Test cases created by Nilesh
Test Case No |
Test cases Name |
Steps |
Expected Result |
Priority |
Test Case Type |
XEN |
KVM |
VMware |
|||
|
Virtual Router Scenario |
|
|
|
|
|
|
|
|||
Egress FR - 1 |
By-default the communication from guest n/w to public n/w is NOT allowed |
1. login to Guest VM |
2. Public network should NOT be reachable |
P1 |
Functional |
|
|
|
|||
Egress FR -2 |
Allow Communication using Egress rule with |
1. Create Egress rule with Specific CIDR +Port Range +Protocol |
1. Rule is created without any erros |
P1 |
Functional |
|
|
|
|||
Egress FR -3 |
Communication blocked with network that is other than specified |
1. Create Egress rule with Specific CIDR +Port Range +Protocol |
3. Connection Fail |
P1 |
Functional |
|
|
|
|||
Egress FR -4 |
Create Egress rule and check the Firewall_Rules DB table |
1. Create a Egress rule with Specific CIDR + Port Range + Protocol |
3. For the Rule, purpose should be shown as "Firewall" and Traffic_type should be set to "Egress" |
P1 |
Functional |
|
|
|
|||
Egress FR -5 |
Create Egress rule and check the IP tables |
1. Create a Egress rule with Specific CIDR + Port Range + Protocol |
3. ip tables should list the rule created as follows |
P1 |
Functional |
|
|
|
|||
Egress FR -6 |
Create Egress rule without CIDR |
1. Create a Egress rule with Empty CIDR value + valid Port Range + valid Protocol |
1. If CIDR is not specified the it should be defaulted to 0.0.0.0/0 |
P1 |
Functional |
|
|
|
|||
Egress FR -7 |
Create Egress rule without End Port |
1. Create a Egress rule without end Port |
2. Start port and end port should be the Same in this case |
P1 |
Functional |
|
|
|
|||
Egress FR -8 |
Port Forwarding and Egress Conflict |
1. Create a PF rule that allows Port 22 on acquired public IP |
3. Connection to Public IP specified in PF rule should be successful and Egress should not impact it |
P1 |
Functional |
|
|
|
|||
Egress FR -9 |
Delete Egress rule |
1. Lets assume there is only One Egress rule. Now, Delete that Egress rule |
2. Connection with any Public IP should be BLOCKED |
P1 |
Functional |
|
|
|
|||
Egress FR-10 |
Invalid CIDR and Invalid Port ranges |
1. Create a Egress rule with Invlaid CIDR value + Invalid Port Range |
1. Error should be thrown on UI |
P1 |
Functional |
|
|
|
|||
Egress FR-11 |
Regression on Firewall + PF + LB + SNAT |
1. Create Firewall Rule |
1,2,3,4 : All functionalities should work fine |
P1 |
Functional |
|
|
|
|||
Egress FR-12 |
Reboot Router |
1. Create a Egress rule with Specific CIDR + Port Range + Protocol |
1. Rule is created without any erros |
P1 |
Functional |
|
|
|
|||
Egress FR-13 |
Redundant Router : Master failover |
1. Create a Egress rule with Specific CIDR + Port Range + Protocol |
1. Rule is created without any erros |
P1 |
Functional |
|
|
|
|||
|
|
|
|
|
|
|
|
|
|||
|
|
|
|
|
|
|
|
|
|||
|
JUNIPER SRX Scenario |
|
|
|
|
|
|
|
|||
Egress FR-14 |
By Default, check that the communication from Guest NW (trust) to Public NW (Untrust) is NOT permitted |
1. Login to Guest VM |
2. Public NW should NOT be reachable |
P1 |
Functional |
https://issues.apache.org/jira/browse/CLOUDSTACK-2220 |
|
|
|||
Egress FR-15 |
Allow Communication using Egress rule with CIDR + Port Range + Protocol |
1. Create a Egress rule with Specific CIDR + Port Range + Protocol |
1. Rule is created without any erros |
P1 |
Functional |
|
|
|
|||
Egress FR-16 |
Communication blocked with network that is other than specified |
1. Create a Egress rule with Specific CIDR + Port Range + Protocol |
3. Connection Fail |
P1 |
Functional |
|
|
|
|||
Egress FR-17 |
Create Egress rule and check the rules configured on SRX device |
1. Create a Egress rule with Specific CIDR + Port Range + Protocol |
3. Policy should be created as follows on SRX device and it should contain specified CIDR, PORT range and Protocol |
P1 |
Functional |
|
|
|
|||
Egress FR-18 |
Create a Egress rule without specifying CIDR |
1. Create a Egress rule with Empty CIDR value + valid Port Range + valid Protocol and check the policy that gets created on SRX |
1. If CIDR is not specified the it should be defaulted to 0.0.0.0/0 and Policy on SRX should list Destination address as ANY |
P1 |
Functional |
|
|
|
|||
Egress FR-19 |
Create Egress rule without End Port |
1. Create a Egress rule without end Port |
2. On SRX device, application should show Start port = End port |
P1 |
Functional |
|
|
|
|||
Egress FR-20 |
Regression on Firewall + PF + LB + SNAT |
1. Create Firewall Rule |
1,2,3,4 : All functionalities should work fine |
P1 |
Functional |
|
|
|
|||
Egress FR-21 |
create egress rule port 22 from guest network to any destination |
1. create egress rule for network with port 22 to any destination |
1. tcp 22 traffic allowed form guest network to any destination |
P1 |
Functional |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|||
|
|
|
|
|
|
|
|
|
|||
|
|
|
|
|
|
|
|
|