Skip to content

test(crd-e2e): make the deferred-dimension log check rotation-proof - #12

Merged
dvrkn merged 1 commit into
mainfrom
fix/crd-deferred-log-flake
Jul 1, 2026
Merged

dvrkn merged 1 commit into
mainfrom
fix/crd-deferred-log-flake

Conversation

@dvrkn

@dvrkn dvrkn commented Jul 1, 2026

Copy link
Copy Markdown
Owner

Test 15's "agent logged the deferred dimensions" check was flaky in CI (green on the arm64 box, red on the amd64 GitHub runner). The old check hoped a past "not enforceable" line was still readable via kubectl logs --since, but the JSON-output agent streams every node egress event and containerd rotates the container log — kubectl logs reads only the current segment, so the periodic deferred-dimension line can rotate out from under it.

Force a fresh emission instead: bump an annotation on the deferred-dims policy (→ informer update → Programmer apply() → the deferred-dimension log fires now), then grep a short, just-written window on the named agent pod. Retried across ten applies, so log rotation and re-walk cadence can't hide it. The decisive "port-only deny did NOT drop" assertion is unchanged.

Test 15's "agent logged the deferred dimensions" check was flaky in CI (green on
the arm64 box, red on the amd64 GitHub runner). The old check hoped a past
"not enforceable" line was still readable via `kubectl logs --since`, but the
JSON-output agent streams every node egress event and containerd rotates the
container log — `kubectl logs` reads only the current segment, so the periodic
deferred-dimension line can rotate out from under it.

Force a fresh emission instead: bump an annotation on the deferred-dims policy
(→ informer update → Programmer apply() → the deferred-dimension log fires now),
then grep a short, just-written window on the named agent pod. Retried across ten
applies, so log rotation and re-walk cadence can't hide it. The decisive
"port-only deny did NOT drop" assertion is unchanged.
@dvrkn
dvrkn merged commit ba4f485 into main Jul 1, 2026
5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant