aboutsummaryrefslogtreecommitdiff
path: root/middleware/tls
diff options
context:
space:
mode:
Diffstat (limited to 'middleware/tls')
-rw-r--r--middleware/tls/README.md13
-rw-r--r--middleware/tls/tls.go37
-rw-r--r--middleware/tls/tls_test.go44
3 files changed, 94 insertions, 0 deletions
diff --git a/middleware/tls/README.md b/middleware/tls/README.md
new file mode 100644
index 000000000..6070257d3
--- /dev/null
+++ b/middleware/tls/README.md
@@ -0,0 +1,13 @@
+# tls
+
+*tls* extra TLS configuration.
+
+## Syntax
+
+~~~ txt
+tls [STUFF]
+~~~
+
+**STUFF** is things you'll need to configure TLS.
+
+## Examples
diff --git a/middleware/tls/tls.go b/middleware/tls/tls.go
new file mode 100644
index 000000000..2e2586ce5
--- /dev/null
+++ b/middleware/tls/tls.go
@@ -0,0 +1,37 @@
+package tls
+
+import (
+ "github.com/coredns/coredns/core/dnsserver"
+ "github.com/coredns/coredns/middleware"
+ "github.com/coredns/coredns/middleware/pkg/tls"
+
+ "github.com/mholt/caddy"
+)
+
+func init() {
+ caddy.RegisterPlugin("tls", caddy.Plugin{
+ ServerType: "dns",
+ Action: setup,
+ })
+}
+
+func setup(c *caddy.Controller) error {
+ config := dnsserver.GetConfig(c)
+
+ if config.TLSConfig != nil {
+ return middleware.Error("tls", c.Errf("TLS already configured for this server instance"))
+ }
+
+ for c.Next() {
+ args := c.RemainingArgs()
+ if len(args) != 3 {
+ return middleware.Error("tls", c.ArgErr())
+ }
+ tls, err := tls.NewTLSConfig(args[0], args[1], args[2])
+ if err != nil {
+ return middleware.Error("tls", c.ArgErr())
+ }
+ config.TLSConfig = tls
+ }
+ return nil
+}
diff --git a/middleware/tls/tls_test.go b/middleware/tls/tls_test.go
new file mode 100644
index 000000000..2374d772c
--- /dev/null
+++ b/middleware/tls/tls_test.go
@@ -0,0 +1,44 @@
+package tls
+
+import (
+ "io/ioutil"
+ "log"
+ "strings"
+ "testing"
+
+ "github.com/mholt/caddy"
+)
+
+func TestTLS(t *testing.T) {
+ log.SetOutput(ioutil.Discard)
+
+ tests := []struct {
+ input string
+ shouldErr bool
+ expectedRoot string // expected root, set to the controller. Empty for negative cases.
+ expectedErrContent string // substring from the expected error. Empty for positive cases.
+ }{
+ // positive
+ // negative
+ }
+
+ for i, test := range tests {
+ c := caddy.NewTestController("dns", test.input)
+ err := setup(c)
+ //cfg := dnsserver.GetConfig(c)
+
+ if test.shouldErr && err == nil {
+ t.Errorf("Test %d: Expected error but found %s for input %s", i, err, test.input)
+ }
+
+ if err != nil {
+ if !test.shouldErr {
+ t.Errorf("Test %d: Expected no error but found one for input %s. Error was: %v", i, test.input, err)
+ }
+
+ if !strings.Contains(err.Error(), test.expectedErrContent) {
+ t.Errorf("Test %d: Expected error to contain: %v, found error: %v, input: %s", i, test.expectedErrContent, err, test.input)
+ }
+ }
+ }
+}