version(
119+
project_id=project_id, secret_id="sdk_testing_client1"
120+
)
121+
return get_auth_token(client_id)
122+
123+
124+
@pytest_asyncio.fixture(scope="session")
125+
def auth_token2(project_id: str) -> str:
126+
client_id = access_secret_version(
127+
project_id=project_id, secret_id="sdk_testing_client2"
128+
)
129+
return get_auth_token(client_id)
130+
131+
132+
@pytest_asyncio.fixture(scope="session")
133+
def toolbox_server(toolbox_version: str, tools_file_path: str) -> Generator[None]:
134+
"""Starts the toolbox server as a subprocess."""
135+
print("Downloading toolbox binary from gcs bucket...")
136+
source_blob_name = get_toolbox_binary_url(toolbox_version)
137+
download_blob("genai-toolbox", source_blob_name, "toolbox")
138+
print("Toolbox binary downloaded successfully.")
139+
try:
140+
print("Opening toolbox server process...")
141+
# Make toolbox executable
142+
os.chmod("toolbox", 0o700)
143+
# Run toolbox binary
144+
toolbox_server = subprocess.Popen(
145+
["./toolbox", "--tools_file", tools_file_path]
146+
)
147+
148+
# Wait for server to start
149+
# Retry logic with a timeout
150+
for _ in range(5): # retries
151+
time.sleep(2)
152+
print("Checking if toolbox is successfully started...")
153+
if toolbox_server.poll() is None:
154+
print("Toolbox server started successfully.")
155+
break
156+
else:
157+
raise RuntimeError("Toolbox server failed to start after 5 retries.")
158+
except subprocess.CalledProcessError as e:
159+
print(e.stderr.decode("utf-8"))
160+
print(e.stdout.decode("utf-8"))
161+
raise RuntimeError(f"{e}\n\n{e.stderr.decode('utf-8')}") from e
162+
yield
163+
164+
# Clean up toolbox server
165+
toolbox_server.terminate()
166+
toolbox_server.wait()
Lines changed: 171 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,171 @@
1+
# Copyright 2024 Google LLC
2+
#
3+
# Licensed under the Apache License, Version 2.0 (the "License");
4+
# you may not use this file except in compliance with the License.
5+
# You may obtain a copy of the License at
6+
#
7+
# http://www.apache.org/licenses/LICENSE-2.0
8+
#
9+
# Unless required by applicable law or agreed to in writing, software
10+
# distributed under the License is distributed on an "AS IS" BASIS,
11+
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12+
# See the License for the specific language governing permissions and
13+
# limitations under the License.
14+
15+
"""End-to-end tests for the toolbox SDK interacting with the toolbox server.
16+
17+
This file covers the following use cases:
18+
19+
1. Loading a tool.
20+
2. Loading a specific toolset.
21+
3. Loading the default toolset (contains all tools).
22+
4. Running a tool with
23+
a. Missing params.
24+
b. Wrong param type.
25+
5. Running a tool with no required auth, with auth provided.
26+
6. Running a tool with required auth:
27+
a. No auth provided.
28+
b. Wrong auth provided: The tool requires a different authentication
29+
than the one provided.
30+
c. Correct auth provided.
31+
7. Running a tool with a parameter that requires auth:
32+
a. No auth provided.
33+
b. Correct auth provided.
34+
c. Auth provided does not contain the required claim.
