S-04c · Run the ACL integration test on the CI runner (compose-network) #55
Closed
opened 2026-06-29 10:02:45 +00:00 by not
·
0 comments
No Branch/Tag Specified
main
ci/175-deploy-on-merge
feat/177-public-tls-edge
ci/168-helm-chart-ci-gate
docs/169-mkdocs-nav
feat/25-helm-kubernetes-caddy
fix/161-e2e-bounded-and-diagnosable
feat/162-werkbak-live-refresh
feat/132-medewerker-mfa
fix/156-tempo-ingester-healthcheck
feat/153-projection-sourced-from-objecten
feat/152-objecten-publishes-to-nrc
feat/149-acl-writes-registerrecord
feat/141-registerrecord-objecttype
perf/verify-stack-uwsgi-oz-nrc
fix/144-verify-stack-uwsgi
feat/140-objecten-up
feat/139-objecttypen-up
feat/131-default-fill-crud
chore/136-ci-job-summaries
fix/134-verify-stack-scheduling
feat/130-beheer-catalogi
feat/124-metrics-dashboards
ci/127-parallel-jobs
feat/123-distributed-traces
feat/111-self-service-resume
feat/113-acl-zaaktype-by-identificatie
fix/110-compose-local-flow
fix/115-e2e-single-worker
docs/111-backlog-s26
feat/106-close-zaak-on-timeout
feat/103-diploma-upload-documenten
feat/102-document-wait-timeout
feat/14-dmn-diploma-eligibility
feat/15-beoordeling-escalation
fix/portal-nginx-resolver
fix/local-eventsubscriber-acl
feat/12-withdrawal-portal
fix/91-local-compose-parity
feat/12-withdrawal-bff
feat/12-withdrawal-workflow
feat/12-withdrawal
feat/13-behandel-portal
feat/13-behandel-decide
feat/13-behandel-bff-auth-werkbak
feat/13-workflow-user-tasks
feat/13-behandel-decision-model
chore/release-2026.07.0
feat/78-reference-correlation
feat/75-approval-flow
feat/10-openbaar-portal
chore/73-ci-speedups
feat/68-e2e
feat/67-self-service-form
feat/66-api-client
feat/65-nx-workspace
feat/8-bff
feat/6-domain-service
feat/7-event-subscriber-projection
feat/56-nrc-notification-wiring
test/46-acl-openzaak-integration
feat/47-acl-mutation-baseline
ci/30-gitea-actions-ci
feat/5-acl-open-zaak
feat/4-flowable
feat/3-keycloak
feat/2-opennotificaties
feat/2-catalogus-seed
feat/10-openzaak-compose
feat/32-docs-scaffold
feat/31-contributor-workflow
feat/30-gitea-actions-ci
feat/29-bff-docker-compose
chore/remove-bootstrap-scripts
feat/28-bff-health
docs/split-s00
v2026.07.0
Milestone
No items
No Milestone
Iteration 1 — Walking Skeleton
Projects
Clear projects
No projects
Assignees
eho (Edwin van den Houdt)
Clear assignees
No Assignees
Notifications
Due Date
No due date set.
Dependencies
No dependencies set.
Reference: eho/register-referentie#55
Reference in New Issue
Block a user
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Follow-up split from #46 (CLAUDE.md §13). S-04a delivered the ACL ↔ real-OpenZaak integration test; it passes via
make integrationlocally / on a host-executing runner, but it cannot run on Gitea's hostedubuntu-latestrunner.Why: the runner starts the OpenZaak stack as sibling containers via the host daemon, so published ports bind to the host — not to the runner's
localhost. A process on the runner (the seed, anddotnet test) getsConnection refusedonlocalhost:8000. Bind mounts have the same reach problem (see gitea-actions-gotchas.md §1). This is whycompose-smokeonly polls health viadocker inspectand never talks to a service port.Outcome: run the integration test (and the publishing seed) inside the compose network so they reach
http://openzaak:8000by service name, with sources delivered via a built image (not bind mounts). Then re-add a gatingintegrationjob to CI.Options to weigh in this issue:
Dockerfile.integration(multi-stage: buildAcl.IntegrationTests, rundotnet test --filter Category=Integrationat container start) + a containerised seed step, joined to the OpenZaak network (OZ_BASE=http://openzaak:8000).services:for OpenZaak + Postgres + Redis (awkward multi-step init/seed ordering).Out of scope: changing the test assertions or the gateway behaviour — those are done in #46.
Refs #46. Documented as a known gap in
docs/runbooks/gitea-actions-gotchas.md.not referenced this issue2026-06-29 10:05:11 +00:00
not referenced this issue2026-06-29 10:29:08 +00:00