35+
"""
36+
import pytest
37+
import pytest_asyncio
38+
39+
from toolbox_core.client import ToolboxClient
40+
from toolbox_core.tool import ToolboxTool
41+
42+
43+
@pytest.mark.asyncio
44+
@pytest.mark.usefixtures("toolbox_server")
45+
class TestE2EClient:
46+
@pytest_asyncio.fixture(scope="function")
47+
async def toolbox(self):
48+
toolbox = ToolboxClient("http://localhost:5000")
49+
try:
50+
yield toolbox
51+
finally:
52+
await toolbox.close()
53+
54+
@pytest_asyncio.fixture(scope="function")
55+
async def get_n_rows_tool(self, toolbox: ToolboxClient) -> ToolboxTool:
56+
tool = await toolbox.load_tool("get-n-rows")
57+
assert tool.__name__ == "get-n-rows"
58+
return tool
59+
60+
#### Basic e2e tests
61+
@pytest.mark.parametrize(
62+
"toolset_name, expected_length, expected_tools",
63+
[
64+
("my-toolset", 1, ["get-row-by-id"]),
65+
("my-toolset-2", 2, ["get-n-rows", "get-row-by-id"]),
66+
],
67+
)
68+
async def test_load_toolset_specific(
69+
self,
70+
toolbox: ToolboxClient,
71+
toolset_name: str,
72+
expected_length: int,
73+
expected_tools: list[str],
74+
):
75+
toolset = await toolbox.load_toolset(toolset_name)
76+
assert len(toolset) == expected_length
77+
tool_names = {tool.__name__ for tool in toolset}
78+
assert tool_names == set(expected_tools)
79+
80+
async def test_run_tool(self, get_n_rows_tool: ToolboxTool):
81+
response = await get_n_rows_tool(num_rows="2")
82+
83+
assert isinstance(response, str)
84+
assert "row1" in response
85+
assert "row2" in response
86+
assert "row3" not in response
87+
88+
async def test_run_tool_missing_params(self, get_n_rows_tool):
89+
with pytest.raises(TypeError, match="missing a required argument: 'num_rows'"):
90+
await get_n_rows_tool()
91+
92+
async def test_run_tool_wrong_param_type(self, get_n_rows_tool: ToolboxTool):
93+
with pytest.raises(
94+
Exception,
95+
match='provided parameters were invalid: unable to parse value for "num_rows": .* not type "string"',
96+
):
97+
await get_n_rows_tool(num_rows=2) # Pass the integer value
98+
99+
##### Auth tests
100+
@pytest.mark.asyncio
101+
async def test_run_tool_unauth_with_auth(self, toolbox, auth_token2):
102+
"""Tests running a tool that doesn't require auth, with auth provided."""
103+
tool = await toolbox.load_tool(
104+
"get-row-by-id", auth_token_getters={"my-test-auth": lambda: auth_token2}
105+
)
106+
response = await tool(id="2")
107+
assert "row2" in response
108+
109+
async def test_run_tool_no_auth(self, toolbox):
110+
"""Tests running a tool requiring auth without providing auth."""
111+
tool = await toolbox.load_tool(
112+
"get-row-by-id-auth",
113+
)
114+
with pytest.raises(
115+
Exception,
116+
match="One of more of the following authn services are required to invoke this tool: my-test-auth",
117+
):
118+
await tool(id="2")
119+
120+
async def test_run_tool_wrong_auth(self, toolbox, auth_token2):
121+
"""Tests running a tool with incorrect auth."""
122+
tool = await toolbox.load_tool(
123+
"get-row-by-id-auth",
124+
)
125+
auth_tool = tool.add_auth_token_getters("my-test-auth", lambda: auth_token2)
126+
with pytest.raises(
127+
Exception,
128+
match="tool invocation not authorized",
129+
):
130+
await auth_tool(id="2")
131+
132+
async def test_run_tool_auth(self, toolbox, auth_token1):
133+
"""Tests running a tool with correct auth."""
134+
tool = await toolbox.load_tool(
135+
"get-row-by-id-auth",
136+
)
137+
auth_tool = tool.add_auth_token_getters("my-test-auth", lambda: auth_token1)
138+
response = await auth_tool(id="2")
139+
assert "row2" in response
140+
141+
async def test_run_tool_param_auth_no_auth(self, toolbox):
142+
"""Tests running a tool with a param requiring auth, without auth."""
143+
tool = await toolbox.load_tool("get-row-by-email-auth")
144+
with pytest.raises(
145+
Exception,
146+
match="One of more of the following authn services are required to invoke this tool: my-test-auth",
147+
):
148+
await tool(email="")
149+
150+
async def test_run_tool_param_auth(self, toolbox, auth_token1):
151+
"""Tests running a tool with a param requiring auth, with correct auth."""
152+
tool = await toolbox.load_tool(
153+
"get-row-by-email-auth",
154+
auth_token_getters={"my-test-auth": lambda: auth_token1},
155+
)
156+
response = await tool()
157+
assert "row4" in response
158+
assert "row5" in response
159+
assert "row6" in response
160+
161+
async def test_run_tool_param_auth_no_field(self, toolbox, auth_token1):
162+
"""Tests running a tool with a param requiring auth, with insufficient auth."""
163+
tool = await toolbox.load_tool(
164+
"get-row-by-content-auth",
165+
auth_token_getters={"my-test-auth": lambda: auth_token1},
166+
)
167+
with pytest.raises(
168+
Exception,
169+
match="no field named row_data in claims",
170+
):
171+
await tool()

0 commit comments

Comments
 (0)